Jump to content
Updated Privacy Statement

Hector Sanchez

Members
  • Posts

    8
  • Joined

  • Last visited

Posts posted by Hector Sanchez

  1. Hello,

    we have configured our Netscaler VPX (v13.0) as a SAML-IDP. At the moment we can see in the ns.log file the following error:

    Apr  9 12:54:42 <local0.info> 10.X.X.X 04/09/2024:12:54:42 GMT server01 0-PPE-0 : default AAATM Message 947022 0 :  "Metadata Import: Unable to add certkey, error is 1536"

    Could anyone help me to understand what could be the problem here?

  2. Hello,

    What ist he difference between this two cipher suites in the ADC cipher suites group ECDHE?

    1.       TLS1.2-ECDHE-RSA-AES-256-SHA384

    2.       TLS1.2-ECDHE-RSA-AES-256-GCM-SHA384

    Wich encrytion algorithm mode have the number 1) probably CBC?

    For the ohter cipher suites in this group without a „encrytion algorithm mode“, it's probably the mode CBC too?

    I wuold be grateful for any help 

    Regards,

    Hector Sanchez

  3. Hello,

    at the moment we have a problem with the automatically upgrde from the secure accees client and the ADC Gateway v12.1-63.22. On the ADC GW is configured the secure access client v22.2.1.103.

    On the windows 10 client i have installed the secure access client "v21.9.1.2" and when i try to connect to the ADC GW i receive the message "the secure access client must upgraded from v21.9.1.2 to v22.2.1.103". It's all right but when i click "OK", and during the installation from the new client, i receive the message that "the application Citrix Gateway EPA Server" is runnig and should be stopped to continue with the upgrade.

    We don't use (or configured) now the EPA client and i don't understand  where it come from. I can see at the "task manager" from the windows client during den upgrade that there is really a runnig process "Citrix Gateway EPA Server".

    There is a possibility at the ADC GW to deactivate this EPA check process on the client? 

    For any help, thanks

    Hector

  4. Hello,

    at the moment i have a problem with the citrix secure access agent v 21.9 and the citrix gateway v12.1-63.22. When i try in the edge browser  (in windows 10) to connect to the ADC GW (over https) there is a delay about 20-30 second until the secure access agent start and create the VPN Tunnel to the GW.

    Could anyone tell me how  the browser call (or start) the "secure access client"?

    In the same windows 10 i have no problem with the firefox browser to start the VPN Tunnel wih the same ADC GW and same secure access client. With the firefoy there is no dely.

    I would be grateful for any information

     

  5. Hallo Darren,

    i have the same problem  with the certificate selection too.

    I tried with he registry key but do not work in my win10 machine. I have a NS GW and Plugin with the version 13.0-61.48

    i can see in the nsepa.dll file the following debug information:

    17:52:00.021 | DEBUG   | No pref. for certificate exits for this connection
    17:52:00.021 | DEBUG   | creating list of certificate from store 
    17:52:00.021 | DEBUG   | Name of the certificate : machine-01.org.com
    17:52:00.021 | DEBUG   | Found 1 valid certificates. We will choose first based on expiry date.

    Do you know if there is a relationship between the first line "No pref. for certificate exits for this connection" and the registry key "UserCertCaList"? 

    Thanks,

     

     

×
×
  • Create New...