Citrix ADC
With a Citrix ADC connector, you can use DigiCert® Trust Lifecycle Manager to discover and manage certificates on a Citrix Application Delivery Controller (ADC) network appliance.
The connector uses an on-premises DigiCert sensor within your network to help securely manage the Citrix appliance.
When you add the connector, Trust Lifecycle Manager discovers existing certificates on the Citrix appliance and adds them to your centralized inventory. From there, you can manage and automate certificate lifecycles on the appliance to ensure it always has valid certificates installed.
Supported Citrix appliances
Trust Lifecycle Manager supports integration with Citrix ADC appliance versions 11.1 and later. DigiCert has officially tested the following Citrix ADC appliance versions.
Before you begin
Citrix requirements
To configure the Citrix connector in Trust Lifecycle Manager, you will need:
The management IP address and port number information for the Citrix appliance, plus the SSH port number on it.
User credentials (username and password) for an account with full administrator access on the Citrix appliance and the ability to log into it over the Web and SSH. You can use the same credentials for both HTTP/HTTPS and SSH access, or use different credentials for each access method.
DigiCert requirements
The Citrix connector requires at least one DigiCert® sensor on your network that can connect to both the Citrix appliance and Trust Lifecycle Manager. To learn more, see Deploy and manage sensors.
To configure the Citrix connector and manage the integration, you need the Manager user role for Trust Lifecycle Manager.
Add the Citrix connector
To add the Citrix ADC connector in Trust Lifecycle Manager:
From the Trust Lifecycle Manager main menu, select Integrations > Connectors.
Select the Add connector button.
Under Appliances, select the option for Citrix ADC.
Fill out the Add connector form:
Name: Enter a friendly name for the connector to help identify it.
Business unit: Select a business unit for this connector for administrative purposes. Only users assigned to this business unit can manage the connector.
Managing sensor: Select an active DigiCert sensor on your network to use to establish the connection and help manage the appliance.
Management IP: Enter the management IP address for the appliance.
Management port: Enter the management port number for the appliance.
Web protocol: Select whether to use HTTP or HTTPS for web access to the appliance.
Web username: Enter the username for a user account with full administrator access on the appliance and the ability to log into it via the Web protocol you selected above.
Password: Enter the corresponding password for the above user account on the appliance.
SSH username: Enter the username for a user account with full administrator access on the appliance and the ability to log into it via SSH. This can be the same user account as the one used for Web access or a different user account.
SSH password: Enter the corresponding password for the above user account with SSH access to the appliance.
SSH port: Enter the port number for the SSH server on the appliance.
Select Add to create the appliance connector with the configured settings.
What's next
Discovery
Trust Lifecycle Manager discovers existing certificates and unsecured endpoints on the connected appliance and adds them to your centralized Inventory.
On the Integrations > Connectors page, select the connector by name to view the connector details and see the number of assets Trust Lifecycle Manager found on it. You can use the links in the Assets found section to view those assets in your inventory.
Belangrijk
On network appliance virtual IPs, certificates must be stored in X.509 format for Trust Lifecycle Manager to discover and automate them. Password-protected PFX certificates are not supported.
Automation
To automate management of certificates on a connected network appliance, set up certificate lifecycle automation.
Select the
DigiCert sensor
enrollment method in any certificate automation profiles you create for managing certificates on network appliances.