Citrix Cloud MFA Integration with AuthPoint

This document describes how to configure multi-factor authentication (MFA) for Citrix Cloud with AuthPoint as an identity provider.

Contents

Integration Summary

The hardware and software used in this guide include:

  • AuthPoint Mobile App
  • Citrix Cloud

Citrix Cloud MFA Authentication Data Flow with AuthPoint

AuthPoint communicates with various cloud-based services and service providers for a MFA transaction. This diagram shows the data flow of an MFA transaction for Citrix Cloud.

Diagram that shows the data flow of an MFA transaction for a SAML resource with the push authentication method.

Before You Begin

Before you begin these procedures, make sure that:

  • The AuthPoint Mobile app is installed into your mobile device.
  • A token is assigned to a user in AuthPoint.
  • You have a Citrix Cloud account.

Configure MFA in Citrix Cloud

To configure MFA in Citrix Cloud:

  1. Log in to Citrix Cloud.
    If you sign in to Citrix Cloud for the first time (or if MFA is not configured), you are prompted to enroll.
  2. Screen shot of the Citrix Cloud enroll now page.

  3. Click Enroll Now
    The Set Up an Authenticator App page opens. Citrix Cloud sends a verification email with a six digit verification code to your registered email address.
  4. Screen shot of the Citrix Cloud enter verification code page.

  5. In the Enter 6-Digit Verification Code text box, type the verification code you received in an email.
  6. In the Enter Citrix Cloud Account Password text box, type a password for your Citrix Cloud account.
  7. Click Verify.
    The Scan the QR Code page opens.
  8. Screen shot of the Scan QR Code page.

  9. From the AuthPoint Mobile app, click the QR code icon and scan the QR code that you see on Citrix Cloud web UI.
    On the AuthPoint Mobile app, in the Third-Party Tokens section, a Citrix token appears.
  10. Screen shot of the AuthPoint Mobile app

  11. From your AuthPoint Mobile app, copy the 6-digit Citrix token code.
  12. In the Citrix Cloud web UI, in the Verify Your Authenticator App section, type the 6-digit code that you copied in the previous step.
  13. Click Verify Code.
    The Choose at Least 2 Recovery Methods page opens.
  14. Screen shot of the add recovery optons page

  15. To add a recovery phone number, click Add Recovery Phone and enter your phone number.
  16. To add a backup code, click Generate Backup Codes.
  17. Click Finish.

Change MFA Authenticator to AuthPoint

If you already configured an authenticator with Citrix Cloud, you can change it to AuthPoint.

To change the MFA authenticator to AuthPoint:

  1. Log in to Citrix Cloud.
  2. From the navigation menu, click the administrator name.
    The administrator options appear.
  3. Screen shot of the administrator menu options

  4. Select My Profile.
    The My Profile page opens.
  5. Screen shot of the profile settings

  6. In the Login Security section, click Change Device.
    The Change Your Device confirmation dialog box opens.
  7. Screen shot of the Change Your Device page

  8. Click Yes, Change Device.
    The Enter the Verification Code page opens.
  9. Screen shot of the Enter the verification code page

  10. Enter the verification code from your existing authenticator, then click Verify.
    The Set Up a New Device With Your Authenticator App page opens.
  11. Screen shot of the Set up a new device with your authenticator app page

  12. From the AuthPoint Mobile app, click the QR code icon and scan the QR code.
    On the AuthPoint Mobile app, in the Third-Party Tokens section, a Citrix token appears.
  13. From your AuthPoint Mobile app, copy the 6-digit Citrix token code.
  14. On the Citrix Cloud web UI, in the Verify Your Authenticator App section, type the 6-digit code that you copied in the previous step.
  15. Click Verify Code.
    AuthPoint is configured as a MFA authenticator.
  16. Screen shot of the change success message

Test the Integration

To test the MFA integration of AuthPoint and the Citrix Cloud:

  1. Go to the Citrix Cloud login page.
  2. Type the user name and password.
  3. Click Sign In.
  4. Screen shot of the login

  5. Enter the 6-digit verification code from your AuthPoint Citrix token.
  6. Screen shot of the login

  7. Click Verify.
    You are logged in to Citrix Cloud.