Always On Tracing (AOT) is a diagnostic framework that captures logs continuously across your Citrix environment — so when something breaks, the data is already there. No manual tracing setup, no issue reproduction required.
AOT requires minimum supported versions across your CVAD environment, Citrix Workspace App, and infrastructure components. Check each section below before proceeding.
CVAD Platform Components
Applies to: Windows VDA, Linux VDA, Mac VDA, Delivery Controller, StoreFront, FAS, PVS, Session Recording, WEM, UPM
| CVAD Version | AOT Support | Action |
|---|---|---|
| CVAD 2402 CU4, CVAD 2507 CU1 and later CUs and LTSR releases | ✓ Supported | Eligible — proceed to Step 2 |
| CVAD 2511, 2603 and all later Current Releases | ✓ Supported | Eligible — proceed to Step 2 |
| Earlier versions | ✗ Not Supported | Upgrade to a supported version to enable AOT |
Citrix Workspace App (CWA)
Minimum version varies by platform and how users connect to their resources.
Direct Access
Users connect directly to Storefront over the internal network without using a Citrix Gateway. This is typically used for on-premises or VPN-connected users.
Via Citrix Gateway
Users connect through a Citrix Gateway, which securely brokers remote access to Storefront and backend Citrix resources. This deployment is commonly used for remote users accessing applications and desktops over the internet.
| CWA Platform | Direct Access | Via Citrix Gateway |
|---|---|---|
| Windows | 2511.10 or 2507 CU1+ | 2603 or 2507 CU2+ |
| Mac | 2603+ | 2603+ |
| HTML5 | 2511+ | 2603+ |
| ChromeOS | 2511+ | 2603+ |
| Android | 2603+ | 2603+ |
| iOS | 2603+ | 2603+ |
| Linux | Coming soon | |
Infrastructure Components
Only components in use in your environment need to meet these requirements.
| Component | Minimum Version |
|---|---|
| Citrix NetScaler Gateway | 14.1.60.57 |
| Citrix License Server | 540000+ |
| Cloud Connector | 6.157.0.19398+ |
| Citric FAS, PVS, WEM, Session Recording Server, Linux VDA, Mac VDA and UPM | 2402 CU4, 2507 CU1, 2511, 2603 or later |
| Citrix DaaS | Post February 2026 |
AOT collects logs from the following Citrix components. Any component that participates in log collection must meet the minimum version.
On-premises deployment
All components send logs to the Log Server.
Cloud (DaaS) deployment
Resource location components forward the logs to Log Server
Citrix Cloud plane components forward the logs to Citrix managed service
Citrix Cloud control plane component logs (Cloud DDC, Citrix Gateway service, Citrix Workspace) are not forwarded to the Log Server. These logs are ingested into a Citrix-managed Splunk service and are accessible to Citrix Support internally only — not available via Director or CLI.
Here is what changes when AOT is enabled in your environment:
All three options deploy the same Log Server — the difference is where it runs and how updates are managed.
Deployment options:
| Connector Appliance | Linux Log Server | Windows Log Server |
| Built-in Log Server — no Docker management, evergreen updates handled by Citrix | Ubuntu 24.04, RHEL 8.10 / 9.4 with Docker Engine — preferred for larger deployments | Windows 10/11 or Server 2022/2025 with Docker Desktop — requires an active user session |
| Recommended | Recommended if Linux is preferred | If Docker Desktop subscription is purchased |
Use these resources to plan and complete your AOT deployment.
This guide explains how to deploy the Always On Tracing (AOT) Log Server, including deployment prerequisites, supported deployment options, and the steps required to configure your environment for continuous log collection.