Net id and VDI Changed: 2016-03-22 Version: Rev C Function: Andreas Mossnelid, Solution Architect
Session roaming Net id Connect the result of in depth development cooperation with manufactures of thin clients Finished packages integrated in firmware at leading manufactures Igel, HP, Dell, ChipPC, 10Zig Enables fast session roaming with smart cards in Citrix- and terminal server environment Slide 3
Net id and Citrix Since 2003 SecMaker worked together with Citrix to make sure that smartcard based logon will work. Support connection with ICA files, reciever and webinterface/storefront and Netscaler. Intro movie >> Slide 4
Net id Connect for Citrix Connect: Fast and secure sessionroaming. Activate CertificateIdentityDeclaration as an authentication method on your StoreFront Server. SSO: One Pincode through all workflows when connecting to the Citrix platform. Protocol order, Speed up connections, dialog License: New product not included in Net id Enterprise Maintenance from SM/Citrix Seperate licens; per user or device per month Could be included in the same installation package as Net id Ent. Client and server component Slide 5
Slide 6
Slide 7
Slide 8
Slide 9
Slide 10
Slide 11
Slide 12
Slide 13
Net id Connect Certificate Identity Declaration Slide 14
List your apps directly without pin under 1 sec. Activate CertificateIdentityDeclaration as an authentication method on your StoreFront Server. Now included on the client as a protocol "FallbackOnError"="UnsuitableProtocol" Slide 15
Net id - Solution examples Slide 16
Workstation Lock Down WLD Automated process and SSO Card Insert WES7 or Windows system, Citrix Web interface, SSO Device or computer, local logon Workstation locked down ( Net id WLD) Automatic process for certificate propagation Automatic process startup IE to webinterface Net id load PIN information to Citrix SSO Service Card Removal Disconnect from Citrix Close down IE Clear SSO Information Remove certificates from User store on local device Slide 17
Card Insert Domain User PIN = 345689 1. Smartcard Insert 2. Certificate Propagation 3. Autostart Citrix Webinterface 4. Add PIN and load Citrix SSO 5. Open WI and start Desktop Application starts with full SSO. No additional PIN required. Local User Slide 18
Card Removal Domain User 1. Disconnect session 2. Close Web interface 3. Clear SSO Information 4. Clear certificate in MSCAPI 5. Ready for next user Local User Slide 19
Net id Connect Start up Citrix ICA file connection with session roaming support Card Insert WES7 or Windows system Device or computer, local logon Workstation locked down ( Net id WLD) Automatic process to read out UPN Automatic process startup ICA connection with UPN information Net id load PIN information to Citrix SSO Service Card Removal Disconnect from Citrix Clear SSO Information Slide 20
Card Insert 1. Insert Card 2. Add user information to Citrix Local User Domain User User@Domain.com 3. Start up Desktop with ICA file. 4. Login to Publish Desktop Slide 21
Card Removal 1. Remove smartcard 2. Disconnect session 3. Device locked down 4. Ready for next user Local User Domain User Slide 22
Net id Connect Intaracts with Citrix Receiver Card Insert Windows system, Citrix Receiver, SSO Device or computer, locally logged on Net id and receiver Detect card Net id require PIN to Athenticate Receiver Net id load PIN information to Citrix SSO Service Card Removal Disconnect Applications and Receiver Clear SSO Information Remove certificates from User store on local device Slide 23
Net id Connect 1. Insert card and start up Receiver Domain User Slide 24
Net id Connect 1. Insert card and start up Receiver 2. Authenticate with PIN Domain User Slide 25
Net id Connect 1. Insert card and start up Receiver 2. Authenticate with PIN Domain User 3. Receiver Connects Online Slide 26
Net id Connect Domain User 1. Insert card and start up Receiver 2. Authenticate with PIN 3. Receiver Connects Online 4. Applications avalible with full SSO SSO Slide 27
Net id Connect Domain User 1. Insert card and start up Receiver 2. Authenticate with PIN 3. Receiver Connects Online 4. Applications avalible with full SSO 5. Remove Card 6. Application and Receiver Disconnects 7. Ready for next user Slide 28
Net id and Citrix Demo Net id Connect Intro >> Reciever logon >> Reciever for web >> Slide 31
Net id och VMWare samarbete Default configuration of smartcard, add root, trustkey, connection manager https://www.secmaker.se/teknikresurser/losningar/net-id-med-vmwareview/ Demo Slide 32
Net id och Microsoft samarbete Hotfixar, smartcard reader https://service.secmaker.com RDS/RDS gateway: Slow login through loadbalance/gateway, fast login to one server. Slide 33
Increased security Cost control Easy and userfriendly Customer benefits Slide 34
Reference Videos and links Additional reference videos from SecMaker http://www.youtube.com/secmaker https://service.secmaker.com Slide 35
Slide 36 Slide 36