User Tools

Site Tools


citrix:add_more_ssl_certificates

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
citrix:add_more_ssl_certificates [2020/05/12 23:18] petercitrix:add_more_ssl_certificates [2020/08/14 13:26] (current) 192.168.1.1
Line 2: Line 2:
  
 Certificate error when using Citrix Receiver. Certificate error when using Citrix Receiver.
 +
 +{{:citrix:citrix_-_missing_certificates.png?800|}}
  
 By default, Citrix Receiver only trusts a few root CA certificates, which causes connections to many Citrix servers to fail with an SSL error. By default, Citrix Receiver only trusts a few root CA certificates, which causes connections to many Citrix servers to fail with an SSL error.
Line 18: Line 20:
 <code bash> <code bash>
 ln -sf /etc/ssl/certs/* /opt/Citrix/ICAClient/keystore/cacerts/ ln -sf /etc/ssl/certs/* /opt/Citrix/ICAClient/keystore/cacerts/
 +</code>
 +
 +Since versions 13.1, Citrix needs the certificates in separate files. You need to run the following commands as root:
 +
 +<code bash>
 +cd /opt/Citrix/ICAClient/keystore/cacerts/
 +cp /etc/ca-certificates/extracted/tls-ca-bundle.pem .
 +awk 'BEGIN {c=0;} /BEGIN CERT/{c++} { print > "cert." c ".pem"}' < tls-ca-bundle.pem
 </code> </code>
  
citrix/add_more_ssl_certificates.1589325483.txt.gz · Last modified: 2020/07/15 09:30 (external edit)

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki