The following error is displayed after logging on to NetScaler Gateway:
"403 - Forbidden: Access is denied."
The following are some points to verify in the NetScaler Gateway configuration for StoreFront or Web Interface when receiving a 403 error after authentication at NetScaler Gateway:
Ensure to link the intermediate and root certificates in NetScaler console under Traffic Management > SSL.
Ensure that the StoreFront address in the NetScaler Gateway Session Profile matches the site address in StoreFront.
Ensure that the call back address is set to HTTPS.
Ensure that there is a DNS Host entry on StoreFront to point to NetScaler Gateway virtual server.
If the Root CA is internal CA certificate then ensure that the Root CA certificate are added on both StoreFront as well as on NetScaler, so that they trust each other.