Ask a Question

Solution ID : SO25713

Last Modified : 05/02/2018

Installation Instruction for Citrix Access Gateway Enterprise Edition Appliance

Solution

This document provides installing SSL Certificate for Citrix Access Gateway Enterprise Edition Appliance.

Use the Configuration Utility to manage or configure certificates and perform the following steps.
 

Step 1. Download the SSL Certificate & Intermediate CA Certificate

Select the correct channel where you ordered the certificate:

 

Step 2: Pair the SSL Certificate & Private Key

  1. In the Configuration Utility, in the left pane, click SSL, and then click CA Tools.
  2. Under Create Certificate/Keys, click Create Certificate.
  3. In Certificate File Name, click Browse, and select the SSL certificate (i.e. ssl_certificate.crt, as described in Step 1).
  4. In Certificate Format, select the format of the  SSL certificate. The default is PEM.
  5. In Certificate Type, select Server.
  6. In Certificate Request File Name, click Browse, select the file, and click Select.
  7. In Validity Period (Number of Days), type the number of days for the expiration notice.
  8. In CA Certificate File Name, click Browse, select the Intermediate CA certificate file (i.e. IntermediateCA.crt, as described in Step 1) and click Select.
  9. In CA Certificate File Format, select the format of the certificate. The default is PEM.
  10. In CA Key File Name, click Browse, select the private key created within the Citrix appliance, and click Select.
  11. In CA KeyFile Format, select the format of the certificate. The default is PEM.
  12. In PEM Passphrase, type the password for the private key.
  13. In CA Serial Number File, click Browse, select the Intermediate CA file (i.e. IntermediateCA.crt, as described in Step 1), and click Create.


Step 3: Install the SSL Certificate and private key on the Access Gateway

  1. In the Configuration Utility, in the left pane, click SSL and then click Certificates.
  2. In the right pane, click Add.
  3. In Certificate-Key Pair Name, type the name of the certificate.
  4. Under Details, select either Local System or Remote System:
    • If you selected Local System, the certificate is located on your computer. Click Browse, navigate to the certificate, and click Select, and click Install.
    • If you selected Remote System, the certificate is installed on the Access Gateway. Click Browse, select the file, and click Select.
  5. In Key Filename, click Browse, click the file, and click Select.
  6. If the certificate is PEM-format, in Password, type the password for the private key.
  7. If you want to configure notification for when the certificate expires, in Expiry Monitor, click Enable. In Notification Period, type the number of days, click Install, and click Close.
     

If you are unable to use these instructions for your server, Thawte recommends that you contact either the vendor of your software or an organization that supports Citrix Access Gateway Enterprise Edition Appliance.


Step 4:  Verify certificate installation

  1. To verify if your certificate is installed correctly, use the Thawte Installation Checker

 

Citrix

For more information, see Citrix Support website.