This message was deleted.
# citrix-vad
s
This message was deleted.
j
Exactly Steve, SPA OnPrem is using the adv cvpn architecture, so the requirements should be the same as I wrote here https://www.julianjakob.com/citrix-netscaler-advanced-clientless-vpn/#Certificate_DNS
s
ah nice, forgive my ignorance, what are the primary differences b/t the two? Looks like my wildcard for my primary domain wont work with *.Domain.com, i'd need a new one with my specific netscaler gateway FQDN along with the wildcard on the subdomain.
j
cvpn is creating a subdomain for each access of your gateway fqdn subdomain and cvpn.gateway.domain.com is not included in *.domain.com as this includes no ..domain.com
s
thanks, I was more talking about the differences b/t the advanced clientless VPN and on prem SPA. If advanced clientless access does the same thing, then i dont have to publish apps in studio, make storefront config changes, etc...
b
Hey @Steve Noel did you get anywhere with your SPA On-Prem testing? I'm prob going to dive into this next week
s
I did, got it to work, I never really messed around with the clientless access before, but it's very similar. Let me know if you have any problems.
b
nice, i already have acvpn setup on one my gateways. based on what you wrote i assume it's a small jump (aside from the storefront to CR latest upgrade prereq)
yeah, dont forget workspace app as well
curious to hear your thoughts on where you'd use SPA vs ACVPN and vice versa
j
I'm having trouble with the SPA/ACVPN stuff via iOS/Android not rewriting to the ACVPN URLs and trying to use the internal URLs. I know the issue is rooted in my Session Profiles...but can't seem to nail it down.
b
Update: I was told that on-prem SPA is not supported for iOS/Android CWA yet.
ah gotcha