Brian Madden Logo
Your independent source for application and desktop virtualization.
Marketplace

advertisement

Issue in load balancing of citrix metafram 4.0, in the Citrix XenApp / Presentation Server forum on BrianMadden.com

rated by 0 users
Not Answered This post has 0 verified answers | 9 Replies | 0 Followers

Not Ranked
Points 130
harry posted on 08-12-2008 1:39 AM
Dear All,

I have farm of one metaframe server 4.0. I added one more metaframe server 4.0 to existing farm for load balancing and added that new server to my three published applications.load balancing is started from intranet but when any user use public IP address it gives error to two applicatns that ERROR: An error has occurred while connecting to the requested resource where as one application launched but always directed to old server. Now I am searching for a reliable solution if any one has please help me ASAP because it is quite critical to me. Waiting for reply

All Replies

Top 75 Contributor
Points 1,762
When you are logged into the Webinterface right click the app and click save as and save the ICA file on the desktop. Open it in note pad and look at the "Address=" line. Is it a private IP address (like 192.168.x.x)? It might be easier to publish a second icon to just that server so you can troubleshoot just that system. You either have a configuration problem in your WI or need to open some ports in your firewall. Are you using Secure Gateway?
  • | Post Points: 20
Top 500 Contributor
Points 399
Harry

Are users accessing the app via the Web Interface (WI)?

If you want external users to access the Citrix application on both servers, they both must have external IP address. On your WI server, you will need to create NAT translations point the external IP addresses to the corresponding internal IP address of the PS servers.
  • | Post Points: 20
Not Ranked
Points 130
Thanks for you reply, in ica file it is showing public IP and one more thing user of remote site are able to access server with private range so ports can be issue or not, what configuration I will have to make for WI.

Thanks & Regards,

HARRY
  • | Post Points: 5
Not Ranked
Points 130
I am not clear about having equal no. of public IP address for servers. As client will communicate with the WI and load balancing will done after that so please make it clear.

Thanks & Regards,

HARRY
  • | Post Points: 20
Top 500 Contributor
Points 399
OK say you have these two servers

SERVER1
Internal IP: 10.10.10.1
External IP: 20.20.20.1
App1, App2, App3 installed

SERVER2
Internal IP: 10.10.10.2
App1, App2, App3 installed

Lets say Server 1 is your Web Interface, in order for an external user to communicate to SERVER2 via your WI, SERVER 2 needs to also have an external IP address (lets say 20.20.20.2)

Then on your WI, in the Access Suite Console, at your WI site, under 'manage secure client access' then Edit DMZ settings, select NAT. Then under Edit address translation, you need to add 'client route translation', and enter in the internal and external IP address of both SERVER1 & SERVER2 and the ports.

Have you got Secure Gateway set up by any chance or just WI on it's own?

Hope this helps
  • | Post Points: 20
Not Ranked
Points 130
I do not have secure getway. what abuot external IP of second server will I have to NAT it at firewall and what ports required to be open. and what IP will be used by users to launch applications.Plese clear it.

Thanks & Regards

HARRY
  • | Post Points: 35
Top 75 Contributor
Points 1,762
user of remote site are able to access server with private range so ports can be issue or not


Is all traffic from Citrix server to client over VPN/WAN? If so then you would want the private IP address of the citrix server in the ICA file.

If Citrix server to client communications go through the Internet cloud, you really should setup a Secure Gateway server.
  • | Post Points: 5
Top 500 Contributor
Points 399
Hi Harry

There shoud be NAT entry on firewall for server2 with external IP to internal IP.

ports should be 1494 for ICA only, or 2598 if you have session reliabily enabled.

so it should look something like this in the client route translation:

SERVER1
Internal IP: 10.10.10.1
internal port: 1494 (or 2598)

External IP: 20.20.20.1
external port: 1494 (or 2598)

But I do agree, with Brian that a secure gateway will make your connect more..... secure :)
  • | Post Points: 5
Top 10 Contributor
Points 15,249
Hi,

Save yourself a lot of headaches and follow the steps outlined by Patrick Rouse in his two part article on installing and configuring CSG and WI on a single server in your DMZ:

http://www.msterminalservices.org/articles/Install-Configure-Citrix-Web-Interface-Secure-Gateway-Part1.html

http://www.msterminalservices.org/articles/Install-Configure-Citrix-Web-Interface-Secure-Gateway-Part2.html

CSG is a free product (included on the CPS components CD or downloadable from MyCitrix) that will provide better security for your WI server. You can also use a single public IP as CSG proxies connections to WI and the farm.

Cheers,

Alan Osborne
President (MCSE, CCNA, VCP, CCA)
VCIT Consulting - Citrix/Terminal Services Remote Desktop Solutions for SMB
p: 604-288-7325
c: 778-836-8025
web: http://www.vcit.ca
blog: http://www.vcit.ca/wordpress

  • | Post Points: 5
Page 1 of 1 (10 items) | RSS
Copyright © 1997-2008 The Brian Madden Company, LLC | Disclosures | Privacy | Terms of Use | Contact Info