We currently have several applications onboarded using the TCAM agent for their citrix environments. I was wondering if we should be seeing the user name carry through to the various back end tiers? For instance:
User -> Citrix (TCAM) -> Application Servers (HTTP) -> NAS (SMB) and Database (MSSQL)
Would we only get the user ids on the citrix tier (be able to see the published applications they are using) or should we also expect to the the user names carried back to the application servers for the operations that user is doing?
Solved! Go to Solution.
Is there any configuration that is needed to use the username provided by the TCAM agent for the Application server tier? Currently only seeing the citrix server ip / name for the user name on the application tiers clients.
Im guessing since we are using endace probes with 4 vm amds and dedicating the tcam agent traffic to an individual amd for processing that the correlation to the backend tiers isnt happening because their traffic is going to a separate amd.
Is the traffic for the citrix servers (tcam) and the next tier back (application servers) required to go to the same amd for this user name correlation?
The frontend and backend traffic does not need to be seen by the same AMD, but the following preconditions need to apply:
Please also check the username mapping configuration (RUM Console -> AMD config -> Global -> Advanced -> User-IP Mapping):
This is really helpful, thanks. Would you happen to know if I would be able to send syslog messages from the one amd they are currently coming into and send it to the rest? I know that I could make the change on the agents to send to all amds just wondering if there was a way to send it from the one amd to prevent changes done by the application teams.
Within the TCAM Manager im seeing that only 1 amd ip can be checked at a time however multiple can be added to the list. Is there any importance to this checkbox? Is it indicating only one amd can receive the syslog messages from the agent?