Author Topic: HTTP Rewrite for SSL client certificate used with webinterface  (Read 756 times)

Offline bobele

  • Contributor
  • *
  • Posts: 1
  • Karma: 0
Hello

I'm currently testing the solution proposed in
http://support.citrix.com/article/CTX114461 withe the newest netscaler 9 build.

In brief I'm trying to use the ICA proxy thogether with an SSL loadbalancer using two webinterfaces with ssl authentication. We don't like to publish the webinterface to the internet over port 443 directly.

However, the IIS6 on the webinterface is not able to do the certificate mapping (access denied). If I do the same thing directly on the webinterface, then the certificate mapping works. This indicates for me that the rewrite is not done in a proper way.

How do I debug the rewrite on webinterface-site? I suggest that I have to use the wireshark or similar.
In general, may this configuration suggested in the CTX114461 work for the webinterface?

Thank you

Bobele