Unable to launch applications internally, and the error is - cannot connect to the <VDA IP:1494>.
Ports 1494 and 2598 are open from Client to VDA.
Client attempts to connect to the VDA over UDP/TCP 443.
Go to the following Registry path:
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Citrix\ICA Client\Engine\Lockdown Profiles\All Regions\Lockdown
Set ForceSSL to 0
This should allow CWA to initiate ICA traffic on UDP/TCP 2598/1494.
If this is coming through a GPO, disable it.
GPO pushed to force SSL on CWA