I always do it like this
1. create different user groups (1 group for 1 published application) and put users in them
2. put previously created user groups in "Remote Desktop Users" on the Citrix server (picture "RDP permissions"
3. allow ICA access for "Remote Desktop Users" (attached picture "ICA permissions")
4. allow RDP access only to administrators (picture "RDP admin permissions")
Hope it helps you!





by: heidiannejPosted on 2009-08-16 at 12:54:22ID: 25110194
disabling logins disable all remote logins. better to create a user group that everyone except the admins belong to and then add that group to the remote users group. then you can just remove that group and readd it as needed for permitting logins.