Citrix Gateway

Deploying the web interface behind Citrix Gateway in the DMZ

In this configuration, both Citrix Gateway and the Web Interface are deployed in the DMZ. When users log on with Citrix Receiver, the initial user connection goes to Citrix Gateway and is then redirected to the Web Interface. To route all HTTPS and ICA traffic through a single external port and require the use of a single SSL certificate, Citrix Gateway acts as a reverse web proxy for the Web Interface.

Figure 1. Web Interface Located Behind Citrix Gateway

localized image

When the Web Interface is deployed behind Citrix Gateway in the DMZ, you can configure authentication on the appliance but it is not required. You can have either Citrix Gateway or the Web Interface authenticate users because both reside in the DMZ.

Deploying the web interface behind Citrix Gateway in the DMZ