How to enable nFactor Authentication for Citrix Secure Access Client on Android devices

book

Article ID: CTX695455

calendar_today

Updated On:

Description

Citrix Secure Access clients for all platforms check for enabled/allowed features at Citrix Service https://features.netscalergateway.net, which must be reachable from the client.

Since nFactor Authentication is "under preview" for Android, it this feature is disabled by default.

If you check device logs for Android, this log file: CtxLog_com.citrix.CitrixVPN.csv will show the auth-v3 feature is disabled.

Flag: cgop-6435-enable-auth-v3-support=false

"2025-10-16T03:34:42.475+0530","CtxVpnManager","INFO      ( 4)","Connecting profile: https://companyname.com",10361,10361,Citrix Secure Access,  ,  ,0
"2025-10-16T03:34:42.495+0530","UnleashHelper","INFO      ( 4)","Setting customer domain: companyname.com",10361,10361,Citrix Secure Access,  ,  ,0
"2025-10-16T03:34:44.127+0530","UnleashHelper","INFO      ( 4)","Flag values updated: {cgop-12021-aml-integration-kill-switch=false, cgop-6435-enable-auth-v3-support=false, cgop-6435-disable-web-view-for-auth-v3=false, cgop-12079-enable-fqdn-split-tunnel=false, csaclients-3071-enable-reconnect-on-adc-vip-change=false, csaclients-8305-disable-alwayson-transfer-login=false, csaclients-8817-disable-tap-logging=false, csaclients-12477-disable-mux-receive-timeout=false}",10361,17547,Citrix Secure Access,  ,  ,0
"2025-10-16T03:34:46.306+0530","UnleashHelper","INFO      ( 4)","Getting flag value for 'cgop-6435-enable-auth-v3-support': false",10361,10405,Citrix Secure Access,  ,  ,0
"2025-10-16T03:34:46.306+0530","AuthV3Model","INFO      ( 4)","AuthV3 support disabled via feature flag, using legacy auth...",10361,10405,Citrix Secure Access,  ,  ,0

 

These features are enabled per customer domain (gateway FQDN, for example companyname.com).

These are checked at the beginning of a session by the Android Citrix Secure Access app and cached for future use in case client is not able to reach the feature service. If the customer is setting up n-factor authentication for the first time, this feature needs to be enabled.

If the customer changes their domain names, then these needs to be updated with updated domain names.

Environment

Registry Editor Changes: Use this disclaimer when instructing the readers to edit the registry. Before you mention the registry, add the following caution in the article body

Caution! Refer to the Disclaimer at the end of this article before using the Registry Editor.

Disclaimer: "Caution! Using Registry Editor incorrectly can cause serious problems that might require you to reinstall your operating system. Citrix cannot guarantee that problems resulting from the incorrect use of Registry Editor can be solved. Use Registry Editor at your own risk. Be sure to back up the registry before you edit it."

Issue/Introduction

nFactor Authentication support for Android devices is under preview and is disabled by default.

To enable nFactor auth customers must engage Technical Support and Request Escalation Level to provide their NetScaler Gateway’s FQDN to enabling nFactor authentication for Android devices.

> This procedure requires Engineering team engagement <

Additional Information

https://docs.citrix.com/en-us/citrix-secure-access/gateway-clients-feature-parity

https://docs.citrix.com/en-us/citrix-secure-access/feature-management