1 / 41

Citrix MetaFrame Secure Access Manager: An Overview of Administration

Citrix MetaFrame Secure Access Manager: An Overview of Administration. Joseph W. Baker III Systems Engineer Citrix Systems, Inc. Session Goals. Learn what Citrix MetaFrame Secure Access Manager is and how it works Find out how to create a simple solution right out-of-the-box.

Download Presentation

Citrix MetaFrame Secure Access Manager: An Overview of Administration

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Citrix MetaFrame Secure Access Manager: An Overview of Administration Joseph W. Baker III Systems EngineerCitrix Systems, Inc.

  2. Session Goals • Learn what Citrix MetaFrame Secure Access Manager is and how it works • Find out how to create a simple solution right out-of-the-box

  3. Non Disclosure Agreement • This presentation is confidential. By virtue of your relationship with Citrix, you are bound to retain in confidence all information in this presentation.

  4. Agenda • Its All about Access to My Stuff! • Overview of Secure Access Manager • Solution Architecture • Management Components • Providing out-of-the-box Access • Summary

  5. Access to “MY” Stuff?

  6. What is my “stuff”? • Email • Office Applications • CRM Applications • Payroll • Accounting • Shipping & Receiving • Trading • Banking • Real Estate • Web • File Data….

  7. Mainframe PC’s Client/Server Java and Web Web Services .NET XML J2EE Evolution?

  8. Disparate Technologies not Silos Mainframe Unixand Java PC’s Client/Server Web: .Net, J2EE, Web Services

  9. What we do know about our stuff… • Environments will continue to be diverse • Web will not replace legacy overnight • Users will need access to applications, information and services despite the diversity • IT Staff will need to provide timely, secure and cost effective access

  10. What we don’t know about our stuff… • No one truly knows which technology is going to win • Who the major players will be in the market • What technology a company will embrace (ie. .Net, J2EE, Grid….) • What is the next killer application for a particular organization

  11. Overview of Secure Access Manager

  12. What is Citrix MetaFrame Secure Access Manager? Secure Access Manager enables organizations to bridge the client/server, content and web gap by providing a unifying interface simply and securely.

  13. Secure Access ManagerFeatures and Benefits • Simple • Easy, wizard driven installation • Centralized management • Powerful • Information and application access • Scalable architecture • Access • Role-based access and User personalization • Seamless Integration with MetaFrame • Value-added Industry Partnerships

  14. Resource Aggregation • Client/Server Applications • Internal Documents and Libraries • Document Management • Collaboration Systems • Web Applications • Web Services • Web Content

  15. Role-based access andUser Personalization • Role-based Access • Applications on demand • Content by job role • Interface by job role • User Personalization • Background Themes • Drag and drop organization • Easy addition of content and services

  16. MetaFrame Integration • Seamless integration with Citrix MetaFrame ensures Web access to all published applications • Comprehensive industry alliances bring even more content and applications into the portal workspace • Use of Citrix ICA enables content and application delivery to a variety of thin client devices and remote locations

  17. Menu Driven Framework Embedded Applications Web Favorites Shared Documents Program Neighborhood Content Applications • Web Applications • CDA’s, Web Parts/Forms, Gadgets • Content Applications are to NFuse Elite as Client/Server Applications are to Windows

  18. Integration CDA’s Bantu IM and Presence Documentum Content Mgmt.* eRoom Collaboration* Lotus Notes Web Access Microsoft NetMeeting Adapter Microsoft Outlook Web Access Microsoft Sharepoint Microsoft Web Parts Adapter Citrix Program Neighborhood Screaming Media Content (3) Sitescape Collaboration Stellent Document Mgmt.* Content Integration CDA’s Alert Broadcaster & Manager Database Viewer Embedded ICA (MetaFrame) Interactive Poll Internal Search (MS Indexing) Message Center Personnel Locator Shared Documents Web Favorites Web Search (Alta Vista) Web Site Viewer World Clock Citrix Content Applications

  19. Integration Web Parts Best Software Business Objects Correlate Technologies Crystal Decisions Decision Support Panel Filenet Microsoft Great Plains Navision NQL – Mini Chat Client SAS Siebel Toolbox SAP Toolbox Content Web Parts Content Sources Status Document Status Tool MSNBC Weather MSNBC News MSNBC Stock MSN MoneyCentral MSN Search MSN Stock Ticker MSN Encarta Reference Microsoft Web Parts

  20. Web Forms • CDA development with Visual Studio .NET add-in • NFuseEliteVSAddInSetup.msi • Must install Web Form Agent on every Agent Server • WebFormCDASetup.msi • Download Web Form Agent and Web Form CDA SDK from CDN site, http://apps.citrix.com/cdn • Citrix recommended development tool

  21. Integration with Project Pearl • Project Pearl Provides Real Collaboration to customers anytime anywhere • Leverage Existing Secure Access Manager and MetaFrame to provide content

  22. Collaboration Content Management Syndicated Content Bantu eRoom SiteScape • Documentum • Stellent • Microsoft SharePoint News Web Parts Accessing Third Party Apps

  23. Architecture

  24. Access Security Overview • Internet Security • Secure Gateway 1.1 • Secure Gateway 2.0 (New in Megans Bay) • NT and Active Directory Integration • RADIUS server support • SSL 128-bit encryption • Secure ID Support (New in Megans Bay) • Tunnel HTTP and HTTPS Traffic (New Megans Bay) • Login Management • Auto-login capability (New in Megans Bay)

  25. MetaFrame XP Server Farm Data Services, Data Storage Collaboration ServicesMicrosoft SharePointData WarehouseApplication DataFile SharesDatabasesE-mail Syndicated Content and Service Providers ISP ISP State Server Load-balanced Agent Servers Database WebServer XML Message XML Secure Access Management Console HTMLRequest Client OLD Architecture Overview

  26. Web Server • Hosts the Access Interface • Passes request to Load-balanced Agent servers • Delivers information to user via a Web browser • Possible methods of load balancing are: • DNS Round Robin • Network Load Balancing • Hardware Load balancing

  27. Agent Server • A logical server that runs the Secure Access Manager CDAs • Load-balanced Content Delivery Services (CDS) • A server farm requires one Agent server • Add to scale-up capacity • The “Work Horse”

  28. State Server and Server Farm Database • State Server • Holds all the farm configurations • Holds the updated farm information • Holds end user profiles and preferences • Server Farm Database • Storage mechanism used by the server farm to hold configuration and settings data • Either a MSDE or SQL Server database

  29. New Components! • Login Agent • Active X login Page that provides access to Secure Access Manager • Secure Gateway Proxy • Deployed for two stage DMZs • Used to mitigate multiple ports to Protected Network • Access Client • Active X control that allows internal Web Servers to Securely publish content externally

  30. Secure Access Manager (Megans Bay) Authentication Access Mgmt. Non-Secure Connectivity Internal Network Internet DMZ Firewall Firewall Citrix MetaFrame XP and/or MetaFrame for Unix Login Agent 1494 443 ClientWorkstations 443 Secure Gateway Service STA Internal Web Server Access Server

  31. Secure Access Manager (Megans Bay) Access Mgmt. Authentication Internal Network Internet Internet DMZ Firewall Firewall Citrix MetaFrame XP and/or MetaFrame for Unix Login Agent 1494 443 Secure Gateway Proxy 443 Secure Gateway Service ClientWorkstations STA Internal Web Server Access Center

  32. Management Components

  33. Secure Access Manager Console • Create and publish a custom MMC to administer SQL, Secure Access Manager, IIS, etc… • User accts accessing published PMC need admin permissions on the State Server • MetaFrame Server hosting SAMC must be in a domain trusted by the State server domain • Management Console.msc“ • Use one PMC to manage multiple Secure Access Manager Farms • Standalone installation

  34. Aggregation of a wide range of internal and external content into a single location Secure, role-based access to information and applications Reduced IT costs and fast implementation add up to rapid return on investment Secure Access Manager Console

  35. Summary

  36. We’ve got a Solid Roadmap • Universal and Secure Business Access • Business Publishing • Content Enablement • Multi-Platform Integration • Session-based Access • Adaptive Interfacing • Non-Programmatic Access • Delegated Administration

  37. Summary • Low Cost • Low risk • Simple to Manage • Out-of-the-box Power • Scalability • Incredible Value add for Existing MetaFrame Customers • Provide Secure Access to “MY” stuff

  38. TM Citrix Authorized Training • With Citrix training: • Learn tips and techniques for managing and administering Citrix software • Obtain valuable lab time for hands-on practice • Prepare for Citrix certification exams • Learn quickly and efficiently in the classroom • New courses and certification include: • CTX-7200 Citrix NFuse Elite Administration • CTX-6100 Citrix Core Technologies and Architecture • Citrix Certified Integration Architect (CCIA) program to be launched in Q4 2003 • Available worldwide from 350 Citrix Authorized Learning Centers (CALCs) • To find a CALC near you, go to Training Locations from www.citrix.com/training

  39. Thanks

More Related