You can configure the network ranges for which users' application or desktop launch traffic (ICA traffic) should be routed directly to the XenApp server. This is typically used to provide internal access to the Citrix-published resources.

When a user launches an application or desktop from the Workspace ONE portal, if the user's IP address falls in the direct connection range, the ICA traffic is routed directly to the XenApp server.

Note: To configure resource launch for external networks, see the Configuring Resource Launch for External Networks with NetScaler guide.

Procedure

  1. Log in to the VMware Identity Manager console.
  2. Review your network ranges and create new ones, if required.
    1. Click the Identity & Access Management > Policies tab.
    2. Click Network Ranges.
    3. Review the network ranges and click Add Network Range to add new ranges, if required.
  3. Click the Catalog > Virtual Apps tab, then click Virtual Apps Settings.
  4. Select Network Settings.
  5. Select the network range to configure for internal Citrix resource launch.
  6. In the XenApp section of the page, enter the following information.
    1. Enter the XenApp server host name in the Client Access URL Host field. For example: xenapphost.example.com
      If there is a load balancer in front of the XenApp servers, enter the Client Access URL in the following format:

      loadbalancerURL/citrix/storeweb

      Note: If you selected the Use StoreFront checkbox for the server farm while creating the Citrix virtual app collection, enter the same URL that you entered in the StoreFront URL field.
    2. Enter the port in the URL Port field. For example: 443
      If you entered a load balancer URL in the Client Access URL field, use port 443.
    3. Deselect the NetScaler checkbox for direct connections.

    network range

  7. Click Finish.