Hello, i have a Problem with a Juniper SA running 7.0R1.
When accessing the Citrix Webinterface configured for CTS client with non Java client all computers in my Company dont start the CTS client and the Citrix Online Plugin fails to connect to the Citrix Server (because ther is no Tunnel...).
This configuration works fine with Firefox or with my private Computer at home running the same operating System/IE
The Citrix Webinterface Version is 5.3 (yeah i know not supported yet but its working on other computers so that shouldnt be the problem).
My best guess is some kind of Internet Explorer Security setting that gets pushed via GPOs but im not sure which. I already tried to add the site to the trusted sites or the intranet sites and lower all the security settings for those. With no luck so far.
So if anyone experienced similar and knows how to solve it or has good ideas about it will be verry welcome to reply.
Thank you all in advance
Regards Sebastian
Solved! Go to Solution.
Please make sure that the VPN site (and Citrix) are not in the trusted zone (remove from any zone is best). The Citrix WI will send the ICA data in a way that cannot be intercepted and handled by the Juniper CTS client if the VPN site is in the trusted zone/trusted site list.
Another option is for your admin to open a case with JTAC to receive a filter that addresses this issue (a KB on this should be available soon as well with the filter for download).
Hi,
i have the same problem with 7.0R3 and any verions of Internet Explorer. No problem with Firefox, anyone have the solution?
I solved removing my vpn site from any Internet Explorer zone (no Intranet zone, no Trusted zone)
Please make sure that the VPN site (and Citrix) are not in the trusted zone (remove from any zone is best). The Citrix WI will send the ICA data in a way that cannot be intercepted and handled by the Juniper CTS client if the VPN site is in the trusted zone/trusted site list.
Another option is for your admin to open a case with JTAC to receive a filter that addresses this issue (a KB on this should be available soon as well with the filter for download).
As we had a wildcard trust set in our internet explorer we used the Mentioned filter to solve this problem.
Glad to hear it worked.
From which filter are you talking? We have the problem that we can't remove the trusted zone. So, what is the solution? And which KB do you mean?
Okay, I contact the support. If you have problems, ask for Bug 60350, it's the rewriting filter "Rewrite Citrix Embed URL with Object Tag". If you got the file, add it and make a policy trace when you try to open an application in the citrix gateway. Maybe you need to change the filter, so search "appembed.aspx" and replace the content with the text after "?" to "=".
Just caught site of this post.
I use the Citrix Listed Applications feature which does not require the presence of Citrix Web Interface server.
I must admit I always instruct users to add the IVE site to their Trusted Zone within IE to allow to easy deployment of the clients that need downloading.