Link to home
Start Free TrialLog in
Avatar of glenmos
glenmosFlag for Russian Federation

asked on

Restrict access to file shares in Citrix for remote users

Hi,

We have installed Netscaler Access Gateway 10.5 to provide remote access to our Citrix XenApp 6.5 infrastructure with Web Interface 5.4. Users authenticate via LDAP in AD 2008R2 and RSA second factor.

All works as needed but remote users have same access to all file shares same way as they would work in the office. This create potential  security risk as they do not need access to all files when working from home.

Is there a way to restrict access to certain file shares or folders when users logged in remotely via Netscaler? Are there any policies in Citrix or AD which would help us?
Avatar of Ess Kay
Ess Kay
Flag of United States of America image

Why not restrict it by external IP addresses. If the ip is external, give the separate permissions

http://support.citrix.com/article/CTX122538
ASKER CERTIFIED SOLUTION
Avatar of glenmos
glenmos
Flag of Russian Federation image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
at one customer we build a separate DMZ, place some xenApp servers there and disable fileserver access at the firewall.
Avatar of glenmos

ASKER

According to Citrix support the only way to have different access rights to folders for remote users, is to create separate AD accounts for remote access.