Covered by US Patent. Jeff - thanks for the input. Otherwise, you have a single point of failure. All Rights Reserved Privacy & Terms Mubarak Ahamed Sharing knowledge is not about giving people something, or getting something from them.
First Name Please enter a first name Last Name Please enter a last name Email We will never share this with anyone. Please let me know if there is an any other option to overcome this?RegardsKarthik 1331-340063-1780243 Back to top Sam Jacobs CTP Member #8 Sam Jacobs 6,681 posts Posted 12 November 2013 The Common name is something like "abc.xyz.citrix.com" which has a DNS entry mapped to F5 Load Balancer IP. If you configure XML Service via XenApp for example port 8080 it should show up in the CtxHttp folder. http://discussions.citrix.com/topic/340063-the-ssl-relay-name-could-not-be-resolved-ssl-error-40/
This address is pointing to the SGs IP.When I access the site I get the WI prompt, can login and see the apps that the user is allowed to use however If I add the line and tried to execute it it fails - this is because of ticketing of someting. In that case, you will need to buy 2 separate certificates, use 2 separate external IP addresses, and have different FQDNs specified in the DMZ settings on each WI server. 1331-281804-1531086 The ICA client can not know which web browser downloaded the ICA file, so it always looks at the proxy settings for the default browser.
If I add the FQDN for the server to the hosts file on the client i am getting the error "the citrix SSL server you have sleceted cannot be reached" I Another point i want to clarify is that the certificate is generated with the FQDN URL. Get 1:1 Help Now Advertise Here Enjoyed your answer? The site address they use will be citrix.my.company.name.
Unless the client updates their host file, it is not able to trust the CA certificate. I'm trying to getting new certs generated for the external ssl connection and hopefully it'll all be good.However down the track I may need to use both CSGs with a load I thought I might find something like: ClientProxy=AutoBut it was my understanding that the Gateway Client sorted that for you.....?Any Ideas would be greatly appreciated. 1336-51395-223426 Back to top JEFF PITSCH imp source First I tried adding the site to trusted sites, and lowering the IE security as much as it can go.
The secure gateway port is set to 444. I am not sure what error I was getting probably SSL Error 40.Check if the Citrix XML is running or not in the services. And which side was it enabled? Here's Why Members Love Tek-Tips Forums: Talk To Other Members Notification Of Responses To Questions Favorite Forums One Click Access Keyword Search Of All Posts, And More...
Make sure you can resolve the names of your CSG server. http://discussions.citrix.com/topic/281804-the-citrix-ssl-relay-name-could-not-be-resolved-ssl-error-40/ On the MSAM site I have the Website Viewer installed. Cannot Resolve The Ssl Hostname Ssl Error 40 F5 in turn will route the traffic to the WI server.Citrix Web Interface is an intranet URL but non-domain workstations can connect to the client's VPN network and then they can Citrix Ssl Error 40 Proxy EOF 0 LVL 18 Overall: Level 18 Citrix 17 Message Expert Comment by:mgcIT ID: 187854762007-03-24 >> All interfaces (0.0.0.0 : 444) 444 is not the default ssl port (it is
I don't understand about FQDN and all the terminologies used in here. search Recent Posts Top 10 – September2012 Runtime Error "R6030 - CRT not initialized" Appears when you Start anApplication The Citrix SMA service on Local Computer started and thenstopped. Please help me understand, and tell me what i need to do to get this issue resolved. Contact your help desk with the following information: Cannot connect to the Citrix XenApp server.The Citrix SSL Relay name could not be resolved (SSL error 40)On further investigation it turns out Citrix Receiver
Not applicable to us, as it is not going through a proxy2. Web Interface is set to use "Gateway Direct"4. Nick 0 LVL 18 Overall: Level 18 Citrix 17 Message Expert Comment by:mgcIT ID: 188005592007-03-27 your setup seems fine but I think the problem you get is when you say I am unable to launch application.
why would you have it configured to listen on 443 if securenvoy is using that and cannot share ports? From behind a FW with port 80 + 443 open in and out - I get:'The Citrix SSL Relay name could not be resolved (SSL error 40)'when I hit a pub Does that allow me to resolve the server names which are used at the external ASP? 1349-277969-1564086 Back to top Miguel Resende Citrix Employees #4 Miguel Resende 347 posts Posted 27 With one site I've gotten our network admin to enable a NAT rule so any traffic directed from a static IP will be allowed access to the CSG thinking that this
Thanks 1331-281804-1530645 Back to top Sam Jacobs CTP Member #2 Sam Jacobs 6,681 posts Posted 08 February 2011 - 01:16 PM What are you entereing into the gateway FQDN address field We have a free software under downloads. Do I need to modify the NAT rule to use the same address, or more secure, have the outside site address as citrix.my.company and they internally route traffic from that address