7.2 Deployment Options

This section contains information on the following:

7.2.1 Installation Options in a Citrix Environment

To install the Citrix support set:

X_INSTALLCITRIX="Yes"

Novell SecureLogin detects the type of Citrix or terminal service automatically and the following properties are set, depending on the type of the service detected.

If a Citrix client is detected: X_ISCITRIXCLIENT="Yes"

If a Citrix server is detected: X_ISCITRIXSERVER="Yes"

If a terminal client is detected: X_ISTSCLIENT="Yes"

If a terminal server is detected: X_ISTSSERVER="Yes"

Example of a Silent Command Line Citrix Installation

The following is an example of a successful and tested silent command line installation of Novell SecureLogin on a Citrix client.

msiexec.exe /qn /norestart /i "Novell SecureLogin.msi"
ADDLOCAL=MAD,Citrix,CitrixClient X_INSTALLCITRIX="Yes"
X_PLATFORM="CLIENT" X_ISCITRIXCLIENT="Yes"

7.2.2 Deploying Existing Citrix Published Applications

When upgrading from a previous version of Novell SecureLogin to Novell SecureLogin 7.0, you are not required to change any SLLauncher.exe shortcuts previously created for published Citrix applications.

When it is installed, the Novell SecureLogin 7.0 modifies the existing SLLauncher.exe automatically so it becomes a shell that runs any command line passed to it.

The Novell SecureLogin 7.0 installer now automatically detects that the installation is on a Citrix server and prompts you to verify the new Citrix components to be installed.

IMPORTANT:After the successful installation of Novell SecureLogin, if a user has a published desktop open at the same time as a published application, any changes made to the Novell SecureLogin data on the desktop are not reflected in the published application session until Novell SecureLogin is restarted.

7.2.3 Using the Installation Options

Scenario 1: A client has a Citrix environment in an Active Directory mode. The published applications are contained in one published application set and user access to the published applications is through a Citrix Web interface. The client needs to enable single sign-on for published applications.

Install Novell SecureLogin only on the Citrix server and not on the workstations, because the client only needs to enable single sign-on for published application when access is through the Web.

The other Novell Securelogin component needed on the server is the published application component. Use SLLauncher.exe to enable single sign-on for published applications.

Scenario 2: A client has a Citrix environment in an Active Directory mode. Users access applications on their local workstations and also access published applications through the ICA client. Both the local application and the published applications must be enabled for single sign-on. The client also requires the users to use the same credentials to log in to both the local workstations and the Citrix server.

Install Novell SecureLogin and the Citrix components on both the local workstation and the Citrix server to allow local applications and published applications to be enabled for single sign-on. Also, enable GINA for GINA passthrough because the user has authenticated to the directory when logging in to the workstation. When an ICA connection is established, the user’s credentials that are used to authenticate to the workstation are sent through a virtual channel driver (Citrix Client option) to the Citrix server GINA.

7.2.4 Deploying in Citrix Desktop Mode

Deploying the full Citrix Desktop requires Novell SecureLogin schema extensions on the network directory server and client installation on the Citrix server.

The data of users using the Novell SecureLogin and using the Citrix server remotely is stored in the Citrix directory and the network directory.

7.2.5 Deploying Existing Citrix Published Applications

If you are upgrading from a previous version of Novell SecureLogin, do not change the SLLauncher.exe shortcuts previously created for published Citrix applications. Novell SecureLogin modifies the existing SLLauncher.exe automatically so that SLLauncher.exe is a shell that runs any command line passed to it.

The Novell SecureLogin installer automatically detects that the installation is on a Citrix server and prompts you to verify the new Citrix components to be installed.

IMPORTANT:After installing SecureLogin, if you have both published application and published desktop open, the changes made to SecureLogin on the desktop is not reflected in the published application session until SecureLogin is restarted.

7.2.6 Citrix Published Applications and the Application Definition Wizard

The Application Definition Wizard included in Novell SecureLogin 7.0 or later cannot detect Citrix published applications. Run the application on your workstation to create an application definition using the wizard.