Menu path: Setup > Sessions > Citrix XenDesktop/XenApp > Legacy ICA Sessions > [ICA Session] > Firewall

In this area, you can specify the following firewall details regardless of the default settings:

  • Use default alternate address setting

    ☑ Default alternate address setting is used (default)

    ☐ Default alternate address setting is not used

  • Use alternative address: Define a proxy or Secure Gateway server as an alternative address for connections via a firewall. Note the tool tips regarding the individual configuration parameters.

    ☑ Use alternate address for firewall connections

    ☐ Disabled (default)

SOCKS / Secure proxy

  • Use default proxy settings

    ☑ Default proxy settings are used (default)

    ☐ Default proxy settings are not used

  • Proxy Type:
    • None (Direct Connection)
    • SOCKS: A proxy that uses the SOCKS protocol
    • Secure (HTTPS): An HTTP proxy with TLS/SSL encryption.
  • Proxy Server: Name or IP address of the proxy server
  • Proxy Port: TCP port of the proxy server (default: 1080)

Secure Gateway (relay mode)

  • Use default Secure Gateway settings

    ☑ Default Secure Gateway settings are used (default)

    ☐ Default Secure Gateway settings are not used

  • Secure Gateway address: If you would like to use a Citrix Secure Gateway in relay mode, you must give the full DNS name – the IP address is not sufficient in this case.
  • Port: TCP port of the gateway (default: 443)


    After enabling the alternative address, add the server to the address list under Setup > Sessions > Citrix XenDesktop/XenApp > Legacy ICA Sessions > ICA Session > Server.