[THIN] Re: published apps through firewall.

  • From: george.wasgatt@xxxxxxxxxxxx
  • To: thin@xxxxxxxxxxxxx
  • Date: Thu, 9 Jan 2003 09:01:37 -0500


I do use CSG for just the reasons you mention.  I was just throwing out a
possible reason why Paul's system wasn't working.

-----Original Message-----
From: Alexander Danilychev [mailto:teknica@xxxxxxxxxxx]
Sent: Monday, January 06, 2003 3:33 PM
To: thin@xxxxxxxxxxxxx
Subject: [THIN] Re: published apps through firewall.



George,

Try not to use altaddr - use "DNS split" by registering internal IPs with 
internal DNS and external with outside DNS. When you implement this and get 
your system working install NFuse (if you can) to avoid port 1604 and XML 
port. Note, XML communications are not encrypted by default!!! You are 
taking your chanses!!! Consider(!!!!!) hardening your system with Citrix 
Secure Gateway so port 1494 will not be exposed and use SSL for 
authentication. If you have several MetaFrame servers CSG will save you IPs 
and free some time as well.

ALEX

>From: george.wasgatt@xxxxxxxxxxxx
>Reply-To: thin@xxxxxxxxxxxxx
>To: thin@xxxxxxxxxxxxx
>Subject: [THIN] Re: published apps through firewall.
>Date: Mon, 6 Jan 2003 14:54:32 -0500
>
>
>altaddr
>
>-----Original Message-----
>From: Paul Beckman [mailto:pbeckman@xxxxxxxxxxxxxxxxxxxx]
>Sent: Tuesday, December 24, 2002 10:13 AM
>To: thin@xxxxxxxxxxxxx
>Subject: [THIN] published apps through firewall.
>
>
>I am running XP on W2k.
>I have 1494, 1604, and 80 with a public address translated to my internal
>Citrix IP.
>I can browse the apps but get an I/O error when trying to connect.
>If I put the public address in the server box on a custom ICA connection I
>can connect to the desktop.
>If I stop and restart the IMA service I can connect to the published apps
>once, but if I disconnect I can not reconnect.
>I have also put the XML port on a different port #
>We do not have IIS running on this server.
>and I also created open ports for another server and the same thing 
>happens.
>I have been on the phone with Citrix and no luck.
>Does anyone have any ideas?
>
>Thanks,
>Paul
>
>
>***********************************************
>This Weeks Sponsor: 99point9.com
>The 99Point9.com Online Tech Support
>Helpdesk is the one-stop solution for all
>your server-based computing needs.
>http://www.99point9.com
>************************************************
>For Archives, to Unsubscribe, Subscribe or
>set Digest or Vacation mode use the below link.
>
>http://thethin.net/citrixlist.cfm
>***********************************************
>This Weeks Sponsor: WM Software
>WMS Messenger for TSE
>Affordable Instant Messaging for Terminal Servers
>http://www.wmsoftware.com/wmsm/
>************************************************
>For Archives, to Unsubscribe, Subscribe or
>set Digest or Vacation mode use the below link.
>
>http://thethin.net/citrixlist.cfm


_________________________________________________________________
MSN 8 with e-mail virus protection service: 2 months FREE* 
http://join.msn.com/?page=features/virus

*********************************************** 
This Weeks Sponsor: WM Software
WMS Messenger for TSE
Affordable Instant Messaging for Terminal Servers
http://www.wmsoftware.com/wmsm/
************************************************
For Archives, to Unsubscribe, Subscribe or 
set Digest or Vacation mode use the below link.

http://thethin.net/citrixlist.cfm
*********************************************** 
This Weeks Sponsor: WM Software
WMS Messenger for TSE
Affordable Instant Messaging for Terminal Servers
http://www.wmsoftware.com/wmsm/
************************************************
For Archives, to Unsubscribe, Subscribe or 
set Digest or Vacation mode use the below link.

http://thethin.net/citrixlist.cfm

Other related posts: