Creating a Citrix NetScaler Test environment
Creating a Citrix NetScaler Test environment Being a Citrix Certified Instructor I am very much aware of the Red/Green/Blue website used during official Citrix NetScaler training (CNS-220, CNS-222). I...
View ArticleScheduling NetScaler commands for a specific time on Citrix NetScaler
Sometimes we have to schedule commands in a Citrix NetScaler. A good example would be: force HA failover It’s obvious, we don’t want to fail over during day time to not disconnect TCP connections, to...
View ArticleCustomizing a 404 message using Citrix NetScaler
Why would you like to customize a 404 page? Well It’s all about misleading information. A hacker has very limited chance to get friend with your web server. On the other way, he needs to find out as...
View ArticleDoing Citrix NetScaler trace (nstrace) inside an admin-partition
I was so enthusiastic, when I found out about NetScaler admin partitions! What a great extension to existing NetScalers! However I got disillusioned finding out about limitations. It took me some time...
View ArticleCitrix NetScaler as a SAML IDP and SAML SP
I needed to use a Citrix NetScaler both, as a SAML identity provider (IDP) and service provider (SP). So I set up my test environment accordingly. What my test environment looked like: You see, I...
View ArticleProtect a DNS server using a Citrix NetScaler
Recently I found out: DNS is a big bandwidth waster on my internet connection. Strange, isn’t it? DNS? So I started a network trace on my firewall: someone is abusing one of my DNS servers. I guess...
View ArticleSplitting up a NetScaler site using admin partitions
(a nice but partly failed try) Complex web applications may lead to complex NetScaler configuration. And sometimes an administrator may get lost troubleshooting complex websites, especially sites using...
View ArticleBinding many NetScaler Gateways to a content switching vServer on Citrix...
last update: November 14 /2017 Or: The power of the ANY service type This is a work around for a well-known problem in NetScaler: Binding NetScaler Gateways to content switching vServers. This solution...
View ArticleCitrix NetScaler SD-WAN?
I recently was asked to teach Citrix SD-WAN. My first thought was: wtf? I asked Google, and Google, knowing everything, spoke to me in infinite wisdom: Citrix SD-WAN’s previous name is Branch Repeater....
View ArticleCustomizing a 404 message using Citrix NetScaler
Why would you like to customize a 404 page? Well It’s all about misleading information. A hacker has very limited chance to get friend with your web server. On the other way, he needs to find out as...
View ArticleDoing Citrix NetScaler trace (nstrace) inside an admin-partition
I was so enthusiastic, when I found out about NetScaler admin partitions! What a great extension to existing NetScalers! However I got disillusioned finding out about limitations. It took me some time...
View ArticleConcerns about Citrix NetScaler Web Application Firewall (WAF)
Let’s talk about a WAF, a Web Application Firewall on a Citrix NetScaler. What’s to be concerned off? Is it worth while considering a NetScaler to be your WAF? I do work for several companies,...
View ArticleCitrix NetScaler is dead. Long live the Citrix ADC
All of us are always a bit shy looking at Citrix Synergy: What will it bring? Well, this time, Citrix comes up with brand new names for all products. It’s the first time Citrix is renaming the product....
View ArticleDetecting Slowloris with Citrix NetScaler (Citrix ADC)
If you read about slowloris, you always read about NetScaler doing a great job. Tests in our lab environment show: NetScaler will successfully block these attacks. Ad there is hardly anything we have...
View ArticleHow can Citrix NetScaler ADC protect cookies from being stolen?
How to protect your cookies using Citrix NetScaler I recently did a web application firewall (WAF) project for a big company owning and hosting hundreds of websites. They did several penetration tests....
View ArticleCitrix NetScaler ADC: Having fun with Nitro
Recently I had several requests related to NITRO. NITRO is Citrix NetScaler’s API. Any device may communicate to a NetScaler using NITRO. Even a browser! Citrix exposes several settings and counters...
View ArticleScoring an A+ on SSL Labs using a Citrix ADC / NetScaler version 12.1
This will be my shortest blog about the subject ever. Citrix finally did it! They created a “Built-in secure front-end SSL profile” called ns_default_ssl_profile_secure_frontend. What do you need to...
View Article