Citrix MCS failed when Azure storage account configured with TLS 1.2 Version.

Citrix MCS failed when Azure storage account configured with TLS 1.2 Version.

book

Article ID: CTX575378

calendar_today

Updated On:

Description

Citrix MCS fails if the Azure storage account is configured with the TLS 1.2 version.

Environment

Citrix is not responsible for and does not endorse or accept any responsibility for the contents or your use of these third party Web sites. Citrix is providing these links to you only as a convenience, and the inclusion of any link does not imply endorsement by Citrix of the linked Web site. It is your responsibility to take precautions to ensure that whatever Web site you use is free of viruses or other harmful items.

Resolution

Solution 1

Upgrade the CVAD version to 2203 or the latest version



Solution 2

If the CVAD version cannot be upgraded to 2203 or the latest version, use TLS 1.0.




On Azure, this is how to change the minimum TLS version.

  1. Log in to the Azure Portal.
  2. Open the App Service and check the TLS/SSL settings from the menu on the left side.
  3. Select the minimum version of TLS on this screen.

    Problem Cause

     

    For earlier versions, MCS operations use the Microsoft Storage Account SDK API by default and TLS 1.0 by default.

    CVAD 2203 and later versions do not use Storage Accounts and are not affected.

    Additional Information

    Enable support for TLS 1.2 in your environment for Azure AD TLS 1.1 and 1.0 deprecation https://learn.microsoft.com/en-us/troubleshoot/azure/active-directory/enable-support-tls-environment?tabs=azure-monitor