Bug ID 523803: Support two-factor authentication for Citrix Receivers in StoreFront proxy mode

Last Modified: Apr 10, 2019

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
11.6.0, 11.6.0 HF1, 11.6.0 HF2, 11.6.0 HF3, 11.6.0 HF4

Fixed In:
11.6.0 HF5

Opened: May 18, 2015
Severity: 3-Major

Symptoms

Citrix Receivers do not detect 2-factor authentication when connecting to APM.

Impact

Citrix Receivers do not detect 2-factor authentication.

Conditions

APM is configured as StoreFront proxy and 2-factor authentication is used.

Workaround

To enable 2-factor authentication, put a Variable Assign agent in front of the Logon Page in VPE with the following expression: session.citrix.client_auth_type = expr {"1"}.

Fix Information

Added support for two-factor authentication for Citrix Receivers in StoreFront proxy mode.

Behavior Change

Two-factor RSA+AD auth for Citrix Receiver clients now requires a new VPE configuration when APM is configured in StoreFront Integration mode. Note: To avoid a potential issue, if Citrix Receiver was already configured against APM, the Receiver accounts must be recreated.