Hi Ive been tasked to document the Web Interface communication in our environment and the ports that need to be opened between our DMZ and internal network. Im looking at installing a Web Interface in our DMZ which will access our Citrix Farm on the internal network. I need the Web Interface to authenticate against Active Directory. This is what Ive got so far and I was hoping someone could crosscheck or point me in the right direction. 1) Client - Web Interface - Port 80 2) Web Interface - Active Directory (AD on internal network) - not sure what AD ports need to be opened 3) Active Directory - Web Interface 4) Web Interface - Zone Data Collector - Port 80 5) Zone Data Collector - Web Interface - Port 80 6) Web Interface - Client - Port 80 User launches Published App 7) Client - Web Interface - Port 80 8) Web Interface - Client - Port 80 8) Client - Citrix Presentation Server - Port 1494 A few questions: 1) Is the above correct? 2) When a user launches a Published App, is the client talking 1494 direct to the Citrix Presentation Server? Is the communication going through the Web Interface or is it direct from client to the Citrix Server? Therefore does 1494 need to be open to the client or is it 1494 from Web Interface to Citrix server only? 3) If the client is using JAVA does this still talk 1494 direct to the Citrix Farm or is it a different port? Im trying to document the above login process and would appreciate any assistance or direction. Thanks Angela _________________________________________________________________ Overpaid or Underpaid? Check our comprehensive Salary Centre http://a.ninemsn.com.au/b.aspx?URL=http%3A%2F%2Fcontent%2Emycareer%2Ecom%2Eau%2Fsalary%2Dcentre%3Fs%5Fcid%3D595810&_t=766724125&_r=Hotmail_Email_Tagline_MyCareer_Oct07&_m=EXT************************************************ For Archives, RSS, to Unsubscribe, Subscribe or set Digest or Vacation mode use the below link: //www.freelists.org/list/thin ************************************************