When launching an application through Citrix Secure Gateway, the following SSL error is displayed:
Unable to launch your application. Contact your help desk with the following information: Cannot connect to the Citrix XenApp server.
SSL Error 86: The security certificate 'abc.domain.com' could not be validated. (SSL provider code: unable to get local issuer certificate)
Important! This article is intended for use by System Administrators. If you are experiencing this issue and you are not a System Administrator, contact your organization’s Help Desk for assistance and refer them to this article.
To resolve the preceding error, complete the following procedure:
On the website displaying the error, click Certificate Error, and select View Certificates.
Click the Certification Path tab, and verify that the certificates listed in the Certification Path section does not display a red cross.
If a red cross is displayed, then add the certificate from the untrusted source to the local computer.
To add the certificate, click the certificate with the red cross and select View Certificate.
Select the Details tab and select Copy to File.
Follow the onscreen instructions and create a file with .cer extension.
Navigate to the file created and double-click the file.
Select Install Certificate.
Select the Place all certificates in the following store option.
Select Show physical store and expand the Trusted Root Certification Authorities folder.
Select Local Computer and click OK.
Click Next and then click Finish to complete importing the certificate.
Verify that no red cross is displayed in the certification path.
Close Internet Explorer and restart the application.
This error might occur if the SSL Certificate in the certification path is not valid.
All certificates in the certification path must be valid and from a trusted source when connecting to Citrix XenApp Server through a Citrix Secure Gateway by using an SSL connection.