Summary
This document outlines requirements and recommendations for the server on which Citrix Access Essentials will be deployed.
System Requirements
Access Essentials runs on a server running the 32-bit version of Windows Server 2003, Standard or Enterprise Edition.
If using Active Directory, add the computer running Access Essentials to the directory before installation. Access Essentials supports both Workgroup and Domain deployments. The deployment of Access Essentials on a Windows domain controller is not supported.
The Access Essentials Setup checks that all required Windows system components are installed. If any are missing, Setup prompts to install the missing components.
Firewall Configuration
Access Essentials
If Access Essentials is configured to allow remote access, a firewall must be placed between the public network and the computer running Access Essentials. Configure the firewall to allow access only to TCP port 443 on the server.
The only supported deployment is for Access Essentials to have a single active Network Interface Card (NIC) with a single allocated IP address. Organizations are responsible for ensuring the FQDN for Access Essentials (the common name in the SSL certificate) resolves to the server’s IP address. Citrix does not recommend using DHCP or Automatic Private IP Addressing.
Access Gateway
Place firewalls on either side of the Access Gateway. See the Access Gateway documentation for information about how to configure the firewall between the client device and the Access Gateway. The firewall between the Access Gateway and the server running Access Essentials must be configured as follows:
Source address | Source port | Incoming port | Forward to address | Forward to port |
Access Gateway | Any | 8080 | Access Essentials | 8080 |
Access Gateway | Any | 1494 | Access Essentials | 1494 |
Access Gateway (Optional—necessary for remote administration of the server console.) | Any | 3389 | Access Essentials | 3389 |