now many enterprise customers in the external network use VDI, will buy the domain name, but combined with NetScaler, must buy SSL domain name certificate, often in the project, WI server can not connect the Internet, resulting in WI due to root certificate and intermediate license is not updated, Causes the built-in partial certificate to be invalidated .....
Workaround:
1. Will purchase certificate manufacturer's certificate, intermediate, root certificate manually imported into the WI server, the user through the WI authentication success
2.NetScaler requires mid is an intermediate certificate, cross is a crossover certificate, root is the root certificate (top-level certificate) Link requests the server certificate (these certificates can be issued to the customer by the certificate vendor)
The 3.link relationship is as follows (currently new certificate manufacturers, because SHA algorithm upgrade, will be one more cross certificate)
650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M01/6D/A6/wKiom1VoK3qxzMC7AADTDmj_BMU390.jpg "title=" Image.png "alt=" Wkiom1vok3qxzmc7aadtdmj_bmu390.jpg "/>
650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/6D/A2/wKioL1VoLOSiGjA_AAEP7-2xQoo078.jpg "title=" Image.png "alt=" Wkiol1volosigja_aaep7-2xqoo078.jpg "/>
This article is from the "liy-l" blog, make sure to keep this source http://liy116.blog.51cto.com/2991406/1656458
Purchase public network certificate, import into NetScaler, LDAP authentication failed