Using Citrix Application Delivery Infrastructure Solutions to Enable Simple and Secure Teleworking for Federal Employees



Similar documents
Citrix Access Gateway

Citrix MetaFrame Password Manager 2.5

White paper. Microsoft and Citrix VDI: Virtual desktop implementation scenarios

Accelerating Microsoft Windows 7 migrations with Citrix XenApp

Simplicity is power.

White paper. Rapidly Deliver Microsoft Offi ce 2007 with Citrix XenApp

The complete solution for enabling BYO.

WHITE PAPER. Citrix XenDesktop. Cost savings with centralized virtual desktops.

The Citrix guide to desktop virtualisation

Citrix XenDesktop with FlexCast technology. Citrix XenDesktop: Desktop Virtualization For All.

Five reasons why you need Citrix Essentials for Hyper-V now

Citrix Password Manager 4.1

Desktop virtualization and the branch office. Optimizing virtual desktops and applications to the branch office VDI.

Top Three Reasons to Deliver Web Apps with App Virtualization

Citrix XenApp Frequently Asked Questions (The New Name for Citrix Presentation Server)

Extending Microsoft Hyper-V with Advanced Automation and Management from Citrix

Citrix XenClient. Extending the benefits of desktop virtualization to mobile laptop users.

Empowering telework, executive mobility and disaster recovery programs

How To Install A Citrix Netscaler On A Pc Or Mac Or Ipad (For A Web Browser) With A Certificate Certificate (For An Ipad) On A Netscaler (For Windows) With An Ipro (For

Deployment Guide ICA Proxy for XenApp

Executive summary. Introduction Trade off between user experience and TCO payoff

TCO Savings with Desktop Virtualization

Building a better branch office.

The Benefits of Virtualizing Citrix XenApp with Citrix XenServer

Citrix OpenCloud Access. Accelerate cloud computing adoption and simplify identity management.

White paper. Improving visibility to user login experience with Citrix EdgeSight

DEPLOYMENT GUIDE XenApp, Avaya 1X Agent. Deployment Guide. Avaya 1X Agent. XenApp.

Citrix XenApp, MDOP, and Configuration Manager

Virtual desktops: preparing the enterprise for growth.

BYO Rethinking your device strategy.

Advanced virtualization management for Hyper-V and System Center environments.

7 Key Requirements for Secure Remote Access

Features of a comprehensive application security solution

Evaluation Virtual Appliance Quick Start Guide for Citrix XenApp

White paper. Getting started with EdgeSight for Load Testing

Citrix Receiver for Enterprise Applications The technical detail

Secure remote access

Advanced virtualization management for Hyper-V and System Center environments

Citrix Solutions for Complying with PCI-DSS ENSURING PROTECTION OF WEB APPLICATIONS AND PRIVACY OF CARDHOLDER INFORMATION

Maximizing Flexibility and Productivity for Mobile MacBook Users

Desktop virtualization for all

Staying Ahead of the Hacker Curve Turn-key Web Application Security Solution

EasyConnect. Any application - Any device - Anywhere. Faster, Simpler & Safer Networks

Windows 7 easier with Citrix XenDesktop.

Advanced Service Desk Security

Technical Guide for Adding XenDesktop 4 to an Existing XenApp 5 Environment

AppFlow: next-generation application performance monitoring.

Application Template Deployment Guide

Benefits of Citrix NetScaler for Ajax Applications

Citrix OpenCloud Access. Enabling seamless delivery of cloud-hosted applications.

Microsoft Dynamics CRM 2015 with NetScaler for Global Server Load Balancing

Better virtualization of. XenApp and XenDesktop with XenServer

Deployment Guide ICA Proxy for XenApp

U.S. Department of Defense: Defense Logistics Agency (DLA) achieves unmatched agility through telework and BYOD strategy

Deploying F5 Application Ready Solutions with VMware View 4.5

White paper. Keys to SAP application acceleration: advances in delivery systems.

Endpoint Virtualization for Healthcare Providers

Citrix desktop virtualization and Microsoft System Center 2012: better together

Bring your own device freedom

Desktop virtualization for all

Secure SSL, Fast SSL

The falling cost and rising value of desktop virtualization

GoToMyPC Corporate Advanced Firewall Support Features

White Paper. Protecting Mobile Apps with Citrix XenMobile and MDX. citrix.com

Deploying NetScaler Gateway in ICA Proxy Mode

Taking Windows Mobile on Any Device

Permeo Technologies WHITE PAPER. HIPAA Compliancy and Secure Remote Access: Challenges and Solutions

High availability and disaster recovery with Microsoft, Citrix and HP

Virtual desktops in hospitals: streamlining clinical workflows

Why Switch from IPSec to SSL VPN. And Four Steps to Ease Transition

How to Select the Right Remote Support Tool:

GoToMyPC reviewer s guide

GoToMyPC Corporate Security FAQs

Securing virtual desktop infrastructure with Citrix NetScaler

Modernize your business with Citrix XenApp 7.6

An Oracle White Paper July Oracle Desktop Virtualization Simplified Client Access for Oracle Applications

Mobile Device Management

SSL VPN Technical Primer

Citrix ShareFile Enterprise: a technical overview citrix.com

How To Secure Your Business

The Always-on Enterprise: Business Continuity Scenarios that Work

Secure Data Sharing in the Enterprise

NetScaler SQL Intelligent Load Balancing. Scaling the Data Tier with.

Transcription:

W H I T E P A P E R Using Citrix Application Delivery Infrastructure Solutions to Enable Simple and Secure Teleworking for Federal Employees

2 Overview 2 Application Virtualization: Access from Any Computer, Connection or Location 3 Desktop Virtualization: Fast, Simple Access to a Complete Desktop of Applications 3 Application Streaming: As Simple as Record, Download and Play 4 Web Application Delivery: Maximizing Performance, Security and Availability 4 Data Security: End-to-End Protection 4 Ease of Use with IT Control 5 Protection against Theft and Loss 5 Single Sign-on Access and Password Management 5 Application Performance Optimization: High Productivity and Satisfaction 6 End-user Performance Monitoring: A Positive Work Experience 6 Online Collaboration: Effective Teams Regardless of Employee Location 7 Conclusion

INFRASTRUCTURE SOLUTIONS TO ENABLE SIMPLE AND SECURE TELEWORKING FOR FEDERAL EMPLOYEES Overview Federal agencies are being encouraged to promote telework and workforce mobility as a way to comply with Public Law 106-346 and achieve goals including recruitment and retention of staff; continuity of operations; reduction of traffic, fuel consumption and emissions; and improved work/life balance. Most recently, the Telework Enhancement Act of 2007, introduced in March, proposes to make all federal employees eligible for telecommuting unless their employer exempted them. The bill would also require telework-related training for new employees and managers, and require employee reviews to include feasibility discussions regarding telework. Meanwhile, the General Services Administration (GSA) has made a continuing effort to expand teleworking, including creating a number of alternative worksites in the Washington DC metro area so employees can avoid long commutes to their agencies. Recently, GSA s Office of Governmentwide Policy offered advice to agencies regarding the efficient use of information technology (IT) and compliance with teleworking laws. Agencies can provide equipment, supplies, alternative worksites, communications and connectivity. GSA also recommends that agencies provide training and technical support for teleworkers. Agencies seeking the most effective way to support teleworkers, and GSA regions nationwide planning to offer alternative worksites similar to the ones in Washington, should be aware of industry best practices for providing secure, remote access to applications and data. There are many different requirements placed upon an IT solution for telework. It must provide a high level of data security. It should be easy and cost-effective to implement, use and support. It needs to deliver excellent reliability and consistent performance across different usage scenarios. And it must be flexible to accommodate a variety of remote computers, network connections, and existing agency software and infrastructure. This white paper will describe technologies from Citrix Systems, Inc., the global leader in application delivery infrastructure solutions, which are widely used in private industry to enable teleworking and mobile working. Citrix technologies can enable Federal agencies to expand their initiatives with the least amount of budget and staff resources, while providing employees with simple yet secure access to the information they need to be productive while working remotely. Application Virtualization: Access from Any Computer, Connection or Location The traditional approach to application access for alternative workplace or traveling users is to install software programs or client software on each device, and then attempt to manage, upgrade, patch and support them on site. This model quickly leads to major costs as IT personnel are dispatched into the field again and again. When employees are traveling, it may be impossible to do any maintenance until the individual returns to the office with the laptop. To solve these challenges, a number of years ago Citrix developed a model known as application virtualization. Windows -based applications are installed on servers running Citrix Presentation Server software and Microsoft Windows Server software in the datacenter, where they can be easily managed by a small staff. Then the applications are virtualized the Citrix technology enables many users to access private sessions of each individual application over the network. Users view and work with the application interface, sending keystrokes and mouse clicks to the server, which returns an updated screen view. In other words, the applications appear to be 2

running on a remote desktop or laptop, but in reality are hosted on the Citrix server. Application virtualization technology also allows users to work with local printers and other peripherals. The advantages of Citrix application virtualization solutions for teleworking and workforce mobility are enormous. Users enjoy the convenience of accessing applications from any device with a network connection: because the applications are not running on the user s computer, its brand, age and capabilities are irrelevant. Agency IT personnel no longer have to travel to remote locations to maintain applications everything is done quickly and efficiently in the data center. A Citrix Presentation Server capability known as session shadowing even allows IT personnel to view or (with permission) take over an employee s application session from the datacenter for training or troubleshooting. With centralized application management, support and training, Citrix application virtualization promotes flexible working while significantly reducing the costs of computing. Desktop Virtualization: Fast, Simple Access to a Complete Desktop of Applications For agencies that wish to provide a complete desktop of applications to their teleworking employees, new Citrix desktop virtualization technology can make this process simple and easy compared to traditional desktop provisioning. Those processes typically entailing procurement, configuration and image management, and shipment of the physical hardware to the user. Similar to application virtualization, desktop virtualization enables centralized delivery and management of the entire desktop. In this scenario, Citrix Desktop Server manages delivery of the user s Windows desktop, which is running on a Windows Terminal Server or blade PC or virtualized using a virtual server. The user accesses the desktop over the network. Citrix Desktop Server provides three Dynamic Desktop models, enabling organizations to deliver the appropriate desktop for all their employees needs with a single solution. There are many benefits to this approach including instant provisioning, centralized management of desktops and easy de-provisioning. In fact, Citrix Desktop Server lowers the total cost of desktop delivery by as much as 40 percent while delivering the high performance and enhanced security. Application Streaming: As Simple as Record, Download and Play Sometimes teleworking and mobile employees need to work offline, disconnected from a network-based application virtualization or desktop virtualization solution. For example, anyone who is taking a long flight or working in an extremely remote area may need to work on an application that resides locally, rather than one that is delivered from the datacenter. Application streaming technology from Citrix addresses this situation. Just like streaming and downloading music, this technology delivers applications to the employee s computer for use whenever and wherever desired even when not connected to a network. To avoid the problems of installing the application on the computer such as incompatibilities, configuration and security concerns applications are cached locally in an isolation environment. 3

INFRASTRUCTURE SOLUTIONS TO ENABLE SIMPLE AND SECURE TELEWORKING FOR FEDERAL EMPLOYEES For the employee, it s as easy as clicking on an icon on the desktop. Once the worker is finished with the application, it disappears from the machine for enhanced security. Citrix application streaming benefits IT by eliminating application conflicts and the need for extensive regression testing. Web Application Delivery: Maximizing Performance, Security and Availability More and more applications today are Web-based. Delivering Web applications to teleworkers and alternative worksites can involve overcoming network bandwidth constraints and latency, as well as strengthening security over public networks. Citrix NetScaler solutions address all these challenges. NetScaler data compression and caching technology can increase the performance of Web applications by up to five times, avoiding slow performance that can cause worker frustration and degrade productivity. To improve security, patented Citrix technology enables NetScaler to block illegitimate requests for access and defend against damaging denial of service (DoS) attacks and other application-based threats. NetScaler appliances are installed in the datacenter for ease of administration and lower IT costs. Cost benefits also derive from optimizing available bandwidth and avoiding network upgrades. Data Security: End-to-End Protection EASE OF USE WITH IT CONTROL For telecommuting security, the National Institute of Standards and Technology (NIST) recommends installation of anti-virus and spyware-removal software on each worker s computer; however, it is very difficult to ensure that remote devices especially public terminals have full and up-to-date protection. Therefore, it is critical to have a method for remotely controlling the degree of user access to applications based on how secure each device is. For example, if a mobile user is connecting from a public Internet kiosk, it would be undesirable to allow data to be downloaded and possibly left on the machine. Or if a teleworker s antivirus protection is not current, it would be unwise to allow data to be saved on the computer until the antivirus has been updated. For practical reasons, IT staff must be able to enforce these controls from the data center. Traditional solutions for application security, such as virtual private networks (VPNs), are primarily focused on access to networks. Next-generation VPNs from Citrix, which are based on the Secure Sockets Layer (SSL) protocol, can provide secure access to specific application resources. Citrix Access Gateway SSL VPNs use a downloadable Web software client that does not require on-site installation or updating by IT staff. In addition to stringent encryption of application data over the network also called for by NIST and support for two-factor authentication devices such as tokens, Access Gateway solutions offer a unique Citrix technology, called SmartAccess, that provides centralized, dynamic controls over user actions including viewing, downloading, saving, editing or printing based on the security level of each work scenario. With Access Gateway, remote employees enjoy a single, secure point of access to applications and data. IT staff gain sophisticated security controls while avoiding the cost and complexity of maintaining traditional VPN solutions. 4

PROTECTION AGAINST THEFT AND LOSS There have been a number of recent cases involving the potential exposure of highly confidential data, such as Social Security numbers, when a computer brought home by an agency employee was stolen or mislaid. To avoid this possibility, Citrix application virtualization technology keeps sensitive application data behind the agency firewall instead of stored locally on laptops, PCs or other devices. If a computer is lost or stolen, this data is not placed at risk because it remains securely in the datacenter. SINGLE SIGN- ON ACCESS AND PASSWORD MANAGEMENT The use and management of application passwords can be a big security issue for Federal agencies and a giant headache for users and IT staff alike. Many applications are password-protected, forcing users to remember multiple logins and take care of password changes on a regular basis. With so many different passwords to manage, employees may write them down or use weak passwords, increasing security risks especially when working from an untrusted device. They also may overload the help desk with requests for password assistance and resets. Implementing Citrix Password Manager, an enterprise single sign-on (ESSO) solution, reduces the burden of application passwords for users and IT staff while strengthening security. With Password Manager, the logon process for individual applications is automated: users log on just once to the agency s system and the solution authenticates them to each application. This means a single password to remember instead of many, and consequently, fewer help desk calls. Citrix Password Manager also provides powerful, centralized management tools for IT staff, allowing them to specify strong passwords, automate application password changes and quickly terminate a user s access. It also support the use of two-factor authentication tokens, biometrics and other technologies for even greater security. Application Performance Optimization: High Productivity and Satisfaction Another challenge posed by teleworking and mobile work is slow performance of applications over wide-area networks. As employees work at greater distances from the datacenter, such as at alternative worksites, WAN latency can significantly impact response time and force workers to wait for software to launch or actions to be implemented. This is particularly evident when data-intensive or graphics-heavy applications are involved. Slow application performance can cause productivity loss and dissatisfaction. Fortunately, there is technology available to optimize application delivery over IP-based WANs, including private leased lines, public Internet VPNs, and satellite and wireless WANs. Citrix WANScaler is installed in the datacenter where it automatically and dynamically applies to each data flow the best combination of performance-boosting techniques depending on the application, the data and the network conditions. With WANScaler, teleworkers and mobile employees will experience LAN-line application performance over the WAN, which means less time waiting for slow applications and more time using the application. 5

INFRASTRUCTURE SOLUTIONS TO ENABLE SIMPLE AND SECURE TELEWORKING FOR FEDERAL EMPLOYEES End-user Performance Monitoring: A Positive Work Experience Nothing can discourage employees from teleworking faster than a poor experience with application access. Whether caused by network problems, computer issues, server issues or even the application itself, the result can be frustration, lost productivity and repeated calls to the help desk. Instead of guessing at the source of the difficulty, Federal agencies need tools that can monitor system performance, alert staff when problems occur, and pinpoint the source for fast resolution. Advanced technology is available to monitor the end user s experience and report to the IT team about potential and existing problems. The Citrix EdgeSight product is based on a server in the datacenter, and relies on a small agent, or software component, on each worker s computer to report back to the server on a regular basis. A wide range of metrics can be tracked and reported by EdgeSight, allowing a detailed look at the entire system or individual issues. The benefits of end-user performance monitoring include better support for remote users, proactive identification and management of system performance, and reduction of the IT team s workload. Online Collaboration: Effective Teams Regardless of Employee Location Teambuilding and interpersonal relationships can suffer when individuals lack regular contact with colleagues and managers. To make telework and workforce mobility more effective, agencies need a tool that enables employees to collaborate on projects and documents, and hold meetings without requiring travel. Citrix s Web-based collaboration solution, Citrix GoToMeeting, is hosted by a third party known as software as a service. GoToMeeting provide the benefits of easy and simple meetings without adding a new function to IT s list of responsibilities. With this hosted service, users simply access a website to set up a meeting or conference and issue invitations. Meeting attendees do not need pre-loaded software or administrative privileges to participate they can attend by simply clicking a Web link sent from the meeting host. Once all invited attendees are in the meeting, the presenter can instantly share any file or application on the desktop, change presenters, or give keyboard and mouse control to an attendee. Not only does online collaboration with GoToMeeting boost productivity while reducing travel costs, but it also helps to build and maintain work relationships when individuals are away from the office for extended periods or permanently. 6

Conclusion There are a number of different issues that must be resolved before a Federal teleworking initiative can succeed. One major factor is the IT system: if people have a fast, simple, secure and effective way to access applications, data and teammates, they can focus on getting work done instead of struggling to resolve technical problems outside the office. Similarly, the right technology can ease the IT department s challenges of supporting users on various computers or portable devices. And it can allay agency concerns about security breaches and high costs for infrastructure and support. Thousands of companies have successfully implemented Citrix s application delivery infrastructure solutions, which that provide the latest in application virtualization, application security, application optimization, end-user performance monitoring and collaboration. Citrix solutions are considered best practices across the globe. They are making it practical and cost-effective for people to work productively from anywhere, and are delivering benefits of improved retention and satisfaction, reduced travel and greater flexibility. Citrix Worldwide WORLDWIDE HEADQUARTERS Citrix Systems, Inc. 851 West Cypress Creek Road Fort Lauderdale, FL 33309 USA Tel: +1 (800) 393 1888 Tel: +1 (954) 267 3000 EUROPEAN HEADQUARTERS Citrix Systems International GmbH Rheinweg 9 8200 Schaffhausen Switzerland Tel: +41 (52) 635 7700 ASIA PACIFIC HEADQUARTERS Citrix Systems Hong Kong Ltd. About Citrix: Citrix Systems, Inc. (Nasdaq:CTXS) is the global leader in access infrastructure solutions and the most trusted name in enterprise access. Citrix software enables people in businesses, government agencies, and educational institutions to securely, easily and instantly access the on-demand enterprise, from anywhere, anytime, using any device, over any connection. Nearly 50 million people in more than 120,000 organizations rely on the Citrix MetaFrame Access Suite to do their jobs. Citrix customers include 100% of the Fortune 100 companies, 99% of the Fortune 500, and 92% of the Fortune Global 500. Based in Fort Lauderdale, Florida, Citrix has offices in 26 countries, and more than 7,000 channel and alliance partners in more than 100 countries. For more information visit www.citrix.com. Suite 3201, 32nd Floor One International Finance Centre 1 Harbour View Street Central Hong Kong Tel: +852 2100 5000 CITRIX ONLINE DIVISION 5385 Hollister Avenue Santa Barbara, CA 93111 Tel: +1 (805) 690 6400 2004 Citrix Systems, Inc. All rights reserved. Citrix and MetaFrame are registered trademarks of Citrix Systems, Inc. in the United States and other countries. UNIX is a registered trademark of The Open Group in the United States and other countries. AIX is a registered trademark of International Business Machines Corporation. HP-UX is a registered trademark of Hewlett-Packard Company. Sun, Java and Solaris are trademarks of Sun Microsystems, Inc. Microsoft and Windows are registered trademarks of Microsoft Corporation in the United States and other countries. All other trademarks and registered trademarks are the property of their respective owners. 0504/PDF www.citrix.com