In this scenario, Citrix Receiver 13.1 or newer is required. The root certificate of the web server certificate used by the StoreFront server has to be known as the trusted root certificate on the endpoint device – see Deploying Trusted Root Certificates, Certificate Type SSL Certificate.


  1. Under Sessions > Citrix > Citrix StoreFront > Server, specify the Server location.



  2. Choose Smartcard authentication as Authentication type under Sessions > Citrix > Citrix StoreFront > Login.

    When used in combination with Active Directory Logon, the enabled Use passthrough authentication activates single sign-on with a smartcard.



  3. Select the appropriate PKCS#11 module for the smartcard under Security > Smartcard > Middleware or specify there your own PKCS#11 library, see Middleware for Smartcards in IGEL OS.