Stephane Thirion
  • Home
  • Raidho Consulting
  • Homelab
  • Cryptos
Sign in Subscribe
account delegation

Netscaler native OTP Active Directory account delegation

Stéphane Thirion

Stéphane Thirion

Mar 22, 2023 2 min
Netscaler native OTP Active Directory account delegation

How to minimise the right given to the Active Directory service account used by the LDAP policies on Netscaler for OTP configuration ? When setting up Citrix native OTP in Netscaler the “regular” service account needs more than browsing the AD. It needs to write on every user AD account the attribute “userParameters” to store information about your enrolled device(s)

To enable this service account to read and write this attribute only here are the few steps to follow to make the proper delegation:

In the Active Directory Users and Computers console :

Right click on the OU where the users that will authenticate using Netscaler native OTP and chose Delegate Control

Then follow the wizard by clicking on Next

Click on Add and chose the service account configured in your LDAP policies and click on Next

Chose Create a custom task to delegate and click on Next

Check User objects box and click on Next

Check General and Property-specific boxes and scroll down until the userParameters permissions check both read and write.

Now click on Finish, this is done

Note you need to repeat this delegation process if your users are split across different OUs a the same level in the Active Directory.

Read next

Synergy Barcelona 2011 – Public Cloud 3/3

Part 1/3 Synergy Barcelona 2011 – Personal Cloud 1/3 Part 2/3 Synergy Barcelona 2011 – Private Cloud 2/3 Part 3/3 Synergy Barcelona 2011 – Public Cloud 3/3 Public Cloud The last cloud of 3 (Personal Cloud, Private Cloud and Public Cloud) has been announced to be used
Stéphane Thirion Oct 31, 2011

Synergy Barcelona 2011 – Private Cloud 2/3

Part 1/3 Synergy Barcelona 2011 – Personal Cloud 1/3 Part 2/3 Synergy Barcelona 2011 – Private Cloud 2/3 Part 3/3 Synergy Barcelona 2011 – Public Cloud 3/3 Private Cloud The gateway between Public Cloud and Private Cloud is an Unified Service Broker to allow access to Windows
Stéphane Thirion Oct 30, 2011

Citrix ShareFile Tech. Prev, Follow me data

Citrix released few days ago the first public technical preview for Citrix ShareFile part of the Follow me Data strategy announced by Citrix CEO during last Synergy in Barcelona. You can download Windows, Mac, Android and iOS clients and register here : link Citrix acquired ShareFile last year in October 2011
Stéphane Thirion Jan 21, 2012

Subscribe to Stephane Thirion

Don't miss out on the latest news. Sign up now to get access to the library of members-only articles.
  • Sign up
Stephane Thirion © 2023. Powered by Ghost