1 © 2016 Citrix | Confidential Successfully Migrating your XenMobile Enterprise Environment Justin Maeder ​Sr. XenMobile Escalation Engineer MAY 2016.

Slides:



Advertisements
Similar presentations
Planning your Xythos upgrade Xythos Webcast Series Dial-in Information: Toll-free Passcode:
Advertisements

Cisco Confidential © 2013 Cisco and/or its affiliates. All rights reserved. 1 Unity Connection Qualification for Prime Collaboration Development Release.
Citrix NetScaler as part of a TMG replacement
1 Week #1 Objectives Review clients, servers, and Windows network models Differentiate among the editions of Server 2008 Discuss the new Windows Server.
XenMobile 10 MDM and MAM Unified Architecture Adolfo Montoya
14.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
Microsoft virtual machine converter
SSL.
Week:#14 Windows Recovery
NETOP ONDEMAND What’s new in version 2.1? DECEMBER 09 NETOP ONDEMAND1.
Introducing VMware vSphere 5.0
VMware vCenter Server Module 4.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
Remote Accessing Your Home Computer Using VNC and a Dynamic DNS Name.
Smart Card Single Sign On with Access Gateway Enterprise Edition
Your storage on the ground; Your files in the cloud.
Migration XenDesktop 7. © 2013 Citrix | Confidential – Do Not Distribute Migration prerequisites Set up a XenDesktop 7 Site, including the site database.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 SAN Certificate in Unity Connection Presenter Name: Bhawna Goel.
November, 2013 XenMobile 8.6 MDM Edition Mobile Device Management Adolfo Montoya, Karen Sciberras, George Ang and Andrew Sandford Lead Support Readiness.
Chapter-4 Windows 2000 Professional Win2K Professional provides a very usable interface and was designed for use in the desktop PC. Microsoft server system.

Self Paced QBA Advanced Training
Benjamin Lavalley, Sr. Product Marketing Manager Kaseya 2 Upgrade Review.
Tutorial 11 Installing, Updating, and Configuring Software
Module 4: Add Client Computers and Devices to the Network.
Document Management CategoryTracking Information Company:Citrix Systems, Inc. Author(s):Adolfo Montoya Owner(s):Worldwide Support Readiness Last modified:2/20/2012.
Copyright ®xSpring Pte Ltd, All rights reserved Versions DateVersionDescriptionAuthor May First version. Modified from Enterprise edition.NBL.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Cisco Confidential Configuring Attendant Console.
CCAT Troubleshooting Training XenApp April 2012 Citrix Consulting Architecture Team.
SQL2005 Cluster Build. IP Request Request 6 IP Addresses – One for EACH SQL virtual server (2) – One for the cluster – One for Distributed Transaction.
TWSd - Security Workshop Part I of III T302 Tuesday, 4/20/2010 TWS Distributed & Mainframe User Education April 18-21, 2010  Carefree Resort  Carefree,
Cisco ASA 5505 Joseph Cicero Northeast Wisconsin Technical College.
July, 2012 Citrix CloudGateway™ Technical Overview.
Citrix CloudGateway Hands on Learning Lab Andreas Zindel James Gonsalvez Principal Technical Marketing Manager Technical Marketing Engineer May
Module 11 Upgrading to Microsoft ® Exchange Server 2010.
Module 4 Planning for Group Policy. Module Overview Planning Group Policy Application Planning Group Policy Processing Planning the Management of Group.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
© Copyright 2011 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Restricted Module 7.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 UC 7.0 Install and Upgrade Changes TOI Josh Rose UCBU Software Engineer.
Microsoft Virtual Academy Module 12 Managing Services with VMM and App Controller.
© 2014 IBM Corporation Mobile Customization & Administration IBM Connections 5.0 Workshop Author: Paul Godby IBM Ecosystem Development Duration: 30 minutes.
Vmware 2V0-621D Vmware Exam Questions & Answers VMware Certified Professional 6 Presents
NetScaler Gateway and StoreFront
1 Remote Installation Service Windows 2003 Server Prof. Abdul Hameed.
Microsoft Dynamics NAV Microsoft Dynamics NAV managed service for partners, under the hood Dmitry Chadayev Corporate Vice President, Microsoft.
Deploying Citrix XenDesktop 7.6 Solutions Pass 1Y0-301 Exam Dumps Download PDF File From Dumps4download.
SNOW Spoke Server Implementation on SHRINE
SmartCenter for Pointsec - MI
2V0-620 Real Questions with Correct Answers
VMware ESX and ESXi Module 3.
Data Virtualization Tutorial… SSL with CIS Web Data Sources
SQL Server and Network Study Setup, Troubleshooting & Training
User Portal Error Messages
Autodiscover is Hero of Exchange Motherland!
What are they? The Package Repository Client is a set of Tcl scripts that are capable of locating, downloading, and installing packages for both Tcl and.
Configuring Attendant Console
Module Overview Installing and Configuring a Network Policy Server
Implementing CRM 2011 Claims-Based Authentication, ADFS and IFD
2017 Real Questions
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
Information Services & Technology
SYED SAJID WASIM SQL SERVER ALWAYS ON Step by Step.
Managing Services with VMM and App Controller
System Center Configuration Manager Cloud Services – Cloud Distribution Point Presented By: Ginu Tausif.
Tyler Technologies presents: What you need to know about upcoming changes to your New World ERP technical environment in Mike Adnson | Launch Manager,
PerformanceBridge Application Suite and Practice 2.0 IT Specifications
Everything you need to know about implementing AD FS
Tyler Technologies presents: What you need to know about upcoming changes to your New World ERP technical environment in Scott Alan Miller MCP,
Presentation transcript:

1 © 2016 Citrix | Confidential Successfully Migrating your XenMobile Enterprise Environment Justin Maeder ​Sr. XenMobile Escalation Engineer MAY 2016

2 © 2016 Citrix | Confidential Agenda 1.Architecture overview 2.Prerequisites 3.Migration process 4.Post-requisites 5.Troubleshooting 6.Resource List 7.Q&A

XenMobile Architecture

4 © 2016 Citrix | Confidential MDM LB NS Gateway Device Manager App Controller PostgreSQL MS-SQL 8443/443 MDM – Device Enrollment – 8443/443/ MAM & MicroVPN – MDX Applications – 443

5 © 2016 Citrix | Confidential XenMobile 9.0

6 © 2016 Citrix | Confidential MDM LB NS Gateway MS-SQL 8443/443 MDM – Device Enrollment – 8443/443/ MAM & MicroVPN – MDX Applications – 8443 XenMobile Server 10

7 © 2016 Citrix | Confidential XenMobile 10

8 © 2016 Citrix | Confidential Why should I migrate? Unified administrator console Wider supported device/OS platform More features More cost efficient MTC upgrades are now possible XenMobile 9 going End of Maintenance (EOM) soon! Java 7 no longer supported

9 © 2016 Citrix | Confidential Planning for Upgrade Test Drive Staging Environmen t Full Upgrade Staging Environmen t Full Upgrade Production Environmen t

10 © 2016 Citrix | Confidential Complete upgrade Prerequisites Install a new XMS 10.1 VPX which points to a new DB Install the latest version of the Upgrade Tool Download & copy the help- upgrade.jsp to existing XDM sever Upload encrypted App Controller support bundle Start upgrade process Reboot and log into XMS console Configure V6 licensing Complete upgrade post-requisites

Migration Prerequisites

12 © 2016 Citrix | Confidential What do I need to focus on first? Hypervisor Platform XenServer – 6.0+ Vmware – ESXi 5.1+ Hyper-V – Windows Server 2008 R2+ Database Version – Non-default named instance SQL Postgres – Supported for POC and test environment Pg_hba.conf Postgresql.conf NetScaler version 10.1 build e 10.5 build

13 © 2016 Citrix | Confidential What do I need to focus on first? Certificate Authority – PKI Windows Server 2008 R2 TLS 1.2 Workaround - Windows Server 2012 License Server – V6 licensing model only

14 © 2016 Citrix | Confidential Migration Prerequisites XenMobile Server 10.1 VPX Note: This is not an in-place migration so a new IP address will be needed XenMobile App Controller Patch Note: Reboot required App Controller Encrypted Support Bundle App Controller Server Certificate Imported into NetScaler XenMobile Snapshot App Controller – Before Patch install NetScaler VPX or ns.conf file

15 © 2016 Citrix | Confidential Migration Prerequisites XenMobile Migration Tool – latest version is V5 Device Manager help.upgrade.jsp file \tomcat\webapps\zdm XenMobile Device Manager Certificate Password Password created during original XDM install 2 Additional DMZ IP Addresses Used for MAM Load Balancers on NS XMS FQDN Must match the Device Manager 9.0 FQDN

16 © 2016 Citrix | Confidential Migration Prerequisites SQL Server Name in Device Manager \tomcat\webapps\zdm\WEB-INF\classes\ew-config.properties Four locations where it needs to be updated/changed from hostname to FQDN 1.pooled.datasource.url=jdbc:jtds:sqlserver:// :1433/xxxxxxxx x 2.pooled.datasource.hostname= 3.audit.datasource.url=jdbc:jtds:sqlserver:// :1433/xxxxxxxxx 4.audit.datasource.hostname=

17 © 2016 Citrix | Confidential Disable Load Balancer Virtual Server(s) Disable NetScaler Gateway Virtual Server Migration Prerequisites – Last Step

18 © 2016 Citrix | Confidential Complete upgrade prerequisites Install a new XMS 10.1 VPX which points to a new DB Install the latest version of the Upgrade Tool Download & copy the help- upgrade.jsp to existing XDM sever Upload encrypted App Controller support bundle Start upgrade process Reboot and log into XMS console Configure V6 licensing Complete upgrade post-requisites

Migration Process

20 © 2016 Citrix | Confidential XenMobile 9XenMobile 10 Configuration Device Data

21 © 2016 Citrix | Confidential /uw/

22 © 2016 Citrix | Confidential Migration Types Test Drive Configuration data only NO device or user data Run this First to ensure all configuration data will be migrated Production Upgrade Configuration, device and user data Require additional post-migration configurations No device re-enrollment

23 © 2016 Citrix | Confidential

24 © 2016 Citrix | Confidential Complete upgrade prerequisites Install a new XMS 10.1 VPX which points to a new DB Install the latest version of the Upgrade Tool Download & copy the help- upgrade.jsp to existing XDM sever Upload encrypted App Controller support bundle Start upgrade process Reboot and log into XMS console Configure V6 licensing Complete upgrade post-requisites

Migration Post-requisites

26 © 2016 Citrix | Confidential Migration Post-requisites – XenMobile Server Verify console access – XDM 9.0 administrator credentials Apps show up correctly LDAP configuration Delivery Groups show AD groups Enrolled devices show: Setup V6 licensing Devices will not connect back in before this is setup (30-day grace period) Verify ports & 7279 are open between XMS and License Server

27 © 2016 Citrix | Confidential XenMobile Server Upgrade Current Migration Tool – Migrates server from XDM 9 to XMS 10.1 After verifying ALL data was migrated successfully Backup XMS VM Backup XMS Database Upgrade XMS using.BIN file

28 © 2016 Citrix | Confidential Migration Post-requisites – NetScaler MDM Load Balancer SSL Bridge Unbind the XenMobile Device Manager 9.0 services and replace with the newly added XenMobile Server 10 services Port: 443 :: Protocol: SSL_Bridge Port: 8443 :: Protocol: SSL_Bridge

29 © 2016 Citrix | Confidential Migration Post-requisites – NetScaler MDM Load Balancer SSL Offload You do NOT need to modify the Devices or Root CA certs that are currently bound Unbind the XenMobile Device Manager 9.0 services and replace with the newly added XenMobile Server 10 services Port: 80 :: Protocol: SSL Enable Port 80 within the XMS firewall – Via CLI

30 © 2016 Citrix | Confidential MAM LB XenMobile Server 10 Newly enrolled devices 8443 – XMS FQDN – 8443 Previously enrolled devices 443 – App Controller FQDN – 8443 Migratio n LB NetScaler Gateway AppC XMS FQDN

31 © 2016 Citrix | Confidential Migration Post-requisites - NetScaler Migration LB Load Balancing Virtual Server IP address must meet RFC1918 standards Protocol: SSL Port: 443 Service/Service Group XenMobile 10 IP address Protocol: SSL Port 8443 Server Id: Node ID found in XMS CLI Bind App Controller Server Certificate Create A New Address Record App Controller FQDN  Migration LB IP

32 © 2016 Citrix | Confidential MAM LB Load Balancing Virtual Server IP address must meet RFC1918 standards Protocol: SSL Port: 8443 Persistence: CUSTOMSERVERID ​ Expression: HTTP.REQ.COOKIE.VALUE(“ACNODEI D”) Service/Service Group XenMobile 10 IP address Protocol: SSL Port 8443 Server Id: Node ID found in XMS CLI Migration Post-requisites – NetScaler Bind XenMobile Server Certificate (SSL Listener) Create A New Address Record XenMobile Server FQDN  MAM LB IP

33 © 2016 Citrix | Confidential Migration Post-requisites – NetScaler Gateway Reconfigure STA within NetScaler Gateway :8443 Change App Controller FQDN field to XMS FQDN:8443 Change Session Polices from App Controller FQDN to XMS FQDN:8443 Add the XenMobile Server FQDN to the Allowed Domains for Clientless Access

Troubleshooting Common Issues

35 © 2016 Citrix | Confidential Browser Cache.. Prior to updating the Upgrade Tool After updating the Upgrade Tool

36 © 2016 Citrix | Confidential Common Issues Migrations that contain a XenMobile Device Manager FQDN with uppercase letters Example: CitrixSynergy.Domain.com Symptoms – Worx Home will not open after the device successfully enrolls Fixes – Prior to the migration, modify your Device Manager hostname within the EW-Config.properties file and Server Groups within XDM console ios.mdm.https.host=CitrixSynergy.Domain.com zdm.awareness.http-plain.host=CitrixSynergy.Domain.com zdm.awareness.https-no-auth.host=CitrixSynergy.Domain.com zdm.awareness.https-want-auth.host=CitrixSynergy.Domain.com Fixed in latest Migration Tool

37 © 2016 Citrix | Confidential Common Issues Migrations that contain a custom store name within the App Controller Default name is Store Symptoms - Error "Please contact support for access to your applications“ during device enrollment Fixes – Prior to the migration, change the store name back to the default name – Store Fixed in XMS **Single name store** Example “Citrix” **Store name with spaces will NOT work** Example “Citrix Store” If this issue occurs after the migration, change the store name back to the default – This will NOT affect the migration

38 © 2016 Citrix | Confidential FAQ Q: If my XenMobile migration fails, can I rollback to 9.0? A: Yes you can, the sooner the better after the migration fails. Any changes made to the XMS 10 configuration or any devices enrolled will no longer work. Q: Can I migrate from Device Manager 8.x to 10? A: No, the XenMobile Migration Tool will only support migrations from 9.0 Q: Can I migrate from a PostgreSQL DB to a remote SQL server? A: No, we do not support cross platform DB migrations Q: Can I run XenMobile 9 & XenMobile 10 simultaneously in my environment? Yes you can, but a mobile device can only be enrolled in 1 EMM instance at a time.

39 © 2016 Citrix | Confidential Review How does XenMobile 9 communication flow differ from XenMobile 10 What pre-requirements are necessary to review prior to starting the migration What are the key steps in the migration process What post-requirements are necessary to complete to regain communication with previously enrolled devices What are some of the common issues that I may run into and how do I fix them

40 © 2016 Citrix | Confidential Resources Lessons Learned on the Field Citrix Product Documentation FAQ: XenMobile 10 Migration Tool Supporting Named SQL Instances Supporting XenMobile Upgrade Rollbacks

41 © 2016 Citrix | Confidential Q & A

42 © 2016 Citrix | Confidential