Brian Madden Logo
Your independent source for application and desktop virtualization.
Marketplace

advertisement

certificate available for all users connecting to seamless app, in the x64 Terminal Server / Citrix forum on BrianMadden.com

rated by 0 users
This post has 5 Replies | 0 Followers

Top 200 Contributor
Points 915
Chris Meehan Posted: 03-04-2008 12:53 PM
I need to have a Personal certificate available for every user that is logging into the farm to access a seamless application. On a standalone workstation with the app running locally, the certificate shows up in the internet explorer personal store folder. how do i go about making this available to my published application in a citrix environment.

Thanks in advance!

chris
  • Filed under:
  • | Post Points: 20
Top 10 Contributor
Points 26,630
Find a user that has the certificate, and export the registry hive HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My

This will contain their personal ceritifcates. You can now use a simple script to import that reg file for every user that hits your servers, and they should now have that certificate as well.
DON'T FORGET TO VOTE!!!

Why is it called "Common Sense"? It doesn't seem all that common!
  • | Post Points: 20
Top 200 Contributor
Points 915
Will try that now... Was hoping that there would be a GPO method of getting the cert into each users personal store and assigning that GPO to only the CITRIX boxes.. I will let you know my results with the registry key and script to import. Thanks for the response.

Chris
  • | Post Points: 5
Top 200 Contributor
Points 915
Ok, On a system that has the certificate imported and showing in Internet Explorer options within the Personal Store.. I go to the hive you specified in the registry and the "My" key is empty? The only places that I am showing some data in the registry under "System Certificates" is the following:

ACRS
PysicalStores
.LocalMachine



CA
Certificates
CEC5A....... blah blah (within this key i have a REG_Binary value showing some hex)

Root
Certificates
ProtectedRoots (within this key i also have a REG_Binary value)



All other keys under the "System Certificates" are blank including "My"


Chris
  • | Post Points: 20
Top 10 Contributor
Points 26,630
It must be stored somewhere else then. When I get some time, I'll look.
DON'T FORGET TO VOTE!!!

Why is it called "Common Sense"? It doesn't seem all that common!
  • | Post Points: 20
Top 200 Contributor
Points 915
I think the one I'm looking for is actually the Key under \\SystemCertificates\CA\Certificates\CE.....

When i imported the certificate on 1 of the 2 CITRIX boxes in this farm logged in as myself and this is the Key that is different between the two.

When I can confirm I will let you know.

thanks again,

Chris
  • | Post Points: 5
Page 1 of 1 (6 items) | RSS
Copyright © 1997-2008 The Brian Madden Company, LLC | Disclosures | Privacy | Terms of Use | Contact Info