I have a Citrix Secure gateway/Web Interface 2.0 server that allows access to 5 different farms with users in 4 different domains. When the web interface needs to check your domain logon credentials how does it select the server that will query the domain? The Web Interface is in the DMZ so it has no way to do the work itself so I know that it must forward on the request to a Metaframe server.
Now to the real problem: I had a situation today after adding a new farm to the web interface be administered to, one of my domains users couldn't authinticate through the web interface, all other domains users could log on through the gateway fine. As soon as I removed the information for the new farm from the list of administered farms everything was normal again. The domain that houses the new farm I added doesn't have a trust relationship with the domains users that were getting the credentials are invalid error. Without knowing the process WI uses to check user credentials I feel a bit unsecure about my secure gateway...
Any help or just places to look would be greatly appreciated.
Now to the real problem: I had a situation today after adding a new farm to the web interface be administered to, one of my domains users couldn't authinticate through the web interface, all other domains users could log on through the gateway fine. As soon as I removed the information for the new farm from the list of administered farms everything was normal again. The domain that houses the new farm I added doesn't have a trust relationship with the domains users that were getting the credentials are invalid error. Without knowing the process WI uses to check user credentials I feel a bit unsecure about my secure gateway...
Any help or just places to look would be greatly appreciated.