Citrix on Mac OS X – You have chosen not to trust ‘SSL provider’ the issuer to the server’s security certificate

Citrix ICA Client: SSL Error 61: You have not chosen to trust “VeriSign/Go Daddy/Rapid SSL etc”, the issuer to the server’s security certificate.

What you need to do is install the full SSL Certificate Chain.

You can get view which chain you need by going to the StoreFront website and clicking the view certificate button.

Then follow these instructions to install BOTH the Intermediate and the Root certs.

http://support.citrix.com/article/CTX114146

Pro Tip: You don’t have to SFTP/SSH the certs to the NetScaler if it’s in your DMZ and don’t have access, you can create new files using the ‘Install’ button and just copy/paste the cert contents into the ‘new file’.

If you get an error “No Certificate Found for Linking” then you are uploading the wrong chain of files.

Once you have both certificates uploaded, click on your initial SSL cert, and link it to the intermediate cert you just uploaded. Then click the intermediate cert and link it to your root cert.

With this all done the Mac will be able connect succesfully to your citrix session!

 

 

Total Views: (478)

Leave a Reply

*