Citrix Mobile Solutions

Written by Thomas Poppelgaard. Posted in @WorkMail, @WorkWeb, AppController, Citrix, CloudGateway, MDM, Netscaler, Receiver, XenApp, XenDesktop, XenMobile

Citrix have released a new product called Citrix Mobile Solution which are the components of Zenprise now called XenMobile combined with Citrix CloudGateway (AppController, app prep tool+access gateway). Citrix have done a great job combining the two technologies into 1 product. I saw how the new XenMobile MDM & @WorkMail app for iOS worked at a Citrix Disti Bootcamp that was held 25-25th February  at Citrix Systems in Stockholm, and it looks really awesome and fast too, so its a ready product but i doesn’t communicate with the local contact phone list, and let you abstract the informations from the local phone book to the @WorkMail, which some mights wants this functionality. Lets digg in.

Mobile Solutions

Citrix Mobile Solutions is an enterprise mobility management solution that provides mobile device, app and data freedom for employees by giving users access to all their mobile, web and Windows apps and data from a unified app store. Mobile Solutions includes the following components:

  • CloudGateway that includes AppController, the App Preparation Tool, and Access Gateway.
  • XenMobile MDM contains Device Manager, Secure Mobile Gateway, and the Multi-Tenant Console.

The Citrix Mobile Solutions Bundle, is comprised of XenMobile MDM and CloudGateway. Employees have quick, single-click access to all their mobile, web, SaaS and Windows apps from a unified app store, including secure productivity apps that seamlessly integrate to offer a great user experience.

The Mobile Solutions Bundle provides identity-based provisioning and control for all apps, data and devices, policy-based controls, such as restriction of application access to authorized users, automatic account de-provisioning for terminated employees and selective wipe of device, apps or data stored on lost devices. With the Mobile Solutions Bundle, IT can give users device choice while giving IT the ability to prevent data leakage and protect the internal network from mobile threats.

mobile solutions architecture

Mobile Solutions Bundle is composed of the components below

  1. AppController - A Linux based virtual machine available for both XenServer and VMware® based hosts, providing the central administrative point for configuration of all native mobile apps, Web/ SaaS apps, and ShareFile data.
  2. Gateway services - Delivered through the Citrix Access Gateway, either standalone, or as a feature of the NetScaler MPX, VPX and SDX platforms.
  3. App Preparation Tool - MDX technology provides encapsulated iOS and Android applications with security, encryption, and control.
  4. @Work Applications - @WorkMail and @WorkWeb applications for secure Exchange mail and secure Web.
  5. Mobile Device Management - Allows IT to manage mobile devices, set mobile policies and compliance rules, gain visibility to the mobile network, provide control over mobile apps and data, and shield the corporate network from mobile threats

xenmobile device manager

AppController 2.6, whats new

  • Certificate support. When you log on to AppController for the first time in the web-based management console to configure the initial settings, you can add or create certificates on the Active Directory settings page. This option appears only when configuring settings in the management console the first time you log on. When you log on subsequently to the management console, you can configure certificates by using theCertificates link on the Settings tab.
  • Microsoft Hyper-V support. You can install the AppController 2.6 virtual machine on Windows Server 2012 with Hyper-V enabled or on Microsoft Hyper-V Server 2012.
  • Migration support to AppController 2.6. You can upgrade to AppController 2.6 from AppController 2.0 or from AppController 2.5.
  • Secure connections to Active Directory. When you log on to AppController for the first time in the management console to configure the initial settings, you can configure secure connections to Active Directory on the Active Directory settings page. When you log on subsequently to the management console, you can change Active Directory settings by using the Active Directory link on the Settings tab.
  • ShareFile updates. In previous AppController versions, when you configured ShareFile, the domain sharefile.com was automatically appended to the domain name. In this release, the domain sharefile.com does not automatically append to the ShareFile domain name. You must enter the entire ShareFile domain name.
  • Support for mobile links. You can configure mobile links to retrieve the name and description of apps automatically from the Apple App Store. For apps available through the Google Play Store, you enter the name, description and URL of the app. When you configure mobile links, links appear in Receiver with the Play Store or App Store name.
  •  Web proxy user name format. When you configure the web proxy, you can use either the SAMAccount format or the User Principal Name (UPN) as the user name.

Source

Download Citrix Mobile Solutions bundle here (Require MyCitrix) 
The new version of the AppController 2.6 & App preparation tool for iOS and Android are located in above link + XenMobile components.

edocs of Citrix Mobile Solutions

Architecture of the Citrix Mobile solutions bundle

Citrix StoreFront Planning Guide

Written by Thomas Poppelgaard. Posted in Citrix, CloudGateway, StoreFront Services, VDI-in-a-box, XenApp, XenDesktop

Citrix have released this awesome whitepaper writen by Citrites People ->

  • Thomas Berger
  • Andy Baker – Architect
  • Saul Romero – Senior Software Eng
  • Roger LaMarca – Senior Consultant
  • Matthew Brooks – Architect
  • Ankur Shah – Prn Product Manager
  • David Coleman – Director
  • Daniel Feller – Lead Architect

Kudos from me to you all guys for this.

Overview

Citrix StoreFront, which is the successor to Citrix Web Interface, authenticates users to XenDesktop sites, XenApp farms, and AppController (SaaS Apps), enumerating and aggregating available desktops and applications into stores that users access through Citrix Receiver for Android, iOS, Linux, Windows, Win8/RT or Receiver for Web sites. It has been built on a modern, more flexible and powerful framework which enables Storefront to provide next generation features, such as:

  • Unified StoreFront that delivers SaaS & Native Mobile applications (through AppController) as well as XenApp and XenDesktop resources
  • Simplified Account Provisioning, which enables users to connect to assigned desktops and applications by simply entering their email or server address, or by opening a Provisioning File in Receiver.
  • Access from any Receiver with a consistent user experience, including automatic fallback to an HTML 5 client if a native client isn’t available locally and can’t be installed
  • Synchronization of resource subscriptions across all platforms and devices (Follow-me Apps & Data)

This planning guide provides details about the StoreFront architecture and key design decisions.

Source

Go get this great whitepaper about Citrix StoreFront Planning Guide here

Release Candidiate – Citrix @WorkMail & @WorkWeb for iOS

Written by Thomas Poppelgaard. Posted in @WorkMail, @WorkWeb, Apple, Citrix, CloudGateway, iOS, MDX App Vault, Receiver

Citrix have released a Release Candidate of @WorkMail @WorkWeb for iOS that works with Citrix CloudGateway Enterprise 2.5.

Below is the blog post Citrix made 16th October 2012, that tells more about what WorkMail & WorkApp is and i have added the screenshots so you can see the apps.

More about @WorkMail & @WorkWeb

@WorkMail is an Exchange email client for the iPhone, iPad, Android phones and tablets. This app is part of the larger Me@Work application suite that was announced at Synergy Barcelona.

Most of you are probably blasé to new email clients and have the notion that they seen it all. Let’s face it – email is so 1990’s way to communicate! Many of us probably use Facebook, WhatsApp or LinkedIn messaging as much as their regular email – I definitely do so. You might rightfully expect that building a new email client that adds innovative value to users is wishful thinking – akin to expecting sunshine in Seattle during winter!

However there is no denying that corporate email is the original ‘killer app’ for mobile device and arguably it’s ‘killer’ status remains today – we should remember that RIM made a fortune via Blackberry secure messaging.  As we listened to our customers we found that there is still lots of work to be done for securely delivering enterprise email in BYOD environment that has a great user experience. This is particularly so for our customers who are in highly regulated industries such as healthcare, industry and finance where the costs and liability of information leakage via email are huge. The IT groups at these customers bear the onerous responsibility of ensuring that there is no email data leakage and any mobile device lost at a random bar does not result in sensitive information being divulged. Typically, IT reacts to this responsibility by clamping down and ensuring that no mobile devices have access to corporate email.

Of course, this situation is not tenable and there is a strong demand for secure messaging with usability to match the typical employee’s expectation of a mobile user experience.

Keeping in mind the above context for secure messaging, we targeted the following goals as we designed our email app:

 Build a beautiful and delightful user experience – On mobile devices, users have high expectations of user experience. Enterprise users are the same mainstream customers who have soaked up consumer app user experiences – they expect the same polish and delight in enterprise apps (whether they articulate this or not is a different matter). We have taken this expectation quite seriously and worked hard in creating an integrated design for Mail, Calendar and Contacts.

Work well with Microsoft Exchange and ActiveSync – Exchange is the big boy of enterprise messaging and is the definitely the thought leader. Exchange pretty much dominates the enterprise email and with their Office 365 offering they might dominate the SMB segment as well. We have ensured that Exchange and ActiveSync push messaging protocol works well with our app.

Integrate well with other mobile apps in the Citrix Me@Work Suite – Along with @WorkMail, we launched @WorkWeb – a secure browser app.  We designed from ground-up for our email app to work seamlessly with other apps in the Me@Work suite including the browser app. As a user comes across an intranet link in his email message, he can click on that link to launch @WorkWeb to the intranet site without any further authentication check.  MDX Interapp technology ensures that Single-Sign On and app communications happen in a transparent manner to the user.

Conversely, if you click on a mailto link on the page you are browsing in @WorkWeb it seamlessly opens in @WorkMail email compose form. We have worked hard to ensure that the app to app scenarios work in a secure and great user experience.

Data integration – We have also enabled close integration with the ShareFile space using MDX Interapp technology. We have designed a user experience to easily download document attachments in his email to his ShareFile space – as this space can be managed by IT, it is more secure and goes a long way in addressing DLP.  Using @WorkMail a user can’t download documents to unsecured locations on his device that are outside the purview of IT.

In addition to above features, we have also added bunch of other features such as calendar integration with GoToMeeting for scheduling meetings, showing Free/Busy times and of course encryption, policy and security aspects of MDX Vault.

      

Source

blog post from Citrix “Citrix delivers email to your mobile device… securely!”

Download technology preview of Citrix @WorkMail & @WorkWeb for iOS here (Require MyCitrix ID)
* HINT look under @Applications on the webpage to find them.

Citrix Receiver 5.7 for iOS

Written by Thomas Poppelgaard. Posted in Apple, Citrix, CloudGateway, iOS, Netscaler, Receiver, Reciever, ShareFile, VDI-in-a-box, XenApp, XenDesktop

Citrix have released a new version of Citrix Receiver 5.7 for iOS

What’s New in Version 5.7

In addition to general usability and performance improvements, this release adds these features:

· On iOS 6 operating systems, support for the Bluetooth keyboard, as well as fixes for rotation issues and Access Gateway timeout issues.

· On iPhone 5 devices, support for the new screen size.

· First-time use updates, including support for Access Gateway URL input.

· Improved performance when logging on, including reduced time for enumeration of applications.

· Support for multiple stores. Log into multiple accounts at one time, including both a PNA or Web Interface account and a StoreFront account with App Controller running simultaneously within Receiver. A new icon enables you to switch between accounts.

· SAN SSL certificate support.

· Enhanced client-side logging. Enable “Advanced Logs” in the Advanced Settings to help troubleshoot problems.

· New options for sending feedback, including the option to request for help from Support and to send feature requests to Citrix.

· Enhancements in the extended keyboard ribbon. Add and view extended keys more easily, including “sticky” keys for multi-key combinations.

· Support for Citrix @WorkMail™ and @WorkWeb™ for iOS-based devices that let users easily access their email, calendar, and contacts, as well as intranet web sites. You upload the mobile apps to AppController and users subscribe to these two apps from Receiver.

· Support for CloudGateway AppController 2.5, including:

· Policies for MDX-enabled mobile apps. Enable policies while wrapping apps, including policies that support device security, networks, and the ways apps interact with documents and web sites. You can also limit or block device functions, such as copy and paste, the camera, and GPS location services. These policies provide support for iOS apps, including @WorkWeb and @WorkMail.

· Ability to manage the your device inventory, including locking user devices, erasing application data and documents from user devices, and removing devices from the inventory list in AppController.

· Ability to configure workflows, including multiple workflows before you add applications. When you configure applications, you can select the appropriate workflow.

· Policies for Web and SaaS apps, including policies that support blocking of compromised devices, wireless network settings, the requirement for users to connect to an internal network to access apps, and the ability for users to have network access.

Source

Download Citrix on your AppStore or this link

Citrix CloudGateway Enterprise 2.5

Written by Thomas Poppelgaard. Posted in Android, Apple, Citrix, CloudGateway, iOS, Netscaler, Receiver, ShareFile, XenApp, XenDesktop

Citrix have released a new version of Citrix CloudGateway Enterprise 2.5

About This Release

CloudGateway enables the delivery of web, SaaS, Android- and iOS-based applications, and ShareFile data, along with Windows-based applications from XenApp and virtual desktops from XenDesktop. You manage web, SaaS, Android- and iOS-based application configuration and policy settings by using AppController, with the following capabilities:

  • Centralized user account creation and management for web and SaaS applications, and ShareFile access that provides users with a seamless single sign-on (SSO) experience.
  • The use of Active Directory as the identity repository. Active Directory is then used as the basis for authorizing users to external applications and services.
  • A unified enterprise app store to enable the publishing and distribution of Android- and iOS-based applications for authorized users to download and install on mobile devices.
  • Centralized policy controls to secure the applications and data, with easy removal of user accounts, erase and lock of Citrix-delivered applications and data, and consolidated auditing and reporting of application access.

You can configure applications and ShareFile access by using the AppController web-based management console. Within the management console, you can configure the following:

  • Roles that include Active Directory groups
  • Applications for SSO only
  • Applications for SSO, user account management, and the creation of new user accounts
  • Applications for Android and iOS devices, including @WorkMail™ and @WorkWeb™ applications
  •  Approval workflows for creating user accounts
  • Categories to organize applications in Citrix Receiver
  • HTTP Federated Formfill connectors
  • SAML 1.1 or 2.0 connectors that support the identity provider (IdP) flow
  • Role-based management and delivery of mobile applications
  • Role-based ShareFile document management with support for Storage Zones
  • Device inventory that lists user devices that connect to AppController

This section introduces AppController 2.5, announces what’s new in this release, discusses compatibility between AppController and Citrix Receiver, and lists known issues for CloudGateway Enterprise.

Key Features

The most typical deployment configuration for AppController is to locate AppController in the secure network. Users can connect to AppController to access applications, as well as ShareFile data and documents.

The key features of AppController are:

  • Access to web and SaaS applications that includes:
    • Federated support for SAML 1.1 and SAML 2.0 applications
    • Password storage and formfill support for password-based web applications
    • User account management from Active Directory group membership for SaaS applications
    • User account management workflows that allow users to request application accounts and for individuals in your organization to approve the requests
  • Access to Android and iOS mobile applications that includes:
    • The ability to publish Android and iOS applications that users can download and install on their mobile devices from Citrix Receiver, including @WorkMail™ and @WorkWeb™
    • Security controls for Android and iOS applications to ensure application and data security
    • Management of mobile applications on user devices through Receiver which enables you to control the mobile applications without managing the mobile device
  • Access to ShareFile that includes:
    • Creation and deletion of user accounts within ShareFile by using Active Directory rules
    • Seamless data access for authorized users from Receiver
    • Choice of storage location per folder: ShareFile-managed cloud storage or an on-premises Storage Zone, enabling you to optimize performance and address data sovereignty and compliance requirements
    • Centralized device listing for users that allows you to erase application and ShareFile data on lost or stolen devices
  • Device inventory that includes:
    • The ability to view all devices that have connected to AppController
    • The ability to erase and stop erasing data on the user device
    • The ability to lock and unlock the user device
    • The ability to remove devices from the list

What’s New

AppController 2.5 supports the following new features:

  • Active Directory synchronization and filtering. When AppController synchronizes with Active Directory, AppController only looks for changes made in Active Directory instead of synchronizing with the entire directory. This process results in a much faster performance from earlier versions of AppController. If your Active Directory database is large, you can configure multiple Base DNs that AppController binds to and that the server searches through to find user objects.
  • Administrator logging. You can log all administrative actions in AppController. When you make changes in the management console, the changes appear in the log. This new logging feature provides an audit trail for AppController.
  • App Preparation Tool. The App Preparation Tool for mobile apps now supports Android-based mobile apps in addition to iOS-based apps.
  • Dashboard. The AppController dashboard enables you to click on icons representing CloudGateway components, including Receiver, connected users, and connections to applications, to obtain detailed information about your deployment. You can change AppController configuration settings from the dashboard and from the Settings tab. When you click the icon for Total Logons, you can view how many users are connected and the Receiver type, such as Receiver for Android or Receiver for Windows. When you click the icon forConnected Sessions, you can view the components in your CloudGateway deployment and the connection paths. When you click the icon for Apps Used, you can view how many Android- and iOS-based apps, and web and SaaS apps users have started, as well as the number of Web links and ShareFile connections they have made. You can see additional details by clicking one of the links for an app type.
  • Device inventory. You can view a list of connected devices in AppController. You can maintain an inventory of user devices from theDevices tab. You can lock user devices, erase application data and documents from user devices, and remove devices from the inventory list in AppController.
  • Managing applications. If you need to make changes to an application, you can put the app in maintenance mode. When you put an app in this mode, when users open Receiver, the application is disabled. After you make updates to the application, you can then enable the app and users can start the app from Receiver.
  • Mobile App Suite. Citrix provides @WorkMail™ and @WorkWeb™ for iOS- and Android-based devices that let users easily access their email, calendar, and contacts, as well as intranet web sites. You upload the mobile apps to AppController and users subscribe to these two apps from Receiver.
  • Policies for mobile apps. Mobile app policies contain MDX policies with additional settings that are not available for web and SaaS apps. You can configure device security, networks, and the ways apps interact with documents and web sites. You can also limit or block device functions, such as copy and paste, the camera, and GPS location services. Policies in iOS and Android apps, including @WorkMail™ and @WorkWeb™, are determined when you wrap the app by using the App Preparation Tool. When you upload mobile apps to AppController, you can then change some policy settings.
  • Policies for web and SaaS applications. You can configure policies for each web and SaaS application you add to AppController. You can configure device security for iOS and Android devices. You can also specify the networks to which users can connect. You can configure device security for compromised devices and the networks to which users can connect. Among the policies you can configure are policies that support the blocking of compromised devices, wireless network settings, the requirement for users to connect to an internal network to access apps, and the ability for users to have network access. You can also configure how often Citrix Receiver checks for policy changes in the app.
  • Proxy server configuration. You can now configure a web proxy server from the AppController command-line console to allow access to the Internet from AppController. To configure the web proxy server, you configure the IP address, port, and optionally, a non-proxy host list, user name, and password. When you commit the changes, AppController restarts. After you configure the web proxy server, when you use the AppController management console to manage user accounts from the Apps & Docs tab for web and SaaS apps or ShareFile, AppController uses the proxy server settings for outbound connections.
    Note: This feature does not work for the following applications when proxy is configured with authentication: Google Apps or Salesforce.
  • Provisioning File Settings. You can email a file to users that configures Receiver for them. The CR (.cr) file contains all the settings that Receiver needs to connect to AppController.
  • ShareFile Storage Zones. The ShareFile Storage Center feature enables you to configure private, on-premises Storage Zones. Storage Zones define locations where data is stored. Storage Zones are useful if you want to optimize performance by locating data storage close to users or if you need to control storage for compliance purposes. In addition, ShareFile configuration now appears on the Apps & Docs tab in the management console.
  • Snapshots. You can take a snapshot of the AppController configuration at a given point of time. You can export snapshots to your computer and you can import snapshots to AppController. You can use Release Management in Settings in the management console to import and export snapshots.
  • Workflow management. You can configure workflows by using the Workflows tab in the management console. You can create multiple workflows before you add applications. When you configure applications, you can then select the appropriate workflow. All web and SaaS applications support workflows. You can also delete workflows that you no longer need.

Source

Download Citrix CloudGateway Enterprise 2.5 here (Require MyCitrix ID)

 

Recent Comments

Dan

|

Hi Thomas,
Some features in your screenshots (eg create appointments and contacts) seem to be missing from the iOS version of @WorkMail that got released in April, do you know if these features are still coming in a future release? The Android client is far more functional by comparison.
Regards
Dan

Christian Eilskov

|

You can see the DHCP options here:

http://www.wyse.com/kb and search for 21501

You can transfer a image using Wyse Device Manager(WDM), the same goes for smaller updates like new ICA client and so.

Thomas Poppelgaard

|

Thank you Barry =)
The deep compression codec for Citrix XenDesktop HDX 3D Pro will be intergrated for Citrix XenApp in Excalibur so there is a big difference with bandwidth consumption. This means that XenApp in Excalibur will be the best platform for user density and works great over WAN with high latency as HDX 3D Pro have been known to deliver for several years. Yes i know of cases with WAN optimization, I will gather these and share them.

Best regards
Thomas

Barry Schiffer

|

Hi Thomas,

Nice work! Awesome to see these results on XenApp! Is there any noticable difference between XA 6.5 and Excalibur that you are aware of? Do you have experience with WAN Optimization and how this helps to reduce bandwidth further?

Kind regards,

Barry

Our Team
Feeds from Citrix Blog :