410 likes | 427 Views
Citrix MetaFrame Secure Access Manager: An Overview of Administration. Joseph W. Baker III Systems Engineer Citrix Systems, Inc. Session Goals. Learn what Citrix MetaFrame Secure Access Manager is and how it works Find out how to create a simple solution right out-of-the-box.
E N D
Citrix MetaFrame Secure Access Manager: An Overview of Administration Joseph W. Baker III Systems EngineerCitrix Systems, Inc.
Session Goals • Learn what Citrix MetaFrame Secure Access Manager is and how it works • Find out how to create a simple solution right out-of-the-box
Non Disclosure Agreement • This presentation is confidential. By virtue of your relationship with Citrix, you are bound to retain in confidence all information in this presentation.
Agenda • Its All about Access to My Stuff! • Overview of Secure Access Manager • Solution Architecture • Management Components • Providing out-of-the-box Access • Summary
What is my “stuff”? • Email • Office Applications • CRM Applications • Payroll • Accounting • Shipping & Receiving • Trading • Banking • Real Estate • Web • File Data….
Mainframe PC’s Client/Server Java and Web Web Services .NET XML J2EE Evolution?
Disparate Technologies not Silos Mainframe Unixand Java PC’s Client/Server Web: .Net, J2EE, Web Services
What we do know about our stuff… • Environments will continue to be diverse • Web will not replace legacy overnight • Users will need access to applications, information and services despite the diversity • IT Staff will need to provide timely, secure and cost effective access
What we don’t know about our stuff… • No one truly knows which technology is going to win • Who the major players will be in the market • What technology a company will embrace (ie. .Net, J2EE, Grid….) • What is the next killer application for a particular organization
What is Citrix MetaFrame Secure Access Manager? Secure Access Manager enables organizations to bridge the client/server, content and web gap by providing a unifying interface simply and securely.
Secure Access ManagerFeatures and Benefits • Simple • Easy, wizard driven installation • Centralized management • Powerful • Information and application access • Scalable architecture • Access • Role-based access and User personalization • Seamless Integration with MetaFrame • Value-added Industry Partnerships
Resource Aggregation • Client/Server Applications • Internal Documents and Libraries • Document Management • Collaboration Systems • Web Applications • Web Services • Web Content
Role-based access andUser Personalization • Role-based Access • Applications on demand • Content by job role • Interface by job role • User Personalization • Background Themes • Drag and drop organization • Easy addition of content and services
MetaFrame Integration • Seamless integration with Citrix MetaFrame ensures Web access to all published applications • Comprehensive industry alliances bring even more content and applications into the portal workspace • Use of Citrix ICA enables content and application delivery to a variety of thin client devices and remote locations
Menu Driven Framework Embedded Applications Web Favorites Shared Documents Program Neighborhood Content Applications • Web Applications • CDA’s, Web Parts/Forms, Gadgets • Content Applications are to NFuse Elite as Client/Server Applications are to Windows
Integration CDA’s Bantu IM and Presence Documentum Content Mgmt.* eRoom Collaboration* Lotus Notes Web Access Microsoft NetMeeting Adapter Microsoft Outlook Web Access Microsoft Sharepoint Microsoft Web Parts Adapter Citrix Program Neighborhood Screaming Media Content (3) Sitescape Collaboration Stellent Document Mgmt.* Content Integration CDA’s Alert Broadcaster & Manager Database Viewer Embedded ICA (MetaFrame) Interactive Poll Internal Search (MS Indexing) Message Center Personnel Locator Shared Documents Web Favorites Web Search (Alta Vista) Web Site Viewer World Clock Citrix Content Applications
Integration Web Parts Best Software Business Objects Correlate Technologies Crystal Decisions Decision Support Panel Filenet Microsoft Great Plains Navision NQL – Mini Chat Client SAS Siebel Toolbox SAP Toolbox Content Web Parts Content Sources Status Document Status Tool MSNBC Weather MSNBC News MSNBC Stock MSN MoneyCentral MSN Search MSN Stock Ticker MSN Encarta Reference Microsoft Web Parts
Web Forms • CDA development with Visual Studio .NET add-in • NFuseEliteVSAddInSetup.msi • Must install Web Form Agent on every Agent Server • WebFormCDASetup.msi • Download Web Form Agent and Web Form CDA SDK from CDN site, http://apps.citrix.com/cdn • Citrix recommended development tool
Integration with Project Pearl • Project Pearl Provides Real Collaboration to customers anytime anywhere • Leverage Existing Secure Access Manager and MetaFrame to provide content
Collaboration Content Management Syndicated Content Bantu eRoom SiteScape • Documentum • Stellent • Microsoft SharePoint News Web Parts Accessing Third Party Apps
Access Security Overview • Internet Security • Secure Gateway 1.1 • Secure Gateway 2.0 (New in Megans Bay) • NT and Active Directory Integration • RADIUS server support • SSL 128-bit encryption • Secure ID Support (New in Megans Bay) • Tunnel HTTP and HTTPS Traffic (New Megans Bay) • Login Management • Auto-login capability (New in Megans Bay)
MetaFrame XP Server Farm Data Services, Data Storage Collaboration ServicesMicrosoft SharePointData WarehouseApplication DataFile SharesDatabasesE-mail Syndicated Content and Service Providers ISP ISP State Server Load-balanced Agent Servers Database WebServer XML Message XML Secure Access Management Console HTMLRequest Client OLD Architecture Overview
Web Server • Hosts the Access Interface • Passes request to Load-balanced Agent servers • Delivers information to user via a Web browser • Possible methods of load balancing are: • DNS Round Robin • Network Load Balancing • Hardware Load balancing
Agent Server • A logical server that runs the Secure Access Manager CDAs • Load-balanced Content Delivery Services (CDS) • A server farm requires one Agent server • Add to scale-up capacity • The “Work Horse”
State Server and Server Farm Database • State Server • Holds all the farm configurations • Holds the updated farm information • Holds end user profiles and preferences • Server Farm Database • Storage mechanism used by the server farm to hold configuration and settings data • Either a MSDE or SQL Server database
New Components! • Login Agent • Active X login Page that provides access to Secure Access Manager • Secure Gateway Proxy • Deployed for two stage DMZs • Used to mitigate multiple ports to Protected Network • Access Client • Active X control that allows internal Web Servers to Securely publish content externally
Secure Access Manager (Megans Bay) Authentication Access Mgmt. Non-Secure Connectivity Internal Network Internet DMZ Firewall Firewall Citrix MetaFrame XP and/or MetaFrame for Unix Login Agent 1494 443 ClientWorkstations 443 Secure Gateway Service STA Internal Web Server Access Server
Secure Access Manager (Megans Bay) Access Mgmt. Authentication Internal Network Internet Internet DMZ Firewall Firewall Citrix MetaFrame XP and/or MetaFrame for Unix Login Agent 1494 443 Secure Gateway Proxy 443 Secure Gateway Service ClientWorkstations STA Internal Web Server Access Center
Secure Access Manager Console • Create and publish a custom MMC to administer SQL, Secure Access Manager, IIS, etc… • User accts accessing published PMC need admin permissions on the State Server • MetaFrame Server hosting SAMC must be in a domain trusted by the State server domain • Management Console.msc“ • Use one PMC to manage multiple Secure Access Manager Farms • Standalone installation
Aggregation of a wide range of internal and external content into a single location Secure, role-based access to information and applications Reduced IT costs and fast implementation add up to rapid return on investment Secure Access Manager Console
We’ve got a Solid Roadmap • Universal and Secure Business Access • Business Publishing • Content Enablement • Multi-Platform Integration • Session-based Access • Adaptive Interfacing • Non-Programmatic Access • Delegated Administration
Summary • Low Cost • Low risk • Simple to Manage • Out-of-the-box Power • Scalability • Incredible Value add for Existing MetaFrame Customers • Provide Secure Access to “MY” stuff
TM Citrix Authorized Training • With Citrix training: • Learn tips and techniques for managing and administering Citrix software • Obtain valuable lab time for hands-on practice • Prepare for Citrix certification exams • Learn quickly and efficiently in the classroom • New courses and certification include: • CTX-7200 Citrix NFuse Elite Administration • CTX-6100 Citrix Core Technologies and Architecture • Citrix Certified Integration Architect (CCIA) program to be launched in Q4 2003 • Available worldwide from 350 Citrix Authorized Learning Centers (CALCs) • To find a CALC near you, go to Training Locations from www.citrix.com/training