Carol, XML being web traffic, are the clients setup to connect using = TCP/IP + HTTP? If they are just set to TCP/IP, traffic is coming in on = the ICA port (1494) and getting dropped at the firewall. Check your = logs and see. HTH. Regards, Tyler Kinchen tkinchen@xxxxxxxxxxxxx > -----Original Message----- > From: Carl Arnoult [mailto:CArnoult@xxxxxxxxxxxxxxxxxxxxx] > Sent: Thursday, September 12, 2002 4:42 PM > To: thin@xxxxxxxxxxxxx > Subject: [THIN] Watchguard >=20 >=20 >=20 > Any Citrix shops out there that are also utilizing a=20 > Watchguard Firebox =3D > for your firewall? We've configured our 2-server Citrix farm=20 > (MF XPa) =3D > to use port 8080 for XML TCP/IP traffic. I need to configure the =3D > firewall to pass this traffic from specific external IP=20 > addresses for =3D > users working from home. Thus far I've configured the Citrix=20 > servers =3D > with ALTADDR for the appropriate public IP addresses and=20 > configured the =3D > user's client Firewall setting to use the Alternate Address. I've =3D > created a Watchguard service with a static NAT from the appropriate = =3D > public IP address to the corresponding internal IP for the Citrix =3D > servers. However the Watchguard is blocking this traffic=20 > when I attempt =3D > to connect from one of the "allowed" remote workstations. =3D20 >=20 > Thanks... >=20 > Carl Arnoult > Elder Care Alliance > 510.434.2805 >=20 ********************************************** This weeks sponsor 99Point9.com 99Point9 helps solve your unresolved technical server-based questions, issues and incidents. http://www.99point9.com *********************************************** For Archives, to Unsubscribe, Subscribe or set Digest or Vacation mode use the below link. http://thethin.net/citrixlist.cfm