This article describes how to configure Citrix Profile Manager when Microsoft Credentials Roaming and/or software that rely on Microsoft Windows Data Protection API is used in the environment.
If Citrix Profile Manager is used without Microsoft Credential Roaming, it should be configured to synchronize the following folders, based on the Operating System version :
Windows XP / Windows 2003:
Application Data\Microsoft\Crypto
Application Data\Microsoft\Protect
Application Data\Microsoft\SystemCertificates
Windows Vista and later:
AppData\Roaming\Microsoft\Credentials
AppData\Roaming\Microsoft\Crypto
AppData\Roaming\Microsoft\Protect
AppData\Roaming\Microsoft\SystemCertificates
It is important that those locations on Windows XP and Windows 2003 are not configured for folder redirection, as documented in Microsoft link “Troubleshooting Credential Roaming”.
This allows software that relies on Windows Data Protection API to work correctly.
If Citrix Profile Manager is used with Microsoft Credential Roaming, Citrix Profile Manager should be configured to exclude the following data, based on the Operating System version :
Windows XP / Windows 2003:
Application Data\Microsoft\Crypto
Application Data\Microsoft\Protect
Application Data\Microsoft\SystemCertificates
Windows Vista and later:
AppData\Roaming\Microsoft\Credentials
AppData\Roaming\Microsoft\Crypto
AppData\Roaming\Microsoft\Protect
AppData\Roaming\Microsoft\SystemCertificates
It is important that those locations on Windows XP and Windows 2003 are not configured for folder redirection, as documented in Microsoft link - Troubleshooting Credential Roaming.
Microsoft Blog “Ask the Directory Services Team” Troubleshooting Credential Roaming.
Microsoft Blog “Ask the Directory Services Team” Understanding Credential Roaming
Troubleshooting Credential Roaming on Microsoft TechNet Web site
Windows Data Protection API on Microsoft MSDN Web site
Troubleshooting Data Protection on Microsoft TechNet Web site