SlideShare ist ein Scribd-Unternehmen logo
1 von 11
Downloaden Sie, um offline zu lesen
6/28/2012




         Fast and Furious Networking
         28-06-2012 Citrix Networking event




     FAST AND FURIOUS NETWORKING
         Wat betekent de Netscaler voor XA /XD.

      Access Gateway Enterprise. (AGEE)
      High Availability backend infrastructure.
      AAA voor WebInterface /CloudGateway.
      SSL offloading ICA/HDX protocol.
      Integrated Webinterface.




Titel presentatie - 28-06-2012                     2




                                                              1
6/28/2012




     ACCESS GATEWAY ENTERPRISE. (AGEE)
      High-availability versus loadbalancing.
      Meerdere vServers met verschillende FQDN’s.
      Netscaler policy engine.


         SmartAccess XenApp/ XenDesktop.
            • NetScaler SmartAccess eDoc's
         SSLVPN voor VPN toegang.

         Traffic optimization met branch repeater
            • http://support.citrix.com/article/CTX128928/

Titel presentatie - 28-06-2012                               3




     AAA WEBINTERFACE / CLOUDGATEWAY.
         Authenticatie op de Appliance
            • LDAP.
            • RADIUS.


         Single sign-on.
            • UPN of MSAM als SSO attribute.


         Group extraction.



Titel presentatie - 28-06-2012                               4




                                                                        2
6/28/2012




     HA - BACKEND INFRASTRUCTURE
      Domain controllers (LDAP).
      RADIUS 2-factor.
      DNS forwarders.
      Webinterface/ CloudGateway.
      Single-Sign on services.
      Provisioning server TFTP.


         AppExpert Sharepoint/ Outlook WebAccess



Titel presentatie - 28-06-2012                      5




     SSL OFFLOADING ICA/HDX PROTOCOL.
         NetScaler SSL offloading hardware.

         Sneller dan elke andere appliance
          beschikbaar.

         Certificate management centraal.




Titel presentatie - 28-06-2012                      6




                                                               3
6/28/2012




     INTEGRATED WEBINTERFACE
      Ingebouwde webinterface.
      Meeliften op HA van de Netscalers.
      Synchornisatie van de configuratie.
      Ipad integratie.


         http://support.citrix.com/article/CTX127544




Titel presentatie - 28-06-2012                          7




         NetScaler implementaties in de praktijk
         28-06-2012 Citrix Networking event




                                                                   4
6/28/2012




     NU.NL
         Opleiden netwerkbeheerders

      HTTP DOS protection.
      Caching.
      Load balancing.
      Content switching.


      DEMO: LB / CSW
      DEMO: Integrated caching


Titel presentatie - 28-06-2012            9




     IPV6 CAG DIRECT ACCESS.
         Load balancing Direct Access.

         IPv6 CAG.

         IPv6 route monitoring.

         MAC based forwarding.

         USIP/ TCP proxy mode.

Titel presentatie - 28-06-2012            10




                                                      5
6/28/2012




     IPV6 CAG DIRECT ACCESS.




Titel presentatie - 28-06-2012                            11




     APPLICATION FIREWALL STUDENTEN
         Studenten moeten hun eigen webapplicaties
          maken met achterliggende SQL database.
            • Cross-side scripting.
            • SQL injection.
            • Start-URL protection.
         Intranet sites docenten beschikbaar maken via
          AD authenticatie.

      DEMO: NetScaler Application firewall.
      DEMO: NetScaler AAA.


Titel presentatie - 28-06-2012                            12




                                                                      6
6/28/2012




         NetScaler implementatie in de praktijk
         28-06-2012              Lessons learned
                                 Tips & Tricks




     LESSONS LEARNED / TIPS & TRICKS
      Basis instellingen optimalisatie.
      MAC based forwarding/ asymetric routing.
      NetScaler license duidelijk maken.
      Certificates and private key's.
      Logon page layout na reboot.
      Load balancing method /Persistency
      Content filtering vs application firewall.




Titel presentatie - 28-06-2012                      14




                                                                7
6/28/2012




     BASIS INSTELLINGEN OPTIMALISATIE
         Optimizing NetScaler advanced settings.
            • http://support.citrix.com/article/CTX121149/


         Use Subnet IP
            • http://support.citrix.com/article/CTX117360/
            • eDocs Netscaler USNIP


         HA fail-safe mode
            • NetScaler eDoc HA fail-safe mode



Titel presentatie - 28-06-2012                               15




     ASYMETRIC ROUTING - MBF
         LET OP: Het netwerk waarop je
          implementeert.

         BEWARE of: Asymetrical routing.

         MBF (Mac Based Forwarding)
            • http://support.citrix.com/article/CTX132952




Titel presentatie - 28-06-2012                               16




                                                                         8
6/28/2012




     NETSCALER LICENSE DUIDELIJK MAKEN
         License types
            • Netscaler feature license
            • Access Gateway Platform license
            • Access Gateway Universal license


         License hostid name
            • MAC address eerst NIC
            • Hostname


         http://support.citrix.com/article/CTX121062/

Titel presentatie - 28-06-2012                                    17




     CERTIFICATES AND PRIVATE KEY'S.
         Public key/ Private key certificates.

         IIS certificate export and OpenSSL.
            • http://support.citrix.com/article/CTX109031
            • http://support.citrix.com/article/CTX106028


            Link certificates aan root/intermediates.
            •      http://support.citrix.com/article/CTX128539/


            Monitor certificate expiration via SNMP.

Titel presentatie - 28-06-2012                                    18




                                                                              9
6/28/2012




     LOGON PAGE LAYOUT NA REBOOT.
         AAA en AGEE portal page layout.
            • Alles wat je moet weten op een rij.


         Let op de reboot.

         Het verschil tussen ICA proxy en clientless
          access.

         De rewrite functionaliteit kan hier uitkomst
          bieden.

Titel presentatie - 28-06-2012                               19




     LB METHOD / PERSISTENCY.
         Slow start mode.
            • http://support.citrix.com/article/CTX124711


         COOKIEINSERT timeout.
            • http://support.citrix.com/article/CTX108883/


         Clear persistency bij testen loadbalacing.
            • http://support.citrix.com/article/CTX122837/




Titel presentatie - datum                                    20




                                                                        10
6/28/2012




     CF VERSUS APPFW
         Soms overlap in functionaliteiten.

         Gebruik content filtering indien mogelijk.

         Application firewall is krachtiger maar kost
          meer resources van de NetScaler.




Titel presentatie - datum                                        21




     HANDIGE HULPMIDDELEN
         NetScaler product documentation
            • http://support.citrix.com/product/nsad/v9.3/doc
         NetScaler eDocs
            • http://support.citrix.com/proddocs/topic/netscal
              er/ns-gen-netscaler93-wrapper-con.html
         Citrix Forum
            • http://forums.citrix.com/forum.jspa?forumID=109


         Qwise expertise
            • http://www.qwise.nl


Titel presentatie - datum                                        22




                                                                            11

Weitere ähnliche Inhalte

Kürzlich hochgeladen

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 

Kürzlich hochgeladen (20)

Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 

Empfohlen

Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
Kurio // The Social Media Age(ncy)
 
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them wellGood Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Saba Software
 
Introduction to C Programming Language
Introduction to C Programming LanguageIntroduction to C Programming Language
Introduction to C Programming Language
Simplilearn
 

Empfohlen (20)

How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
 
More than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike RoutesMore than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike Routes
 
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
 
Barbie - Brand Strategy Presentation
Barbie - Brand Strategy PresentationBarbie - Brand Strategy Presentation
Barbie - Brand Strategy Presentation
 
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them wellGood Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
 
Introduction to C Programming Language
Introduction to C Programming LanguageIntroduction to C Programming Language
Introduction to C Programming Language
 

Citrix NetScaler in de praktijk

  • 1. 6/28/2012 Fast and Furious Networking 28-06-2012 Citrix Networking event FAST AND FURIOUS NETWORKING  Wat betekent de Netscaler voor XA /XD.  Access Gateway Enterprise. (AGEE)  High Availability backend infrastructure.  AAA voor WebInterface /CloudGateway.  SSL offloading ICA/HDX protocol.  Integrated Webinterface. Titel presentatie - 28-06-2012 2 1
  • 2. 6/28/2012 ACCESS GATEWAY ENTERPRISE. (AGEE)  High-availability versus loadbalancing.  Meerdere vServers met verschillende FQDN’s.  Netscaler policy engine.  SmartAccess XenApp/ XenDesktop. • NetScaler SmartAccess eDoc's  SSLVPN voor VPN toegang.  Traffic optimization met branch repeater • http://support.citrix.com/article/CTX128928/ Titel presentatie - 28-06-2012 3 AAA WEBINTERFACE / CLOUDGATEWAY.  Authenticatie op de Appliance • LDAP. • RADIUS.  Single sign-on. • UPN of MSAM als SSO attribute.  Group extraction. Titel presentatie - 28-06-2012 4 2
  • 3. 6/28/2012 HA - BACKEND INFRASTRUCTURE  Domain controllers (LDAP).  RADIUS 2-factor.  DNS forwarders.  Webinterface/ CloudGateway.  Single-Sign on services.  Provisioning server TFTP.  AppExpert Sharepoint/ Outlook WebAccess Titel presentatie - 28-06-2012 5 SSL OFFLOADING ICA/HDX PROTOCOL.  NetScaler SSL offloading hardware.  Sneller dan elke andere appliance beschikbaar.  Certificate management centraal. Titel presentatie - 28-06-2012 6 3
  • 4. 6/28/2012 INTEGRATED WEBINTERFACE  Ingebouwde webinterface.  Meeliften op HA van de Netscalers.  Synchornisatie van de configuratie.  Ipad integratie.  http://support.citrix.com/article/CTX127544 Titel presentatie - 28-06-2012 7 NetScaler implementaties in de praktijk 28-06-2012 Citrix Networking event 4
  • 5. 6/28/2012 NU.NL  Opleiden netwerkbeheerders  HTTP DOS protection.  Caching.  Load balancing.  Content switching.  DEMO: LB / CSW  DEMO: Integrated caching Titel presentatie - 28-06-2012 9 IPV6 CAG DIRECT ACCESS.  Load balancing Direct Access.  IPv6 CAG.  IPv6 route monitoring.  MAC based forwarding.  USIP/ TCP proxy mode. Titel presentatie - 28-06-2012 10 5
  • 6. 6/28/2012 IPV6 CAG DIRECT ACCESS. Titel presentatie - 28-06-2012 11 APPLICATION FIREWALL STUDENTEN  Studenten moeten hun eigen webapplicaties maken met achterliggende SQL database. • Cross-side scripting. • SQL injection. • Start-URL protection.  Intranet sites docenten beschikbaar maken via AD authenticatie.  DEMO: NetScaler Application firewall.  DEMO: NetScaler AAA. Titel presentatie - 28-06-2012 12 6
  • 7. 6/28/2012 NetScaler implementatie in de praktijk 28-06-2012 Lessons learned Tips & Tricks LESSONS LEARNED / TIPS & TRICKS  Basis instellingen optimalisatie.  MAC based forwarding/ asymetric routing.  NetScaler license duidelijk maken.  Certificates and private key's.  Logon page layout na reboot.  Load balancing method /Persistency  Content filtering vs application firewall. Titel presentatie - 28-06-2012 14 7
  • 8. 6/28/2012 BASIS INSTELLINGEN OPTIMALISATIE  Optimizing NetScaler advanced settings. • http://support.citrix.com/article/CTX121149/  Use Subnet IP • http://support.citrix.com/article/CTX117360/ • eDocs Netscaler USNIP  HA fail-safe mode • NetScaler eDoc HA fail-safe mode Titel presentatie - 28-06-2012 15 ASYMETRIC ROUTING - MBF  LET OP: Het netwerk waarop je implementeert.  BEWARE of: Asymetrical routing.  MBF (Mac Based Forwarding) • http://support.citrix.com/article/CTX132952 Titel presentatie - 28-06-2012 16 8
  • 9. 6/28/2012 NETSCALER LICENSE DUIDELIJK MAKEN  License types • Netscaler feature license • Access Gateway Platform license • Access Gateway Universal license  License hostid name • MAC address eerst NIC • Hostname  http://support.citrix.com/article/CTX121062/ Titel presentatie - 28-06-2012 17 CERTIFICATES AND PRIVATE KEY'S.  Public key/ Private key certificates.  IIS certificate export and OpenSSL. • http://support.citrix.com/article/CTX109031 • http://support.citrix.com/article/CTX106028  Link certificates aan root/intermediates. • http://support.citrix.com/article/CTX128539/  Monitor certificate expiration via SNMP. Titel presentatie - 28-06-2012 18 9
  • 10. 6/28/2012 LOGON PAGE LAYOUT NA REBOOT.  AAA en AGEE portal page layout. • Alles wat je moet weten op een rij.  Let op de reboot.  Het verschil tussen ICA proxy en clientless access.  De rewrite functionaliteit kan hier uitkomst bieden. Titel presentatie - 28-06-2012 19 LB METHOD / PERSISTENCY.  Slow start mode. • http://support.citrix.com/article/CTX124711  COOKIEINSERT timeout. • http://support.citrix.com/article/CTX108883/  Clear persistency bij testen loadbalacing. • http://support.citrix.com/article/CTX122837/ Titel presentatie - datum 20 10
  • 11. 6/28/2012 CF VERSUS APPFW  Soms overlap in functionaliteiten.  Gebruik content filtering indien mogelijk.  Application firewall is krachtiger maar kost meer resources van de NetScaler. Titel presentatie - datum 21 HANDIGE HULPMIDDELEN  NetScaler product documentation • http://support.citrix.com/product/nsad/v9.3/doc  NetScaler eDocs • http://support.citrix.com/proddocs/topic/netscal er/ns-gen-netscaler93-wrapper-con.html  Citrix Forum • http://forums.citrix.com/forum.jspa?forumID=109  Qwise expertise • http://www.qwise.nl Titel presentatie - datum 22 11