Skip to content

Deyda.net

Deyda Consulting Blog

  • Start Page
  • Consulting
  • About me
    • Privacy Policy
    • Imprint
    • Contact me
    • GitHub
  • NeverRed – Update your Software, the lazy way
    • NeverRed – Changelog
  • LinkedIn
  • Xing
  • Instagram
  • Twitter
  • E-Mail
Deyda.net

Tag: FederationMetadata.xml

Citrix ADC as AD FS Proxy

Citrix ADC as AD FS Proxy

This article is about creating an AD FS Proxy from Citrix ADC (version 12). The AD FS Proxy is used to authenticate e.g. external SaaS applications or websites via AD FS. The following should be achieved by the AD FS Proxy:

  • URL / DoS Protection
  • Suitable external authentication (MFA, Forms instead of Kerberos)
  • Account Lockout Protection
  • Availability (Load Balancing)

What is AD FS ?

Active Directory Federation Services (AD FS) is a feature in the Windows Server operating system that allows identity information to be shared outside of the corporate network. Users can access applications (e.g. Office365, Salesforce.com, etc.) without being prompted to provide credentials again. These applications can be hosted locally, in the cloud, or even by other companies. The user accounts can be managed by the administrator in a single location, the Active Directory.

A normal deployment of AD FS for external clients consists of AD FS Proxy and AD FS Server. The AD FS Server is a member of the domain and perform the authentication. The AD FS Proxy is usually located in a separate network zone (DMZ) so that it can be reached externally and forward the requests inwards.

Continue reading “Citrix ADC as AD FS Proxy”
Author Manuel WinkelPosted on February 26, 2019April 28, 2020Categories ADC, Azure, Citrix, Microsoft, Office365Tags AD FS, AD FS Proxy, Citrix, Citrix ADC, Citrix Gateway, Content Switching, Federated Domain, FederationMetadata.xml, IdPinitiatedSignOn.htm, Load Balancing, Microsoft, NetScaler, Office365, Principal, Rewrite, Single-Sign On3 Comments on Citrix ADC as AD FS Proxy

Sprachen

  • Deutsch
  • English

Manuel Winkel Follow

Citrix Technology Professional (CTP) - Presales Engineer at @ControlUp - Deyda Consulting - CCE-V - CCE-N - CCP-M - MCSA - MCSE - Father of 3

Deyda84
jantytgat Jan Tytgat πŸ‡§πŸ‡ͺπŸ‡ͺπŸ‡Ί @jantytgat ·
21 Jul

After being contacted by a couple of customers regarding the updates sent out by Nationaal Cyber Security Centrum (@ncsc_nl) regarding CVE-2025-5777 and CVE-2025-6543 for NetScaler, I've decided to bundle a set of tests for indicators of compromise into one #shell script.

This…

Reply on Twitter 1947189801414807960 Retweet on Twitter 1947189801414807960 12 Like on Twitter 1947189801414807960 20 Twitter 1947189801414807960
fslogix FSLogix @fslogix ·
8 Jul

FSLogix Release 25.06 is now generally available! | Microsoft Community Hub

Reply on Twitter 1942706775503061345 Retweet on Twitter 1942706775503061345 9 Like on Twitter 1942706775503061345 16 Twitter 1942706775503061345
deyda84 Manuel Winkel @deyda84 ·
27 Jun

🚨 CVE-2025-6543 is actively exploited in the wild.
Found multiple vulnerable NetScaler instances exposed online.
Update your Citrix ADC now!πŸ›‘οΈ



#Citrix #NetScaler #CVE2025 #CyberSecurity

Reply on Twitter 1938540485649309894 Retweet on Twitter 1938540485649309894 8 Like on Twitter 1938540485649309894 14 Twitter 1938540485649309894
Load More...

Categories

  • Basic (1)
  • Citrix (43)
    • ADC (14)
    • StoreFront (3)
    • Virtual Apps and Desktops (20)
    • WEM (13)
  • Microsoft (20)
    • Azure (8)
    • Exchange (1)
    • FSLogix (4)
    • Office365 (11)
    • PowerShell (3)
    • SQL (2)
  • NVIDIA (1)

Tag Cloud

Upgrade Intelligent I/O Optimization NetScaler Workspace Environment Management ADMX NetScaler LoadBalancer Applet Name Office Intelligent CPU Optimization Remote Desktop Citrix SAML SQL Express Performance Management UPM Configuration Set AppLocker Active Directory SQL Server UEM Administration Console Microsoft Single-Sign On Universal Profile Management Folder Redirection Netscaler IP Intelligent Memory Optimization Teams Norskale Broker Service Virtual Desktop NetScaler Gateway Citrix Gateway User Environment Management Citrix ADC Azure AD WEM Virtual Apps XenApp Office365 PowerShell Unified Gateway StoreFront Windows Server FSLogix XenDesktop

Recent Posts

  • Checklist for NetScaler (Citrix ADC) CVE-2025-5777 & CVE-2025-6543 June 26, 2025
  • Install new Microsoft Teams (version 2) in Citrix May 17, 2024
  • Checklist for NetScaler (Citrix ADC) CVE-2023-4966 December 12, 2023
  • SAML Authentication between Citrix & Microsoft with Azure MFA September 8, 2023
  • Checklist for NetScaler (Citrix ADC) CVE-2023-3519 July 19, 2023

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org
  • Start Page
  • Consulting
  • About me
    • Privacy Policy
    • Imprint
    • Contact me
    • GitHub
  • NeverRed – Update your Software, the lazy way
    • NeverRed – Changelog
  • LinkedIn
  • Xing
  • Instagram
  • Twitter
  • E-Mail
Deyda.net Privacy Policy Proudly powered by WordPress