Enabling two-factor authentication with SMS2 (free) and NetScaler Gateway

In this post we are going to see something fabulous, let's see how to enable 2FA or two-factor authentication in NetScaler Gateway, forcing users to use an additional Token for corporate access to the organization. We will use SMS2 which is a free tool, which through RADIUS will validate the user tokens, we'll use software tokens using the Google Authenticator app on mobile, A blast!

Two-factor authentication in Citrix with PINsafe and NetScaler

In this document we will look at the deployment of Swivel Secure's great PINsafe product, where we will force users who work against our Citrix platform to have a double authentication and validate themselves with their Active Directory authentication in addition to entering an OTC code based on their PIN so that they cannot access our platform before a keylogger and try to secure the accesses more!!

PINsafe – Deploying the appliance and basic configuration

One of the products we use the most at Tundra to provide stronger authentication in our customers' environments is the use of PINsafe, from the company Swivel Secure. In this document we will see the deployment of the virtual appliance where PINsafe comes already installed, if we want, we can download the Java binaries and mount them on a Windows or a Linux, as long as you have Tomcat.

Installing and configuring WiKID to access the Citrix Web Interface with a token (Software!)

Complete document this, we will see the installation and configuration of WiKID for two-factor authentication with a software token instead of traditional hardware ones (SoftToken) against a Web Interface 5.3 from Citrix. To do this,, first we will install and configure WiKID that through an LDAP connection will connect to our Active Directory and authenticate the tokens in the Web Interface with RADIUS, assign/configure the token against a user in our domain and open a Citrix session. WiKID is a paid product but has a very low price, Logically, we can use this document to configure other services by tokenizing.