Ask a Question

Advanced Search

Solution ID : SO25656

Last Modified : 05/02/2018

Installation Instruction for Citrix Access Gateway Enterprise Edition Appliance

Solution

This document provides installing SSL Certificate for Citrix Access Gateway Enterprise Edition Appliance.

Use the Configuration Utility to manage or configure certificates and perform the following steps.
 

Step 1. Download the SSL Certificate & Intermediate CA Certificate
  1. Download your certificate from the unique secure link we provide your technical contact via order fulfillment email.
  2. The ZIP file you downloaded contains the following certificates:
    • SSL certificate (i.e. ssl_certificate.crt, also known as end entity certificate, public key certificate, digital certificate or identity certificate).
    • Intermediate CA certificate (i.e. IntermediateCA.crt, also known as chained certificate or signer/issuer of the SSL certificate).
  3. Unzip the files onto the server where you will install the certificate.
     

Step 2: Pair the SSL Certificate & Private Key

  1. In the Configuration Utility, in the left pane, click SSL, and then click CA Tools.
  2. Under Create Certificate/Keys, click Create Certificate.
  3. In Certificate File Name, click Browse, and select the SSL certificate (i.e. ssl_certificate.crt, as described in Step 1).
  4. In Certificate Format, select the format of the SSL certificate. The default is PEM.
  5. In Certificate Type, select Server.
  6. In Certificate Request File Name, click Browse, select the file, and click Select.
  7. In Validity Period (Number of Days), type the number of days for the expiration notice.
  8. In CA Certificate File Name, click Browse, select the Intermediate CA certificate file (i.e. IntermediateCA.crt, as described in Step 1) and click Select.
  9. In CA Certificate File Format, select the format of the certificate. The default is PEM.
  10. In CA Key File Name, click Browse, select the private key created within the Citrix appliance, and click Select.
  11. In CA KeyFile Format, select the format of the certificate. The default is PEM.
  12. In PEM Passphrase, type the password for the private key.
  13. In CA Serial Number File, click Browse, select the Intermediate CA file (i.e. IntermediateCA.crt, as described in Step 1), and click Create.


Step 3: Install the SSL Certificate and private key on the Access Gateway

  1. In the Configuration Utility, in the left pane, click SSL and then click Certificates.
  2. In the right pane, click Add.
  3. In Certificate-Key Pair Name, type the name of the certificate.
  4. Under Details, select either Local System or Remote System:
    • If you selected Local System, the certificate is located on your computer. Click Browse, navigate to the certificate, and click Select, and click Install.
    • If you selected Remote System, the certificate is installed on the Access Gateway. Click Browse, select the file, and click Select.
  5. In Key Filename, click Browse, click the file, and click Select.
  6. If the certificate is PEM-format, in Password, type the password for the private key.
  7. If you want to configure notification for when the certificate expires, in Expiry Monitor, click Enable. In Notification Period, type the number of days, click Install, and click Close.
     

If you are unable to use these instructions for your server, Symantec recommends that you contact either the vendor of your software or an organization that supports Citrix Access Gateway Enterprise Edition Appliance.


Step 4:  Verify certificate installation

  1. Verify your installation with the Symantec Installation Checker

 

Citrix

For more information, see Citrix Support website.