<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.brianmadden.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Citrix Web Interface</title><link>http://www.brianmadden.com/forums/163.aspx</link><description>Web Interface, Citrix Secure Gateway, Secure Ticket Authority, NFuse, etc.</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 (Build: 30929.2835)</generator><item><title>SSL Error 59. Using XenApp 5.0 and CAG 4.6.3</title><link>http://www.brianmadden.com/forums/thread/170401.aspx</link><pubDate>Tue, 29 May 2012 01:56:27 GMT</pubDate><guid isPermaLink="false">a59ee4a9-9560-4436-b47c-b649e4ba6aaa:170401</guid><dc:creator>jojamie</dc:creator><slash:comments>0</slash:comments><comments>http://www.brianmadden.com/forums/thread/170401.aspx</comments><wfw:commentRss>http://www.brianmadden.com/forums/commentrss.aspx?SectionID=163&amp;PostID=170401</wfw:commentRss><description>&lt;p&gt;Hi&lt;/p&gt;
&lt;p&gt;I have just installed a new certificate onto the Access Gateway (version 4.6.3). Now when connecting externally I get the following error:&lt;/p&gt;
&lt;p&gt;SSL Error 59: The server sent a security certificate identifying&amp;nbsp;&amp;quot;*.NEWBusinessName.org.nz&amp;quot;, the SSL connection was to&amp;nbsp;&amp;quot;apps.businessname.org.nz&amp;quot;.&lt;/p&gt;
&lt;p&gt;The old cert was for &amp;quot;apps.businessname.org.nz&amp;quot;&lt;/p&gt;
&lt;p&gt;New new cert is a wildcard &amp;quot;*.NEWBusinessName.org.nz&amp;quot;&lt;/p&gt;
&lt;p&gt;I have changed the External FQDN in the Access Gateway to reflect the new certificate.&lt;/p&gt;
&lt;p&gt;Now whenever I launch a new application the .ICA file contains SSLProxyName=apps.businessname.org.nz and I get SSL Error 59.&lt;/p&gt;
&lt;p&gt;Changing the ICA manually results in the connection working.&lt;/p&gt;
&lt;p&gt;Can anyone help me to identify where the issue lies and how to resolve it. I have looked at the Web Interface and I have been unable to find a resolution.&lt;/p&gt;
&lt;p&gt;Currently the Web Interface is set to DIRECT access method, and this did work until the new cert was installed.&lt;/p&gt;
&lt;p&gt;I have changed this to GATEWAY DIRECT, and the issue remains. If I can change what is generating the ICA file and inserting the old FQDN I am sure it will fix the problem.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Thanks&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>