Skip to content

Deyda.net

Deyda Consulting Blog

  • Start Page
  • Consulting
  • About me
    • Privacy Policy
    • Imprint
    • Contact me
    • GitHub
  • NeverRed – Update your Software, the lazy way
    • NeverRed – Changelog
  • LinkedIn
  • Xing
  • Instagram
  • Twitter
  • E-Mail
Deyda.net

Tag: AD FS

Citrix ADC as AD FS Proxy

Citrix ADC as AD FS Proxy

This article is about creating an AD FS Proxy from Citrix ADC (version 12). The AD FS Proxy is used to authenticate e.g. external SaaS applications or websites via AD FS. The following should be achieved by the AD FS Proxy:

  • URL / DoS Protection
  • Suitable external authentication (MFA, Forms instead of Kerberos)
  • Account Lockout Protection
  • Availability (Load Balancing)

What is AD FS ?

Active Directory Federation Services (AD FS) is a feature in the Windows Server operating system that allows identity information to be shared outside of the corporate network. Users can access applications (e.g. Office365, Salesforce.com, etc.) without being prompted to provide credentials again. These applications can be hosted locally, in the cloud, or even by other companies. The user accounts can be managed by the administrator in a single location, the Active Directory.

A normal deployment of AD FS for external clients consists of AD FS Proxy and AD FS Server. The AD FS Server is a member of the domain and perform the authentication. The AD FS Proxy is usually located in a separate network zone (DMZ) so that it can be reached externally and forward the requests inwards.

Continue reading “Citrix ADC as AD FS Proxy”
Author Manuel WinkelPosted on February 26, 2019April 28, 2020Categories ADC, Azure, Citrix, Microsoft, Office365Tags AD FS, AD FS Proxy, Citrix, Citrix ADC, Citrix Gateway, Content Switching, Federated Domain, FederationMetadata.xml, IdPinitiatedSignOn.htm, Load Balancing, Microsoft, NetScaler, Office365, Principal, Rewrite, Single-Sign On3 Comments on Citrix ADC as AD FS Proxy

Sprachen

  • Deutsch
  • English

Manuel Winkel Follow

Citrix Technology Professional (CTP) - Presales Engineer at @ControlUp - Deyda Consulting - CCE-V - CCE-N - CCP-M - MCSA - MCSE - Father of 3

Deyda84
deyda84 Manuel Winkel @deyda84 ·
20 Aug

🚀 Die NRW EUC Community ist live – und wir starten am 18.09. in Köln mit unserem ersten Event!

👉 Praxis, Austausch & Networking statt Buzzwords
👉 Ich selbst spreche über: „99 problems but Authentication ain’t one“

Jetzt Platz sichern: https://shorturl.at/DUK0V

#EUC #Community

Reply on Twitter 1958229755133624640 Retweet on Twitter 1958229755133624640 Like on Twitter 1958229755133624640 2 Twitter 1958229755133624640
jantytgat Jan Tytgat 🇧🇪🇪🇺 @jantytgat ·
21 Jul

After being contacted by a couple of customers regarding the updates sent out by Nationaal Cyber Security Centrum (@ncsc_nl) regarding CVE-2025-5777 and CVE-2025-6543 for NetScaler, I've decided to bundle a set of tests for indicators of compromise into one #shell script.

This…

Reply on Twitter 1947189801414807960 Retweet on Twitter 1947189801414807960 12 Like on Twitter 1947189801414807960 21 Twitter 1947189801414807960
fslogix FSLogix @fslogix ·
8 Jul

FSLogix Release 25.06 is now generally available! | Microsoft Community Hub

Reply on Twitter 1942706775503061345 Retweet on Twitter 1942706775503061345 9 Like on Twitter 1942706775503061345 16 Twitter 1942706775503061345
Load More...

Categories

  • Basic (1)
  • Citrix (43)
    • ADC (14)
    • StoreFront (3)
    • Virtual Apps and Desktops (20)
    • WEM (13)
  • Microsoft (20)
    • Azure (8)
    • Exchange (1)
    • FSLogix (4)
    • Office365 (11)
    • PowerShell (3)
    • SQL (2)
  • NVIDIA (1)

Tag Cloud

Virtual Desktop SAML Virtual Apps Universal Profile Management Microsoft Applet Name UPM XenDesktop Intelligent Memory Optimization StoreFront Administration Console SQL Express User Environment Management Intelligent I/O Optimization Citrix Folder Redirection Teams Intelligent CPU Optimization Unified Gateway Workspace Environment Management WEM NetScaler XenApp Windows Server Office Netscaler IP ADMX UEM Configuration Set NetScaler Gateway Performance Management Citrix ADC Office365 Norskale Broker Service Azure AD Remote Desktop PowerShell FSLogix Single-Sign On Active Directory Upgrade SQL Server NetScaler LoadBalancer Citrix Gateway AppLocker

Recent Posts

  • Checklist for NetScaler (Citrix ADC) CVE-2025-5777 & CVE-2025-6543 June 26, 2025
  • Install new Microsoft Teams (version 2) in Citrix May 17, 2024
  • Checklist for NetScaler (Citrix ADC) CVE-2023-4966 December 12, 2023
  • SAML Authentication between Citrix & Microsoft with Azure MFA September 8, 2023
  • Checklist for NetScaler (Citrix ADC) CVE-2023-3519 July 19, 2023

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org
  • Start Page
  • Consulting
  • About me
    • Privacy Policy
    • Imprint
    • Contact me
    • GitHub
  • NeverRed – Update your Software, the lazy way
    • NeverRed – Changelog
  • LinkedIn
  • Xing
  • Instagram
  • Twitter
  • E-Mail
Deyda.net Privacy Policy Proudly powered by WordPress