Basic Administration for Citrix XenApp 6 Classroom Setup Guide Citrix Course CXA-204-1I www.citrix.com Introduction The following is a Classroom Setup Guide for the Basic Administration for Citrix XenApp 6. This document contains step-by-step information on how to set up a classroom in order to hold XenApp 6 training. This environment was designed to be run using individual private networks for each student with no internet connection. Every student environment should be completely identical and self-contained. This environment was designed to be run on Citrix XenServer but other hypervisors, while not supported, may be used. Please note that at this time the Access Gateway VPX and Merchandising Server virtual machine are only available for XenServer and VMWare ESX. Requirements 64-bit capable processor with virtualization capabilities 250 GB of storage Minimum 8GB of memory 64-bit aware hypervisor For additional requirements and options, please see the document called “CALC Lab Options & Requirements Guide”. Environment The environment contains 9 different virtual machines. Not all virtual machines will be running at the same time. Before You Begin Before you begin to set up the environment, ensure that you have the following software and files. These items are required for the successful completion of the setup for this course. XenApp Platinum license file that is allocated to the hostname “dc” (case sensitive) Page 2 Access Gateway license file that is allocated to the hostname “dc” (case sensitive) Windows Server 2008 R2 installation media or sysprepped template. Windows 7 installation media or sysprepped template. CXA-204 Setup files, [Downloadable from MyCitrix (Login required): http://www.citrix.com/English/mycitrix/resources.asp?contentID=2301227] Merchandising Server 1.2 [Downloadable from MyCitrix (Login required): https://www.citrix.com/English/ss/downloads/results.asp?productID=1689163] Access Gateway VPX [Downloadable from MyCitrix (Login required): http://www.citrix.com/English/ss/downloads/details.asp?downloadId=1862108&productI d=15005] Adobe Reader (Downloadable from http://get.adobe.com/reader/ ) CapitalReSources (Downloadable from http://sourceforge.net/projects/capitalresource/ ) Mozilla Firefox (Downloadable from http://www.mozilla.com/en-US/firefox/firefox.html ) HP Color LaserJet 4600 PCL 6 printer driver (Downloadable from http://download.cnet.com/HP-Color-LaserJet-4600-PCL-6/3000-2116_4-138431.html) Virtual Machine Setup Coolidge-DC Specifications: Memory: 1GB Operating System: Windows Server 2008 R2 IP Address: 192.168.1.30 Hostname: dc Network: Local, no internet connection Setup: 1. Getting Started i. Turn off IE ESC in the Server Manager. a) Log in as the Local Administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Configure IE ESC under Security Information. d) Select Off under the Administrators and the Users headings. e) Click OK. ii. Install any hypervisor specific drivers (XenServer in this example). a) Attach xs-tools.iso to the virtual machine. Page 3 2. 3. b) Click Run xensetup.exe in the AutoPlay window. c) Accept the terms of the license agreement and click Next. d) Click Install. e) Click Finish to reboot the virtual machine. iii. Make screen resolution at least 1024x768. a) Log in as the local administrator. b) Right-click on the desktop and click Screen Resolution. c) Select 1024x768 in the Resolution drop-down menu and click OK. d) Click Keep changes. Set up the Network i. Set the virtual machine name to “dc”. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Type DC in the Computer name field and click OK. e) Click OK on the pop up warning and click Close. f) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor a) Log in as the local administrator b) Right-click the network icon in the notification area and click Open Network and Sharing Center. c) Click Local Area Connection and click Properties. d) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. e) Select Use the following IP address. f) Enter the following information into the fields: IP Address: 192.168.1.30 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] g) Click OK, and close all open windows. Configure Active Directory i. Install Active Directory Domain Services a) Click Start > Administrative Tools > Server Manager. b) Click Roles and click Add Roles. c) Click Next and select Active Directory Domain Services. d) Click Add Required Features in the Add Roles Wizard popup window and click Next. e) Click Next and click Install. f) When the installation is completed click Close. ii. Create a domain called Coolidge.net a) Click Start and type dcpromo. b) Click dcpromo in the program results and click Next. c) Click Next, select Create a new domain in a new forest, and click Next. d) Type Coolidge.net in the FQDN of the forest root domain field and click Next. e) Click Next and click Next again. f) Click Next and click Yes in the popup warning. g) Click Next in the location for Database, Log Files, and SYSVOL screen. h) Type Password1 in the Password and Confirm password fields and click Next. i) Click Next and click Next on the Summary screen. j) Select Reboot on completion and wait for the configuration to complete and restart the virtual machine. Page 4 iii. 4. Create the user accounts: a) Log in as the domain administrator, Coolidge\Administrator. b) Click Start > Administrative Tools > Active Directory Users and Computers. c) Double-click Coolidge.net and double-click Users. d) Right-click Users and click New > User. e) Enter the following information in each field to create a new user: First name: Citrix Initials: [blank] Last name: Admin User logon name: CitrixAdmin f) Click Next. Type Password1 in the Password and Confirm password fields. g) Unselect User must change password at next logon and select Password never expires. h) Click Next and click Finish. i) Perform steps a-h above to create each of the following users: CitrixEngineer TestUser TestAdvisor iv. Create the security groups: a) Right-click Users and click New > Group. b) Type FinancialSpecialists in the Group name field. c) Click Domain local in the Group scope section and click OK. d) Perform steps a-c to create each of the following groups: San Francisco Employees New York Employees TestAccounts Advisors HelpDesk v. Add the users to the groups: a) Double click the TestAccounts group and click Members b) Click Add and type CitrixAdmin; CitrixEngineer; TestUser; TestAdvisor. c) Click Check Names and click OK if there were no errors. d) Click OK. e) Perform steps a-d to add the following users to the groups: Domain Admins o CitrixAdmin o CitrixEngineer Advisors o TestAdvisor San Francisco Employees o CitrixAdmin o TestUser vi. Delegate active directory administration rights to the CitrixAdmin account a) Click Users and click Action > Delegate Control. b) Click Next and click Add. c) Type CitrixAdmin, click Check Names and click OK. d) Click Next and select all of the common tasks. e) Click Next and click Finish. f) Close all open windows. Configure SQL Express 2008. Page 5 i. ii. iii. iv. Install SQL Express 2008 a) Attach the XA6_2008R2_ML.iso media to the virtual machine and click Open folder to view files in the AutoPlay popup. b) Click to the \Support\SQLExpress_2008 folder and double-click Setup. c) Click Installation and click New SQL Server stand-alone installation or add features to an existing installation. d) Click OK in the support file screen and click Next in the Product Key screen. e) Accept the license terms, click Next, and click Install. f) Click Next on the Setup Support Rules screen, select Database Engine Services and click Next. g) Type SQLSERVER in the Named instance field and click Next. Click Next on the Disk space Requirements screen. h) Click Use the same account for all SQL Server services. i) Type Coolidge\Administrator in the Account Name field and type Password1 in the Password field. Click OK. j) Click Next. Click Add Current User and click Next. k) Click Next on the Error and Usage reporting screen and click Next on the Installation rules screen. Click Install. l) Click Next and click Close. m) Restart the virtual machine. Install SQL Express 2008 Management Studio. a) Download “SQLManagementStudio_x64_ENU.exe” from http://www.microsoft.com/downloads/details.aspx?FamilyID=08e52ac2-1d62-45f6-9a4a4b76a8564a2b&displaylang=en b) Run the SQLManagementStudio_x64_ENU.exe installer on the virtual machine. c) Click Installation and click New SQL Server stand-alone installation or add features to an existing installation. d) Click OK in the support file screen and click Next in the Product Key screen. e) Accept the license terms, and click Next. f) Select Management Tools – Basic and click Next. g) Click Next on the Disk Space Requirements Screen and click Next on the Error and usage Reporting screen. h) Click Next on the Installation Rules screen and click Install. i) Click Next and click Close. j) Close all open windows. Create the required databases. a) Click Start > All Programs > Microsoft SQL Server 2008 > SQL Server Management Studio b) Click Connect to login as the Coolidge\Administrator user. c) Right-click Databases and click New Database. d) Type XenApp and click OK. e) Perform steps c-d again to create another database called XA_ConfigurationLog. f) Close all open windows. Specify for the SQL Server Browser service to Log on as Local System and start it up. a) Click Start > Administrative Tools > Server Manager. b) Expand the Configuration node and click Services. c) Right-click the SQL Server Browser service and click Properties. d) Select Automatic from the Startup type field and click Log on. e) Select Local System account and click Apply. f) Click General and click Start. g) Close all open windows. Page 6 v. 5. Ensure that you allow TCP/IP access to the SQL Server a) Click Start > All Programs > Microsoft SQL Server 2008 > Configuration Tools > SQL Server Configuration Manager. b) Double-click SQL Server Network Configuration (32bit) and click Protocols for SQLSERVER. c) Double-click TCP/IP and select Yes in the Enabled field. d) Click OK in the popup box and click OK. e) Click SQL Server Services, right-click SQL Server (SQLSERVER) and click Restart. f) Close all open windows. Install and configure the EdgeSight Server role. i. Install the EdgeSight Server role from XenApp 6 media a) Attach the XA6_2008R2_ML.ISO to the virtual machine. b) Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. c) Click Install XenApp Server and click Add server roles. d) Click Platinum Edition, agree to the License agreement and click Next. e) Select EdgeSight Server and click Next. f) Click Next in the choose role subcomponents screen and click Next on the Review prerequisites screen. Click Install. g) Click Finish. In the Citrix XenApp Server Role Manager screen click Install. h) Click Continue and click Next. i) Click Next and click Next on the Prerequisite check screen. j) Accept the license agreement and click Next. Click Next for a typical setup. k) Select Choose an existing database server, select DC\SQLSERVER and click Next. Click Next to create a new database called EdgeSight. l) Type Coolidge\Administrator in the User Name field and Password1 in the Password field and click Validate. m) Click OK and click Next. Click Install. n) Click Finish to be taken to the EdgeSight Server website. ii. Configure the EdgeSight Post-Installation Setup Wizard. a) Enter the Coolidge\Administrator’s credentials and click OK. b) Click Next to begin the setup wizard. c) Enter the following information to create the initial company and click Next: Name: Coolidge Financial, Inc Time Zone: Eastern Time Language: English d) Enter the following information to create Superuser account and click Next: First Name: Citrix Last Name: Admin Email/Login: CitrixAdmin@coolidge.net Password: Password1 Confirm: Password1 e) Enter the following information to configure the email settings and click Next: SMTP Server: smtp.localhost Email address: no-reply@coolidge.net Display Name: EdgeSight Server Email Address: no-reply@coolidge.net f) Enter the following information to configure the agent support and licensing and click Next: EdgeSight for XenApp Support: Off Page 7 6. 7. 8. EdgeSight for XenDesktop Support: Off EdgeSight for Endpoints Support: Off g) Click Finish. Create a file share, share it, and place required files. i. Create a folder called “Filer” at the root of the C drive and share it to all users. a) Click Start > Computer and double-click Local Disk (C:) b) Click New Folder and type Filer. c) Double-click Filer. d) Click New Folder and type Administration. e) Perform step d again to create the following folders: Profiles Software ii. Populate the Administration folder a) Double-click the Administration folder b) Click New Folder and type Certs. Note: All of your certificates should be placed in this location. c) Copy the CoolidgeArt folder provided by Citrix on the MyCitrix site to this location. d) Click New Folder and type Licenses. e) Double-click Licenses. f) Copy your XenApp Platinum license file to this location g) Rename the XenApp Platinum license file to xenapp_enterprise_coolidge_financial_dc.lic. h) Copy your Access Gateway license file to this location. i) Rename the XenApp Platinum license file to cag_license_coolidge_ag.lic. iii. Populate the Software folder a) Navigate to the C:\Filer\Software folder. b) Copy the Adobe Reader installer to this location. c) Rename the installer to AdbeRdr930_en_US.exe. d) Copy the CapitalReSources application to this location. e) Rename the installer to CapitalReSources0.90.16.exe. f) Copy the Mozilla Firefox installer to this location. g) Rename the installer to Firefox Setup 3.6.3.exe h) Close all open windows. iv. Make the Filer folder sharable to all domain users. a) Navigate to the C:\ folder. b) Right-click Filer and click Share with > Specific people. c) Type Coolidge\Domain users and click Add. d) Select Read/Write in the Permission level drop-down menu for the Domain Users entry. e) Click Share and click Done. f) Close all open windows. Create DNS Records for the Linux based VMs i. Create the DNS records for the AccessGateway and MerchandisingServer virtual machines. a) Click Start > Administrative Tools > DNS. b) Expand the DNS > Forward Lookup Zones nodes and click Coolidge.net. c) Click Action > New Host (A or AAAA). d) Type ag in the Name field and 192.168.1.65 in the IP address field. e) Click Add Host and click OK. f) Perform steps d-e in order to add a DNS entry for the hostname merchandisingserver with the IP address 192.168.1.39. g) Click Done and close all open windows. Create the required network printers. i. Create the HP Color LaserJet 2800 Series PS printer and share it to the network. Page 8 a) b) c) d) Click Start > Devices and Printers and click Add a printer. Click Add a local printer and click Next to use an existing port. Wait a moment for the printer drivers to load. Select HP in the manufacturer list and then HP Color LaserJet 2800 Series PS in the printers list. Click Next. e) Click Next to accept the default printer name and click Next to share the printer on the network. f) Click Finish. ii. Create the Lexmark x945e PS (MS) printer and share it to the network. a) Click Start > Devices and Printers and click Add a printer. b) Click Add a local printer and click Next to use an existing port. c) Wait a moment for the printer drivers to load. d) Select Lexmark in the manufacturer list and then Lexmark x945e PS (MS) e) in the printers list. Click Next. f) Click Next to accept the default printer name and click Next to share the printer on the network. g) Click Finish. h) Close all open windows. 9. Install Adobe Flash for Internet Explorer i. Due to the various ways this can be performed, the steps are not listed. Be sure to note that it must specifically be the Internet Explorer version of Adobe Flash Player. 10. Create the appropriate domain wide group policies. i. Create a new GPO called “XenApp Domain Policy” and make it number 1 in the link order. a) Click Start > Administrative Tools > Group Policy Management. b) Expand the Forest: Coolidge.net > Domains > Coolidge.net nodes. c) Right-click Coolidge.net and click Create a GPO in this domain, and Link it here. d) Type XenApp Domain Policy and click OK. e) Click the Move link down arrow to move the Default Domain Policy to Link Order 2. ii. Configure the following policies in the Default Domain Policy GPO: a) Right-click Default Domain Policy and click Edit. b) Use the following information to set each of the following policies: Location Computer Configuration\Policies\ Administrative Templates\System\Server Manager Same as above Computer Configuration\Policies\ Administrative Templates\Windows Components\Windows Update\ Computer Policy Do not display Server Manager automatically at logon Do not display Initial Configuration Task window automatically at logon Configure Automatic Updates Prevent Setting Enabled Result Turns off Server Manager from auto starting. Enabled Turns off Initial Configuration screen from auto starting. Disabled Turns off windows update. Turns off IE Enabled, Go directly Page 9 Configuration\Policies\Administrativ e templates\Windows Components\Internet Explorer\ Computer Configuration\Policies\ Administrative Templates\System\ Computer Configuration\Policies\ Administrative Templates\Network\Network Connections\Windows Firewall\Domain Profile Computer Configuration\Policies\ Administrative Templates\Network\Network Connections\Windows Firewall\Standard Profile Computer Configuration\Policies\Windows Settings\Security Settings\Local Policies\Security Options\ Same as above Same as above performance of First Run Customize settings Display Shutdown Event Tracker to home page. First Run Disabled Windows Firewall: Protect all network connections Windows Firewall: Protect all network connections User Account Control Behavior of the elevation prompt for standard users User Account Control Behavior of the elevation prompt for administrator s in Admin Approval Mode User Account Control: Detect application installations and prompt for elevation Disabled Turns off prompts before shutdown for logging Turns off Windows Firewall for Domain Profile Turns off Windows Firewall for Standard profile Turns off User Account Control for standard users Disabled Automatically deny elevation requests Elevate without prompting Turns off User Account Control for Administrator s Disabled Turns off asking for elevation when it detects an application install. Page 10 Same as above User Configuration\ Policies\Windows Settings\Internet Explorer Maintenance\URLS User Configuration\Administrative Templates\Windows Components\Internet Explorer User Configuration\Policies\ Windows Settings\Internet Explorer Maintenance\ Security\ c) User Account Control: Run all administrator s in Admin Approval Mode Important URLs -> Home page URL Disable auto complete for forms Security Zones and Content Ratings Disabled Turns off Admin Approval mode. About:blank Sets IE’s homepage to about:blank Enabled Turns off IE autocomplete. http://*.coolidge.net; https://*.coolidge.ne t Adds any Coolidge.net site to the trusted zone. Close all open windows. XenAppServer-1 Specifications: Memory: 1GB Operating System: Windows Server 2008 R2 IP Address: 192.168.1.32 Hostname: XENAPPSERVER-1 Setup: 1. Getting Started i. Turn off IE ESC in the Server Manager. a) Log in as the Local Administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Configure IE ESC under Security Information. d) Select Off under the Administrators and the Users headings. e) Click OK. ii. Install any hypervisor specific drivers (XenServer in this example). a) Attach xs-tools.iso to the virtual machine. b) Click Run xensetup.exe in the AutoPlay window. c) Accept the terms of the license agreement and click Next. d) Click Install. e) Click Finish to reboot the virtual machine. iii. Make screen resolution at least 1024x768. a) Log in as the local administrator. b) Right-click on the desktop and click Screen Resolution. Page 11 2. 2. c) Select 1024x768 in the Resolution drop-down menu and click OK. d) Click Keep changes. Join the virtual machine to the network and domain. i. Set the virtual machine name to “XENAPPSERVER-1”. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Type XENAPPSERVER-1 in the Computer name field and click OK. e) Click OK on the pop up warning and click Close. f) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor a) Log in as the local administrator b) Right-click the network icon in the notification area and click Open Network and Sharing Center. c) Click Local Area Connection and click Properties. d) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. e) Select Use the following IP address. f) Enter the following information into the fields: IP Address: 192.168.1.32 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] g) Click OK, and close all open windows. iii. Add this VM to the Coolidge.net domain. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Select Domain, type Coolidge.net and click OK. e) Enter the Coolidge\Administrators credentials and click OK. f) Click OK on the welcome message and click OK. g) Click Close and Restart Now to restart the virtual machine. Configure the virtual machine with preinstalled software and roles. i. Install .NET 3.5 a) Login as the Coolidge\CitrixAdmin account. b) Attach the XA6_2008R2_ML.ISO media to the virtual machine. c) Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. d) Click Install XenApp Server and click OK. e) Click Exit to close the XenApp installer. i. Install the Remote Desktop Services role NOTE: This step should be skipped, at this point, if planning to use these VMs for longer than 180 days without the use of RDS-CALs. See the “Optimizing for Reuse” section. i. Start the XenAppServer-1 virtual machine and login as the Coolidge\CitrixAdmin user. ii. Click Start > Administrative Tools > Server Manager. iii. Click Roles and click Add Roles. iv. Click Next, select Remote Desktop Services, and click Next. v. Click Next, select Remote Desktop Session Host, and click Next. vi. Click Next, select Do not require Network Level Authentication, and click Next. vii. Select Per User and click Next. viii. Click Next, click Next, and click Install. Page 12 ix. Click Close and click Yes to restart. x. Log back in as the Coolidge\CitrixAdmin user and allow for it to resume installation. xi. Click Close when completed. ii. Install the CapitalReSources application from the \\DC\Filer\Software folder a) Click Start, type \\dc\filer\Software and Enter. b) Double-click CapitalReSources0.90.16. c) Click Next to begin installation and click Next to select the default installation folder. d) Click Next to confirm installation. e) Click Close. XenAppServer-2 Specifications: Memory: 1GB Operating System: Windows Server 2008 R2 IP Address: 192.168.1.33 Hostname: XENAPPSERVER-2 Setup: 1. 2. Getting Started i. Turn off IE ESC in the Server Manager. a) Log in as the Local Administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Configure IE ESC under Security Information. d) Select Off under the Administrators and the Users headings. e) Click OK. ii. Install any hypervisor specific drivers (XenServer in this example). a) Attach xs-tools.iso to the virtual machine. b) Click Run xensetup.exe in the AutoPlay window. c) Accept the terms of the license agreement and click Next. d) Click Install. e) Click Finish to reboot the virtual machine. iii. Make screen resolution at least 1024x768. a) Log in as the local administrator. b) Right-click on the desktop and click Screen Resolution. c) Select 1024x768 in the Resolution drop-down menu and click OK. d) Click Keep changes. Join the system to the network i. Set the virtual machine name to “XENAPPSERVER-2”. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Type XENAPPSERVER-2 in the Computer name field and click OK. e) Click OK on the pop up warning and click Close. f) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor a) Log in as the local administrator Page 13 b) 3. 4. 5. Right-click the network icon in the notification area and click Open Network and Sharing Center. c) Click Local Area Connection and click Properties. d) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. e) Select Use the following IP address. f) Enter the following information into the fields: IP Address: 192.168.1.33 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] g) Click OK, and close all open windows. iii. Add this VM to the Coolidge.net domain. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Select Domain, type Coolidge.net and click OK. e) Enter the Coolidge\Administrators credentials and click OK. f) Click OK on the welcome message and click OK. g) Click Close and Restart Now to restart the virtual machine. Configure the virtual machine with preinstalled software and roles. i. Install .NET 3.5 a) Login as the Coolidge\CitrixAdmin account. b) Attach the XA6_2008R2_ML.ISO media to the virtual machine. c) Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. d) Click Install XenApp Server and click OK. e) Click Exit to close the XenApp installer. Install the XenApp role (Platinum Edtion) NOTE: This step should be skipped, at this point, if planning to use these VMs for longer than 180 days without the use of RDS-CALs. See the “Optimizing for Reuse” section. b. Start the XenAppServer-2 virtual machine and login as the Coolidge\CitrixAdmin user. c. Attach the XA6_2008R2_ML.ISO to the virtual machine. d. Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. e. Click Install XenApp Server and click Add server roles. f. Click Platinum Edition, agree to the License agreement and click Next. g. Select XenApp and click Next. h. Click Next, click Next, and click Install. i. Click Finish and restart the virtual machine. j. Log back in as the Coolidge\CitrixAdmin user. k. In the Citrix XenApp Serve Role Manager click Resume Install. l. Click Install and allow the installer to complete. m. Click Finish to complete the installer. Install the CapitalReSources application from the \\DC\Filer\Software folder a) Click Start, type \\dc\filer\Software and Enter. b) Double-click CapitalReSources0.90.16. c) Click Next to begin installation and click Next to select the default installation folder. Page 14 d) e) Click Next to confirm installation. Click Close. Profiler-Win7 Specifications: Memory: 1GB Operating System: Windows 7 IP Address: 192.168.1.34 Hostname: Profiler-Win7 Setup: 1. 2. 3. Getting Started i. Start the XenAppServer-1 virtual machine and login as the Coolidge\CitrixAdmin user. d) Click Start > Administrative Tools > Server Manager. e) Click Roles and click Add Roles. f) Click Next, select Remote Desktop Services, and click Next. g) Click Next, select Remote Desktop Session Host, and click Next. h) Click Next, select Do not require Network Level Authentication, and click Next. i) Select Per User and click Next. j) Click Next, click Next, and click Install. ii. Click Close and click Yes to restart. k) Log back in as the Coolidge\CitrixAdmin user and allow for it to resume installation. l) Click Close when completed. Configuring VM settings i. Create a user called CitrixAdmin with a password of Password1. a) Click Start > Control Panel and click Add or remove user accounts. b) Click Create a new account and type CitrixAdmin. c) Select Administrator and click Create account. d) Click CitrixAdmin and click Create a password. e) Type Password1 in the new password and confirm new password fields. f) Type Password1 in the Type a password hint field and click Create password. ii. Turn off User Access Control a) Click Manage another account and click Go to the main User Accounts page. b) Click Change User Access Control settings. c) Select Never notify by setting the slider to the lowest setting. d) Click OK and click Yes. e) Close all open windows. Join the system to the network i. Set the virtual machine name to “Profiler-Win7”. a) Click Start, right-click Computer and click Properties. b) Click Change settings and click Change. c) Type Profiler-Win7 in the Computer name field and click OK. d) Click OK on the pop up warning and click Close. e) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor NOTE: This virtual machine will NOT be joined to the domain. a) Log in as the CitrixAdmin user. Page 15 b) c) d) e) f) g) Right-click the network icon in the notification area and click Open Network and Sharing Center. Click Local Area Connection and click Properties. Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. Select Use the following IP address. Enter the following information into the fields: IP Address: 192.168.1.34 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] Click OK, and close all open windows. Profiler-2008R2 Specifications: Memory: 1GB Operating System: Windows Server 2008 R2 IP Address: 192.168.1.35 Hostname: Profiler-2008R2 Setup: 1. 2. Getting Started i. Turn off IE ESC in the Server Manager. a) Log in as the Local Administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Configure IE ESC under Security Information. d) Select Off under the Administrators and the Users headings. e) Click OK. ii. Install any hypervisor specific drivers (XenServer in this example). a) Attach xs-tools.iso to the virtual machine. b) Click Run xensetup.exe in the AutoPlay window. c) Accept the terms of the license agreement and click Next. d) Click Install. e) Click Finish to reboot the virtual machine. iii. Make screen resolution at least 1024x768. a) Log in as the local administrator. b) Right-click on the desktop and click Screen Resolution. c) Select 1024x768 in the Resolution drop-down menu and click OK. d) Click Keep changes. iv. Stop Server Manager from automatically launching at logon. a) Click Start > Administrative Tools > Server Manager. b) Select Do not show me this console at logon under the Computer information section. c) Close all open windows. Configuring VM settings i. Change the local Administrator password to “Password1”. a) Click Start > Control Panel and click User Accounts. b) Click Change your Windows password and click Change your password. c) Enter the current password for the local administrator account. Page 16 3. d) Type Password1 in the new password and confirm new password fields. e) Type Password1 in the Type a password hint field and click Change password. ii. Turn off User Access Control a) Click Change User Access Control settings. b) Select Never notify by setting the slider to the lowest setting and click OK. c) Close all open windows. iii. Install Streaming Profiler using the default settings. a) Attach the XA6_2008R2_ML.ISO media to the virtual machine. b) Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. c) Click Manually install components and click Common Components. d) Click Plugins, Streaming Profiler, and Documentation and click Streaming Profiler. e) Click OK for English and click Next. f) Accept the license agreement and click Next. g) Click Next and click Install. h) Click Finish and click Yes to restart the virtual machine.. Join the system to the network i. Set the virtual machine name to “Profiler-2008R2”. a) Log in as the local administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Change System Properties under Server Summary. d) Click Change. e) Type Profiler-2008R2 in the Computer name field and click OK. f) Click OK on the pop up warning and click Close. g) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor NOTE: This virtual machine will NOT be joined to the domain. h) Log in as the local administrator i) Right-click the network icon in the notification area and click Open Network and Sharing Center. j) Click Local Area Connection and click Properties. k) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. l) Select Use the following IP address. m) Enter the following information into the fields: IP Address: 192.168.1.35 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] n) Click OK, and close all open windows. EndUserSimulator Specifications: Memory: 1GB Operating System: Windows 7 IP Address: 192.168.1.36 Hostname: ENDUSER Page 17 Setup: 1. 2. 3. Getting Started i. Start the XenAppServer-1 virtual machine and login as the Coolidge\CitrixAdmin user. a) Click Start > Administrative Tools > Server Manager. b) Click Roles and click Add Roles. c) Click Next, select Remote Desktop Services, and click Next. d) Click Next, select Remote Desktop Session Host, and click Next. e) Click Next, select Do not require Network Level Authentication, and click Next. f) Select Per User and click Next. g) Click Next, click Next, and click Install. ii. Click Close and click Yes to restart. a) Log back in as the Coolidge\CitrixAdmin user and allow for it to resume installation. b) Click Close when completed. Join the system to the network i. Set the virtual machine name to “ENDUSER”. a) Click Start, right-click Computer and click Properties. b) Click Change settings and click Change. c) Type ENDUSER in the Computer name field and click OK. d) Click OK on the pop up warning and click Close. e) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor a) Log in as the CitrixAdmin user. b) Right-click the network icon in the notification area and click Open Network and Sharing Center. c) Click Local Area Connection and click Properties. d) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. e) Select Use the following IP address. f) Enter the following information into the fields: IP Address: 192.168.1.36 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] g) Click OK, and close all open windows. iv. Add this VM to the Coolidge.net domain. a) Click Start, right-click Computer and click Properties. b) Click Change settings and click Change c) Select Domain, type Coolidge.net and click OK. d) Enter the Coolidge\Administrators credentials and click OK. e) Click OK on the welcome message and click OK. f) Click Close and Restart Now to restart the virtual machine. Create the required network printers. i. Create the HP Color LaserJet 9500 Series PCL 6 printer and share it to the network. a) Log in as the Coolidge\CitrixAdmin user. b) Click Start > Devices and Printers and click Add a printer. c) Click Add a local printer and click Next to use an existing port. d) Wait a moment for the printer drivers to load. f) Select HP in the manufacturer list and then HP Color LaserJet 9500 PCL 6 in the printers list. Click Next. e) Click Next to accept the default printer name click Finish. Page 18 ii. ii. Create the HP Color LaserJet CP2020 Series PCL 6 printer and share it to the network. f) Click Add a local printer and click Next to use an existing port. g) Wait a moment for the printer drivers to load. g) Select HP in the manufacturer list and then HP Color LaserJet CP2020 Series PCL 6 in the printers list. Click Next. h) Click Next to accept the default printer name and click Finish. i) Close all open windows. Extract the HP Color LaserJet 4600 PCL 6 driver and create the printer. a) Double-click clj4600pcl6win2kxp2004-ru.exe and click Run. b) Click Unzip, click OK and click Close. c) Click Start > Devices and Printers and click Add a printer. d) Click Add a local printer and click Next to use an existing port. e) Click Have Disk, browse to C:\clj4600pcl6win2kxp2004\hp4600p6 and click Open. f) Click OK and click Next. g) Click Next and click Finish. AccessGateway Specifications: Memory: 512MB Operating System: Access Gateway VPX (Linux) IP Address: 192.168.1.65 Hostname: (Already Set on Coolidge-DC VM) Setup: 1. Set up the Access Gateway via command line i. Configure networking a) Start the virtual machine. b) Login to the command prompt with the username “root” and password “rootadmin” c) Type 0 and hit Enter. d) Type 192.168.1.65 and hit Enter. e) Hit Enter to accept the default Netmask. f) Type 192.168.1.30 and hit Enter. g) Type y and hit Enter. ii. Enable External Administration Port a) Type 3 and hit Enter. b) Type y and hit Enter. c) Allow the virtual machine to restart. iii. Change Administrative Password to “Password1” a) Login to the command prompt with the username “root” and password “rootadmin” b) Type 6 and hit Enter. c) Type rootadmin and hit Enter. d) Type Password1 and hit Enter. e) Type Password1 and hit Enter to verify the password. Page 19 WebInterfaceServer Specifications: Memory: 1GB Operating System: Windows Server 2008 R2 IP Address: 192.168.1.37 Hostname: WebInterface Setup: 1. 3. Getting Started i. Turn off IE ESC in the Server Manager. a) Log in as the Local Administrator. b) Click Start > Administrative Tools > Server Manager. c) Click Configure IE ESC under Security Information. d) Select Off under the Administrators and the Users headings. e) Click OK. ii. Install any hypervisor specific drivers (XenServer in this example). a) Attach xs-tools.iso to the virtual machine. b) Click Run xensetup.exe in the AutoPlay window. c) Accept the terms of the license agreement and click Next. d) Click Install. e) Click Finish to reboot the virtual machine. iii. Make screen resolution at least 1024x768. a) Log in as the local administrator. b) Right-click on the desktop and click Screen Resolution. c) Select 1024x768 in the Resolution drop-down menu and click OK. d) Click Keep changes. Join the virtual machine to the network and domain. i. Set the virtual machine name to “WebInterface”. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Type WebInterface in the Computer name field and click OK. e) Click OK on the pop up warning and click Close. f) Click Restart Now to restart the virtual machine. ii. Configure the network adaptor a) Log in as the local administrator b) Right-click the network icon in the notification area and click Open Network and Sharing Center. c) Click Local Area Connection and click Properties. d) Click Internet Protocol Version 4 (TCP/IPv4) and click Properties. e) Select Use the following IP address. f) Enter the following information into the fields: IP Address: 192.168.1.37 Subnet mask: 255.255.255.0 Default gateway: [blank] Preferred DNS server: 192.168.1.30 Alternate DNS server: [blank] g) Click OK, and close all open windows. Page 20 iii. 2. 3. Add this VM to the Coolidge.net domain. a) Click Start > Administrative Tools > Server Manager. b) Click Change System Properties under Server Summary. c) Click Change. d) Select Domain, type Coolidge.net and click OK. e) Enter the Coolidge\Administrators credentials and click OK. f) Click OK on the welcome message and click OK. g) Click Close and Restart Now to restart the virtual machine. Install the Access Gateway Administration Tool to the Start Menu a) Login as the Coolidge/CitrixAdmin user. b) Click Start > Internet Explorer and Navigate to https://ag.coolidge.net:9001. c) Click Continue to this website (not recommended). d) Type root and Password1 in the username and password fields and login. e) Click Install the Access Gateway Administration Tool link and click Run. f) Click Run and click Next. g) Accept the license agreement and click Next. h) Click Typical and click Install. i) Click Finish and close all open windows. Continue setting up the Access Gateway with the GUI i. Set the hostname to ag.coolidge.net a) Click Start > Access Gateway Administration Tool 4.6.3. b) Log on to the Access Gateway using the following information: a. Host (IP or FQDN): ag.coolidge.net b. Administrator Username: root c. Administrator Password: Password1 c) Click Yes, I trust this certificate and click No. d) Maximize the This Gateway screen. e) Click General Networking. f) Type ag.coolidge.net into the External FQDN field and click Submit. ii. Generate the Certificate Signing Request and install the SSL Certificates. Note: This step will not be covered in this guide. For more information on how to generate and install certificates on Access Gateway, see the following link: http://www.citrix.com/tv/#videos/1427 iii. Specify the license server. a) Click Licensing and select Use a different appliance as the license server b) Type dc.coolidge.net in the FQDN or IP address field and click Submit. Note: The license server is not installed so you will not receive a response, but it will automatically connect during the course once the license server is installed. iv. Restart the Access Gateway. a) Click Administration and click Restart b) Click Restart. c) Close all open windows. MerchandisingServer Specifications: Memory: 512MB Operating System: Merchandising Server VPX (Linux) Page 21 IP Address: 192.168.1.39 Hostname: (Already Set on Coolidge-DC VM) Setup: 1. 2. 3. Set up the Merchandising Server VPX VM via the command line. i. Configure Networking a) Type 2, type 192.168.1.39 and hit Enter. b) Type 4, type 192.168.1.30 and hit Enter. c) Type 5, type 192.168.1.30 and hit Enter. d) Hit enter twice. e) Type 9, type yes, and hit Enter. ii. Change Administrative Password to “Password1”. a) Type Password1 and hit Enter. b) Type Password1 and hit Enter. Set up the via the GUI i. Configure the MerchandisingServer to sync with with Coolidge.net. a) Switch to the WebInterfaceServer virtual machine. b) Click Start > Internet Explorer and navigate to https://merchandisingserver.coolidge.net/appliance c) Click Continue to this website (not recommended). d) Log on using the username “root” and password “C1trix321” e) Click Configure Active Directory. f) Enter the following information into the appropriate fields: Source Name: Coolidge Server Address: 192.168.1.30 Server port: 389 Bind DN: administrator@coolidge.net Bind Password: Password1 Base DN: cn=users,dc=Coolidge,dc=net g) Click Save and Sync. ii. Change Root password to Password1 a) Click Change Root Password. b) Type C1trix321 in the Old Password field. c) Type Password1 in the New Password and Confirm Password fields. d) Click Save. e) Give Administrator permissions to the CitrixAdmin user. iii. Give Administrator permissions to the CitrixAdmin user. a) Click Permissions and click Search. b) Select Admin, Citrix and click Edit. c) Select Administrator and click Save. d) Close the Search All Users screen. e) Logout of the Citrix Merchandising Server Administrator Console. Create the default delivery i. Download the latest plug-ins. a) Log in to the Citrix Merchandising Server Administrator Console as the Coolidge\CitrixAdmin user. b) Click Get New under Plug-ins and click Download All to Server. Note: You may need to configure the Access Gateway VPX to access the internet in order to download the plug-ins. Page 22 ii. 4. Create a plug-in delivery to deliver the Citrix Online and Citrix Offline plug-ins as the default delivery: a) Click Deliveries and click Create. b) Enter the following information into the appropriate fields: Delivery name: Online and Offline Default Delivery: true Silent Install: yes Check for Updates: [blank] Completion Text: The Citrix online and offline plug-ins have been installed successfully. c) Click Plug-ins and click Add. d) Select the following plug-ins. Citrix Online Citrix Offline e) Click Configuration and enter the following information into the appropriate fields: Address: webinterface Add Advanced User Menu items: Enabled f) Click Schedule and click Schedule. Create an SSL Certificate iii. Create a certificate signing request and import the SSL certificate into the Merchandising Server. Note: This step will not be covered in this guide. For more information on how to generate and install certificates on Access Gateway, see the following link: http://www.citrix.com/tv/#videos/1448 Additional Required Setup 1. 2. Install root certificate authority certificate into Active Directory for distribution to all VMs (if required). Note: Depending on how you are implementing the certificates in your environment, this step may not be necessary. It will be necessary in most cases. i. Install the root-CA a) Place all certificates in the \\dc\filer\Administration\Certs folder. b) Switch to the Coolidge-DC virtual machine and login as the Coolidge\Administrator user. c) Click Start > Administrative Tools > Group Policy Management. d) Right-click Default Domain Policy and click Edit. e) Expand the Computer Configuration > Policies > Windows Settings > Security Settings > Public Key Policies > Trusted Root Certificate Authorities nodes. f) Click Action > Import and click Next. g) Browse to and select your root CA certificate in the \\dc\filer\Administration\Certs folder. h) Click Next and click Next. i) Click Finish and Click OK. j) Perform steps f-I for each root CA that is needed. k) Close all open windows. Create an Adobe Reader Profile i. Profile Adobe Reader on a Windows Server 2008 R2 target Note: Use a copy of the Profiler-2008R2 virtual machine in order to complete this step. a) Shutdown the Profiler-2008R2 virtual machine. b) Copy the Profiler-2008R2 virtual machine and start the new copy. c) Login as the local administrator. Page 23 d) e) f) g) h) i) ii. iii. Click Start > Streaming Profiler to open the Streaming Profiler. Click New Profile to launch the New Profile Wizard and then click Next. Type Adobe Reader as the Profile name and click Next. Click Next to accept the default settings for User Updates. Click Next to accept the default settings for Inter-Isolation Communication. Verify that Windows Server 2008 R2 is selected as the Target operating system. j) Click All Languages in the target language section and then click Next. k) Select Quick Install and click Next. l) Click Browse, navigate to the \\dc\filer\Software\ folder, click AdbeRdr930_en_US.exe and then click Open. m) Click Next to continue with the New Profile Wizard. n) Click Launch Installer to launch the Adobe Reader installer. o) Click Next and Click Install. p) Click Finish when the installation completes. q) Click Next in the Run Installer window. r) Click Next in the Select Applications screen to accept the default settings. s) Click Next in the Sign Profile screen to accept the default settings. t) Click Finish to build the profile. u) Click File > Save As and type \\dc\filer\Profiles as the profile save location and then click Save. v) Shutdown the copy of Profiler-2008R2 and delete it. Install the Streaming Profiler. Note: Use a copy of the Profiler-Win7 virtual machine in order to complete this step. a) Shutdown the Profiler-Win7 virtual machine. b) Copy the Profiler-Win7 virtual machine and start the new copy. c) Login as the local administrator. d) Attach the XA6_2008R2_ML.ISO media to the virtual machine. e) Click Run autorun.exe in the AutoPlay window to start the installation. f) Click Manually install components > Common Components. g) Click Plug-ins, Streaming Profiler, and Documentation and then click Streaming Profiler to launch the Streaming Profiler Installer. h) Click OK to accept English as the language and then click Next. i) Select I accept the license agreement and click Next. j) Click Next to accept the default destination folder. k) Click Install, wait for the installation to complete and then click Finish. l) Click Yes to restart the virtual machine. Profile Adobe Reader on a Windows 7 target a) Login as the CitrixAdmin account. b) Click Start > Streaming Profiler to open the Streaming Profiler. c) Click Open Profile, navigate to \\dc\filer \Profiles\Adobe Reader, select Adobe Reader.profile and then click Open. d) Right-click Adobe Reader and click Add New Target. e) Click Next to begin the wizard. f) Verify that Windows 7 is selected as the Target operating system. g) Click All Languages in the target language section and then click Next. h) Select Quick Install and click Next. i) Click Browse, navigate to the \\dc\filer\Software\ folder, click AdbeRdr930_en_US.exe and then click Open. j) Click Next to continue with the New Profile Wizard. k) Click Launch Installer to launch the Adobe Reader installer. Page 24 l) m) n) o) p) q) r) s) Click Next and Click Install. Click Finish when the installation completes. Click Next in the Run Installer window. Click Next in the Select Applications screen to accept the default settings. Click Next in the Sign Profile screen to accept the default settings. Click Finish to build the profile. Click File > Save. Shutdown the copy of Profiler-Win7 and delete it. Remove all “recent” applications from the start menu of each VM to give the appearance of a completely clean and fresh virtual machine. Ensure that all of the virtual machines do not have ISOs attached to them. Optional: Install BGInfo on each machine. Congratulations! Your CXA-204 environment setup is now complete. Please run though all modules to ensure that everything is working as intended. Also, if you have decided to reuse this set of virtual machines for multiple classes that will last outside of the RDS-CAL evaluation period, remember to run through the Optimizing for Reuse section below before each class. Optimizing for Reuse This section contains information if you wish to reuse these VMs for longer than the Remote Desktop Services evaluation period allows and do not wish to purchase RDS-CALs. At this point, your CXA-204 should be already entirely complete. The following directions need to be done prior to every class. It should be performed on copies of your master CXA-204 environment set so not to trigger the RDS evaluation period on your master set. 2. 3. 4. Copy all of the VMs in your CXA-204 set and perform the rest of these steps on this copy. Once completed, this newly copied VM sets should be distributed to student computers. Install Remote Desktop Services on XenAppServer-1. a. Start the XenAppServer-1 virtual machine and login as the Coolidge\CitrixAdmin user. b. Click Start > Administrative Tools > Server Manager. c. Click Roles and click Add Roles. d. Click Next, select Remote Desktop Services, and click Next. e. Click Next, select Remote Desktop Session Host, and click Next. f. Click Next, select Do not require Network Level Authentication, and click Next. g. Select Per User and click Next. h. Click Next, click Next, and click Install. i. Click Close and click Yes to restart. j. Log back in as the Coolidge\CitrixAdmin user and allow for it to resume installation. k. Click Close when completed. Install the XenApp role on XenAppServer-2. a. Start the XenAppServer-2 virtual machine and login as the Coolidge\CitrixAdmin user. b. Attach the XA6_2008R2_ML.ISO to the virtual machine. c. Click Run autorun.exe in the AutoPlay window. If this window does not display access the DVD from the Start > Computer screen. Page 25 d. e. f. g. h. i. j. k. l. Click Install XenApp Server and click Add server roles. Click Platinum Edition, agree to the License agreement and click Next. Select XenApp and click Next. Click Next, click Next, and click Install. Click Finish and restart the virtual machine. Log back in as the Coolidge\CitrixAdmin user. In the Citrix XenApp Serve Role Manager click Resume Install. Click Install and allow the installer to complete. Click Finish to complete the installer. Page 26