5. Agenda:
ā¢ Azure Virtual Desktop: i benefici del Public Cloud per i clienti finali ed i service provider
ā¢ CosāĆØ Azure Virtual Desktop?
ā¢ Tipi di workload: Virtual Desktop e Multi-session
ā¢ I vantaggi del licensing di Microsoft 365 in CSP su Azure vs on premise
ā¢ VDI on Azure Stack HCI
ā¢ Il valore aggiunto di Citrix ad Azure Virtual Desktop (AVD):
ā¢ Panoramica del Desktop as a Service (DaaS) e lāintegrazione con Azure
ā¢ Il protocollo HDX
ā¢ Management, Provisioning & Monitor
ā¢ Hybrid
ā¢ Casi dāuso
ā¢ Demo
ā¢ Q&A
7. 7 Confidential ā Do Not Distribute
Other DC or Company
Merge & Integration
Traditional Environment
External Identity Provider
Network Security Auth
External Access
Heterogeneous
Endpoints
Trust
Device
BYOD Mobile
OS Version
App version
Application
Compatibility
& Lifecycle
New Challenges
10. Additional Resources:
https://it.wikipedia.org/wiki/Cloud_computing
Delivery Model for services on demand and over
the internet
Services like:
ā¢ Storage
ā¢ Compute Power
ā¢ Networking
ā¢ Analytics
and more servicesā¦ā¦..
STORAGE
Files Database
COMPUTE
POWER
Windows Linux Web
0
1
0
1
0
1
NETWORKING ANALYTICS
Cloud Computing
Microsoft Azure
1
11. Additional Resources:
What is Azure - https://azure.microsoft.com/en-us/overview/what-is-azure/
Microsoft Azure
ā¢ Leading IaaS,Paas,Saas vendor.
ā¢ Datacenters in 40 regions and 140 countries.
ā¢ Framework that can support both on-premises and
cloud deployments.
ā¢ Azure has engineered their datacenters to meet or
exceed the complex and critical requirements for US
Federal, Department of Defense, state, and local
government
ā¢ Used by 90% of Fortune 500.
ā¢ Supports a broad selection of operating systems,
programming languages, frameworks, databases,
and devices.
ā¢ Powerful add-on to Citrix Cloud for hosting
resources.
1
12. Microsoft Azure vs On Premises
1
The customer manages
HW Computing
Hypervisor
OS
App/Services
Data
On-Premises
Key point Local Datacenter Public Cloud
Initial Cost Upfront Monthly
Time to Market High Low
Scalability Limited High
Early termination No Anytime
Value Over Time Lower No Change
IaaS
HW Computing
Hypervisor
OS
App/Services
Data
Management High Low/Medium
Compliant To Build and Maintain Native
Vendor manages in cloud
The customer manages
13. Additional Resources:
Azure Regions - https://azure.microsoft.com/en-us/regions/
Many datacenters distributed all over the world
Microsoft Azure
1
14. Instance (vHW) ā CPU e RAM
Additional Resources:
https://azure.microsoft.com/en-us/pricing/details/bandwidth/#pricing
Option 2: Reserved Instance (1y, 3y) (upfront or monthly payment)
Option 2: Covered by Hybrid Rights
Microsoft Azure - VMās Pricing Components
1
Option 1: VMās execution time (hourly) - Pay-per-use (monthly cost)
Option 1: VMās execution time (hourly) - Pay-per-use (monthly cost)
License OS
HDD: (Number, Size, Type, TU)
Outbound data transfers
Consumption: fixed (TU* excluded) and perpetual (monthly cost)
Consumption: dependent on egress traffic (~ 0,073 ā¬/GB) (monthly cost)
* First 100 GB are included for subscription every month
15. Container File Share Queue
Storage
Table
Storage
Storage Account
Disk Encryption
Vault
Backup
Center
Vault
Backup VM
Backup File/Data
Replication VM
Backup and DR VM
AZ to AZ connectivity
Virtual Network
Load Balancing
AZ Load Balancer
Availability
Availability
Zone #1
Data Center A
Region A
Availability
Zone #2
Data Center B
Availability
Zone #3
Data Center C
Availability
Zone #1
Region B
Availability
Zone #2
Availability
Zone #3
Monitoring and Alerting
AZ monitoring
Log & Analytics Insight
Automation
Template
Logcal App
Az Automate
AZ to External connectivity
VPN Gateway Express Route
Public IP
Microsoft Azure
1
Internal and External Security
NSG AZ FW WAF
DDoS
Protection
16. Microsoft Azure - 3rd Party
1
And moreā¦.
Backup & Replication
VDI and Virtualization Solutions
Networking & Security
And moreā¦.
18. Microsoft 365 - Hybrid Benefit for VDI and Multisession
2
Additional Resources:
https://azure.microsoft.com/it-it/pricing/details/virtual-desktop/
Multi-Session
Single Session
Desktop
Operating System Required Licenses
Windows 10/11 Enterprise
ā¢ Microsoft 365 E3, E5, A3, A5, F3, Business Premium
ā¢ Windows 10 E3, E5, A3, A5
Windows 7 Enterprise [(* Until January 10, 2023) + ESU]
ā¢ Microsoft 365 E3, E5, A3, A5, F3, Business Premium
ā¢ Windows 10 E3, E5, A3, A5
Windows Server 2008 R2*, 2012 R2*, 2016, 2019, 2022
[ (*Until January 10, 2023) + ESU]
ā¢ WinSrv License with SA , Software Subscription or PAYG
ā¢ RDS CAL with SA (BYOL) , sw sub CSP
Windows 10/11 Enterprise Multisession
ā¢ Microsoft 365 E3, E5, A3, A5, F3, Business Premium
ā¢ Windows 10 E3, E5, A3, A5
Windows 10/11
Windows 7 (*)
Windows Server
2008 R2(*),2012 R2, 2016, 2019,2022
*Available only on AZ
Windows 10/11
MULTISESSION
19. Microsoft 365 ā On Prem vs Azure Cloud
2
Office:
ā¢ Office 365 for each user
VDI Win10/11:
VDA for each Device
Or
Upgr Win 10 + SA for each Device
Multisession Win Srv 2019:
ā¢ Win Server std/Datacenter for the entire core/hypervisor Cluster
ā¢ RDS Cal for each user User or Device
VDI Win7:
ESU for Win 7 for each OS
VDI Win10/11 + VDI 7 + Office + Multisession Windows 10/11 Multisession:
ā¢ Microsoft Business Premium for each user
Or
ā¢ Microsoft 365 E3/E5 (A3/A5) for each user
Or
ā¢ Microsoft F3 for each user
Azure
VDI
Win10/11
VDA
Multisession
Win 10 /11 Multisession
VDA
VDI
Win7
VDA
Device
User
VDI
Win10/11
VDA
Multisession
Win Srv 2019
VDA
Data
Center
Device
User
VDI
Win7
VDA
20. Microsoft 365 ā Hybrid Benefit for VDI and Multisession
2
VDI
Win10
VDA
Multisession
Win 10 Multisession
VDA
VDI
Win7
VDA
Office 365 Subscription
OS+ Office 365:
ā¢ Microsoft 365 Business Premium
ā¢ Microsoft 365 E3 (A3)
ā¢ Microsoft 365 E5 (A5)
ā¢ Microsoft 365 F3
Os Only:
ā¢ Windows 10 E3/E5
Tenant Customer 01
Azure Subscription
CSP Indirect Reseller
VDI
Win10
VDA
Multisession
Win 10 Multisession
VDA
VDI
Win7
VDA
Office 365 Subscription
OS+ Office 365:
ā¢ Microsoft 365 Business Premium
ā¢ Microsoft 365 E3 (A3)
ā¢ Microsoft 365 E5 (A5)
ā¢ Microsoft 365 F3
Os Only:
ā¢ Windows 10 E3/E5
Tenant Customer 02
Azure Subscription
Add Points for:
1Ā°) Performance:
Net Customer adds
2Ā°) Customer Success
Growing
22. Microsoft 365 ā Service Provider QMTH for Win 10 and Office 365
2
Qualified Multitenant Hoster (QMTH) Program (Windows 10/11 & Office 365)
Qualified Multitenant Hoster (QMTH) is authorized by Microsoft to host your Windows virtual machines via Microsoft Cloud Agreement subscription on
dedicated or multitenant hardware.In addition, authorized to host Office 365 ProPlus (including E3 and E5), Project Online Professional, and Visio Pro for
Office 365 subscriptions using shared computer activation (SCA) technology.
DC
Service
Provider
Hypervisor
Shared HW
Customer1 Customer2
QMTH ONLY
Win Srv RDS
VDA
VDI
VDA
Win Serv RDS
VDA
VDI
VDA
DC
Service
Provider
Hypervisor
Shared HW
Other Services
CSP Partner
Until Win Srv 2019
Azure Subscription
Tenant Customer C
VDI/Multisession Customer C
VDI Multisession
S2S VPN/Express Route
Azure Subscription
Tenant Customer SP
VDI/Multisession Customer A
VDI Multisession
VDI/Multisession Customer B
VDI Multisession
S2S VPN/Express Route
Windows Multisession 10/11 excluded
23. Microsoft 365 ā New Licensing Benefit
2
More Info:
https://blogs.partner.microsoft.com/mpn/new-licensing-benefits-make-bringing-workloads-and-licenses-to-partners-clouds-easier/
1Ā°) Simplifying how customers can virtualize Windows 10 or Windows 11 with Microsoft 365: Any user with a Microsoft 365 F3, Microsoft
365 E3, or Microsoft 365 E5 license will be able to virtualize Windows 10 or Windows 11 on their own servers or on outsourcersā servers
(except Listed Providers),
*Listed Providers include Alibaba, Amazon Web Services, Google, and Microsoft, and any outsourcer using a Listed Provider as part of the applicable outsourcing service.
More Info:
https://techcommunity.microsoft.com/t5/windows-server-insiders/support-for-m365-apps-o365-on-windows-2022/m-p/3027565#M2709
2Ā°) Empowering partners to build hosted solutions with new hosting program: āCloud Solution Provider ā Hosterā (CSP-Hoster) is a new
program that will enable participating CSP partners to pre-build hosted desktop and server solutions that they can sell to customers along
with licenses in CSP (license-included hosting), or to customers that already have licenses (customer BYOL-to-partner solutions).
3Ā°) āRumorsā
25. Azure Virtual Desktop (AVD)
1 2
Additional Resources:
https://azure.microsoft.com/en-us/pricing/details/virtual-desktop/
Managed by Microsoft
Web access Diagnostics Gateway
Management Broker Load balancing
Tenant
Azure Virtual Desktop (AVD)
Apps
Desktops
Azure AD
Active
Directory
User profile
File Server
AVD Client
RDP
Azure Subscription
AVD
Agent
AVD
Agent
26. Azure Virtual Desktop (AVD)
1 2
Additional Resources:
https://azure.microsoft.com/en-us/pricing/details/virtual-desktop/
Host Pool 1
(Pooled ā Multi Session)
Host Pool 2
(Pooled ā Single Session)
Host Pool 3
(Personal ā Single Session)
App Group (X)
(Application)
App Group (X)
(Desktop)
Workspace
Azure MarketPlace
AZ Compute
Gallery
Existing VM
Source
27. Azure Virtual Desktop - FSLogix
1 2
Additional Resources:
https://docs.microsoft.com/en-us/fslogix/
Host Pool 1
(Pooled ā Multi Session)
VHD
Profile
Container
VHD
Office365
Container
File indexing OST indexing
Azure Files
FSLogix Eligibility Requirements
You are eligible to use FSLogix if you have one of the following licenses:
ā¢ Microsoft 365 E3/E5
ā¢ Microsoft 365 A3/A5/ Student Use Benefits
ā¢ Microsoft 365 F1/F3
ā¢ Microsoft 365 Business
ā¢ Windows 10 Enterprise E3/E5
ā¢ Windows 10 Education A3/A5
ā¢ Windows 10 VDA per user
ā¢ Remote Desktop Services (RDS) Client Access License (CAL)
ā¢ Remote Desktop Services (RDS) Subscriber Access License (SAL)
ā¢ Azure Virtual Desktop per-user access license
LRS
ZRS
FS
28. Tech
Users
Sales
Users
Finance
Users
Azure Virtual Desktop ā MSIX & MSIX App Attach
1 2
More Info:
https://docs.microsoft.com/it-it/windows/msix/
https://docs.microsoft.com/it-it/windows/msix/desktop/managing-your-msix-deployment-enterprise
Single Session Multisession
Master Company
Pool Finance
Common
Application
Sales App1
Sales App2
Common
Application
Tech App1
Tech App2
Finance App1
Common
Application
Finance App2
MSIX App Attach with Pooled Desktop
MSIX App
File Server
Common
Application
Finance App1
Finance App2
Sales App1
Sales App2
Tech App1
Tech App2
Pool Sales Pool Tech
30. Azure Virtual Desktop ā Universal Printing
1 2
Additional Resources:
https://docs.microsoft.com/en-us/universal-print/fundamentals/universal-print-avd
https://docs.microsoft.com/en-us/universal-print/fundamentals/universal-print-supported-print-options
https://docs.microsoft.com/en-us/universal-print/fundamentals/universal-print-partner-integrations
Organizations that have one of the following subscriptions have licenses for
Universal Print.
ā¢ Microsoft 365 Enterprise F3, E3, E5, A3, A5
ā¢ Windows 10 Enterprise E3, E5, A3, A5
ā¢ Microsoft 365 Business Premium
ā¢ Universal Print (standalone): Each license* includes 5 print jobs per month (4$/m)
Azure Subscription
Tenant Customer C
VDI/Multisession
VDI Multisession
session
Universal
Print
UP
Ready
PC Tablet/Smartphone Print Server
Win Srv 2016 or above
UP
Connector
Printer
redirection
Session
Printer
35. Citrix ā Virtual Apps and Desktops Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops
Users Access Control Compute
Resources
Devices
User Broker
Computing Resource
Director
Studio
Citrix Gateway
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
36. Citrix ā Virtual Apps and Desktops Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops
Users Access Control Compute
Devices
User
Computing Resource
Director
Studio
StoreFront
Citrix Gateway
Delivery Controller
License
Database
Resources
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
37. Citrix ā Virtual Apps and Desktops Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops
Users Access Control Compute
Devices
User
Computing Resource
Director
Studio
StoreFront
Citrix Gateway
Delivery Controller
License
Database
Resources
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
38. Citrix ā Daas Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-cloud
https://docs.citrix.com/en-us/citrix-cloud/overview/signing-up-for-citrix-cloud/geographical-considerations.html
Connect Compute
Computing Resource
Access/Control
Active Directory
Resources
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
ADAPTABLE
FAST
SECURE
SIMPLE
US EU Asia Pacific
South
39. Citrix ā Daas Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-daas.html
Access/Control Connect Compute
Computing Resource
Cloud Connector
Cloud Connector
Authentication
Active Directory
HDX Session
Resources
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
Monitoring
Manage
cloud.citrix.com
Workspace
{company}.cloud.com
Users
User
40. Citrix Daas - Architecture
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-daas.html
Connect
Office/Data Center/Public Cloud
Resources
Cloud Connector
Authentication
Active Directory
Authentication
Session
Enumeration
1
2
3
Computing Resource
Users
User
Workspace
{company}.cloud.com
Server Multisession
Windows Server
2008 R2 to 2022
Virtual Desktop
Windows Desktop
7 to 11 (32/64 bit)
45. Citrix Daas ā Overview Control Pane
3
Single Sign on across all services in the control plane
46. Citrix Daas ā Overview Control Pane
3
Manage Workspace ā Users Logon Point
Logon Url
Authentication Method
Customize
47. Citrix Daas ā Overview Control Pane
3
Opening and Tracking Support Tickets
48. Citrix Daas ā Overview Control Pane
3
Notification
ā¢ Centralized hub for notifications coming
from platform and services
ā¢ Differentiate severity of notification based
on type
ā¢ Act on and dismiss notifications to resolve
issues
49. Citrix Daas ā Overview Control Pane
3
Resource Location
ā¢ Create multiple resource locations to
manage many datacenters and clouds
ā¢ Easily view health of connectors in each
resource location; view any related alerts
and messages
ā¢ Add/Remove resource locations
ā¢ Quickly download and deploy new
connectors
50. Citrix Daas ā Overview Control Pane
3
Resource Location
ā¢ Manage one or more domains within each
resource location
ā¢ Cloud Connector discovers domains
automatically during deployment
ā¢ Manage across AD forests, user and
resource domains
51. Citrix Daas ā Overview Control Pane
3
Administrators
Easily invite and manage administrators on the account
52. Citrix Daas - Citrix Cloud + AVD
3
Managed by Microsoft
Web access Diagnostics Gateway
Management Broker Load balancing
Tenant
Azure Virtual Desktop (AVD)
Apps
Desktops
Azure AD
Active
Directory
User profile
File Server
AVD Client
RDP
Azure Subscription
AVD
Agent
AVD
Agent
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops-service.html
Virtual Apps & Desktops service
Citrix Cloud ā Managed By Citrix
HDX
Workspace
App Client
Citrix
VDA
Citrix
VDA
Deliver Secure and
High Experiences
Optimize Operations
Enable Hybrid & Multi-Cloud
AVD Commercial Agreement
MSIX
Universal
Print
53. Citrix Daas ā Multi AZ Subscription and Tenant
3
Azure Subscription
Tenant Service Provider
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription
Tenant Customer01
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription
Tenant Customer02
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
App registration
App registration
App registration
Monitoring , Auth & Session
Provisioning & Power Management
Provisioning & Power Management
Monitoring , Auth, & Session
54. Citrix Daas ā Multi AZ Subscription and Tenant vs AVD
3
Citrix Daas
App registration
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
App registration
App registration
Azure Virtual Desktop (AVD)
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Azure Subscription
Tenant
Azure AD
Other Services
AD
VDI/Multisession
AD Connect
AD Connect
AD Connect
55. Citrix Daas ā Multi Cloud & Hybrid
3
Azure Subscription
Tenant
Azure AD
Azure Subscription
Azure Subscription
Tenant
Azure AD
Other Public Cloud Provider
Local Datacenter
*with SCVMM
Additional Resources:
https://docs.citrix.com/en-us/citrix-daas/system-requirements.html#hosts--virtualization-resources
56. Citrix Daas ā Multi Datacenter and Routing
3
Azure Subscription
Tenant
Azure AD
Other Public Cloud Provider
Azure Subscription
Azure Subscription
Tenant
Azure AD
Local Datacenter
*with SCVMM
57. Citrix Daas ā Business Continuity and Disaster Recovery
3
Azure Subscription
Tenant
Azure AD
Other Public Cloud Provider
Azure Subscription
Azure Subscription
Tenant
Azure AD
Local Datacenter
*with SCVMM
59. Citrix Daas ā Fast Provisioning and Update with Citrix MCS
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-daas/install-configure/machine-catalogs-create.html
Citrix Daas
60. App registration
Daas MCS ā PaaS service for VDI & Multisession
3
KMS Server
File Server
Profile
Hypervisor
Master VDI
Dedicated
Storage Volumes
Master VDI
Azure
Azure KMS
Managed by IT
Provided by Azure
Azure Files
Manager Hyp
vnet /subnet
Resource Group
61. Provisioning VM ā Citrix MCS on Azure
3
Resource Group (Pool MCS by Citrix)
Base Disk
Premium SSD
128 GB
21,72 ā¬
ID VM01
Standard SSD
4 GB
0,30 ā¬
OS VM01
Premium SSD
128 GB
ā¬ hourly rate
VM01
ID VM02
Standard SSD
4 GB
0,30 ā¬
OS VM02
Premium SSD
128 GB
ā¬ hourly rate
VM02
ID VM01
Standard SSD
4 GB
0,30 ā¬
OS VM01
Premium SSD
128 GB
ā¬ hourly rate
VM (n)
From 9 AM to 7 PM
(Monday to Friday)
200 hours/Month
On
Resource Group (Pool MCS by Citrix)
Base Disk
Premium SSD
128 GB
21,72 ā¬
ID VM01
Standard SSD
4 GB
0,30 ā¬
VM01
ID VM02
Standard SSD
4 GB
0,30 ā¬
VM02
ID VM01
Standard SSD
4 GB
0,30 ā¬
VM (n)
From 7 PM to 9 AM
(Monday to Friday)
H24
(Saturday Sunday)
540 hours/Month
Off
62. Provisioning VM ā AVD on Azure
3
Resource Group (Pooled AVD)
OS VM01
Premium SSD
128 GB
21,72 ā¬
VM01
OS VM02
Premium SSD
128 GB
21,72 ā¬
VM02
OS VM01
Premium SSD
128 GB
21,72 ā¬
VM (n)
AVD
63. Provisioning VM ā Citrix MCS on Azure vs AVD (Storage Cost)
3
N.200 VDI
(WE)
N.200 Users N.200 hours
Use
Case 128 GB Premium
SSD (LRS)
AVD
= Delta 15,45 ā¬ VM(User) / Month
MCS Catalog Qta N. Ore Alloc. (mese) Costo Tot. (mensile)
Base Disk (128 GB Premium) 1 740 21,72 ā¬
Identity Disk (4 GB SSD Std) 200 740 60 ā¬
OS Disk (128 GB) Premium 200 200 1.174,05 ā¬
Totale Canone Mese 1.255,77 ā¬
AVD Pool Qta N. Ore Alloc. (mese) Costo Tot. (mensile)
OS Disk (128 GB) Premium 200 740 4,344 ā¬
Totale Canone Mese 4,344 ā¬
Costo VM/User Mese
(200 VM/User)
6,27 ā¬
Costo VM/User Mese
(200 VM/User)
21,72 ā¬
64. Citrix Daas ā VDA Identity Type
3
No Domain Joined
Server Multisession
VDA
VDI
VDA
ā¢ MCS Persistent and Non-persistent Only
ā¢ Dedicated and pooled
ā¢ All platforms supported by MCS, except Google Cloud Platform
Domain Joined
Server Multisession
VDA
VDI
VDA
Active Directory
More Info:
https://docs.citrix.com/en-us/citrix-daas/install-configure/azure-joined-ndj-vda-configuration.html
https://docs.citrix.com/en-us/citrix-daas/manage-deployment/machine-identities/hybrid-azure-ad-joined.html
AAD Joined (+ Intune Enrollment option for VDI)
Server Multisession
VDA
VDI
VDA
AAD
ā¢ MCS Persistent using Machine Profile workflow only
ā¢ Dedicated
ā¢ Azure only
Hybrid Azure Active Directory joined
Server Multisession
VDA
VDI
VDA
Active Directory
ā¢ MCS Persistent and Non-persistent Only
ā¢ Dedicated and pooled
ā¢ Any Hypervisor and Cloud Services
AAD
65. Citrix DaaS ā Operating System Support
3
Additional Resources:
https://docs.microsoft.com/en-us/azure/virtual-desktop/prerequisites
https://docs.citrix.com/en-us/citrix-daas/system-requirements.html
ADV
*Available only on AZ
Windows 10/11
Windows 7 (*)
Windows Server
2008 R2(*),2012 R2, 2016, 2019,2022
Windows 10/11
MULTISESSION
Single Session
Desktop
Linux OS:
SUSE,RHEL,CentOS ,Ubuntu ,Pardux Linux 17
Multisession
Linux OS:
SUSE,RHEL,CentOS ,Ubuntu ,Pardux Linux 17
Citrix DaaS
Windows 10/11
Windows 7 (*)
*Available only on AZ
Windows Server
2012 R2, 2016, 2019,2022
Windows 10/11
MULTISESSION
66. Citrix Daas - Centralized management and Rapid Deployment
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-daas/manage-deployment/autoscale.html
From 07:00 to 8:00 AM
From 08:00 AM to 07:00 PM
From 08:00 AM to 07:00 PM (25% Buffer ā n.2 VM always On)
From 08:00 AM to 07:00 PM (25% Buffer ā n.2 VM always On)
Citrix Studio
Power Management ā Auto Scaling
69. Citrix Daas - Workspace Identity with Active Directory
3
Customer
Citrix Cloud
Workspace
Cloud Connector
LAN ā Domain1
Active Directory
1
2
3
Cloud Connector
LAN - Domain2
Active Directory
Cloud Connector
LAN ā Domain3
Active Directory
More Info:
https://docs.citrix.com/en-us/citrix-workspace/secure.html#active-directory
70. Citrix Cloud
Workspace
1
FIDO Auth
Windows Hello
Citrix Daas - Workspace Identity with Azure AD
3
Customer
2
MFA
USR/PSW
Cloud Connector
LAN
Active Directory AD Connect
When syncing your Active Directory to Azure AD, the UPN and SID entries must
be included in the sync.
Hybrid
Audit Conditional Access
Cloud
Insight
Secured and Maintained
by Microsoft
Azure AD
71. Citrix Daas - Workspace Identity with Azure AD
3
Customer
Citrix Cloud
Workspace
Example
1 2 3 4
72. Citrix Daas - Workspace Identity with Azure Active Directory and FAS Services
3
Customer
Citrix Cloud
Workspace
LAN
Active Directory
FAS CA
Cloud Connector
Server Multisession
VDA
VDI
VDA
More Info:
https://docs.citrix.com/en-us/citrix-workspace/workspace-federated-authentication.html
73. Authentication ā Workspace Identity
3
Daas - Authentication
Active Directory + Token
Active Directory
Azure AD
FAS
, Okta , Google ID
SAML 2.0 IDP
Citrix Gateway
Local Gateway
More Info:
https://docs.citrix.com/en-us/citrix-workspace/secure.html
https://docs.microsoft.com/en-us/azure/virtual-desktop/authentication
Azure Virtual Desktop (AVD) - Authentication
Azure AD
ā¢ Cloud Identity
ā¢ Hybrid identity
ā¢ Third-party identity providers
ā¢ On-premises identity
ā¢ External identity: Azure Virtual Desktop currently doesn't support
external identities (B2C & B2B)
74. Tenant Multitenant only for Citrix Services Provider (CSP) Only
3
Tenant Customer2
User Customer1
Any Devices
User
LogonPoint1
LogonPoint2
User Customer2
Any Devices
User
Tenant Customer1
Federeted
customer
Federeted
customer
Resource
Location
Customer1
VAD Service
(Multitenant)
for CSP
Server VDI
VDA
Multisession
VDA
Cloud Connector
Resource
Location
Customer2
Active Directory
Customer1
Azure Subscription
Tenant Custome01
Server VDI
VDA
Multisession
VDA
Cloud Connector Active Directory
Customer2
Azure Subscription
Tenant Custome02
77. Session
3
Azure Subscription ā West Europe
Tenant
Azure AD
External User
Other Services
AD
VDI/Multisession
Cloud Connector
Azure Subscription ā France
Tenant
Azure AD
Other Services
AD
VDI/Multisession
Cloud Connector
Citrix ADC
Internal User
Express Route/VPN S2S
Direct Session
Session on GW Services
Session on GW Services with Rendezvous
Session on Citrix ADC
Session on GW Services
94.38.67.176
94.38.67.176 (direct)
GW Services
AZ WE
78. Demo Infrastructure
External User
Any Devices
User Citrix Cloud
Authentication
https://computergross.cloud.com
Catalog MCS Pooled Multisession
Azure Subscription WE
Session
AZFile
(Premium Azure File)
ProfileContainer
Tenant
Azure AD
Oauth2/SAML
App Enterprise
Provisioning & Power Management
App Registration Public IP WE
testcitrix01
Conditional
Access
MFA
Autoscale
Cloud-Conn-03
Azure File
Profile365
Master Image
Master Image
Windows 11
MULTISESSION
AD03
Usr/Psw MFA
ProfileContainer_1 Profile365_1
FAS CA
Manage AZ
&
Authentication Delegation
Manage
80. Citrix Daas - HDX Protocol
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/policies/reference.html
Copy & Paste
Graphics
Local Drive Redirection
Printer Redirection
User or Group
Tag
Delivery Group Type
Delivery Group
Client Name
Client IP Address
Citrix CloudBridge
Access Control
Policy Filters
Bandwidth Control
(Overall Session and Flow Type)
TCP/UDP
Desktops
Apps
HDX (ICA) policy
Policy
Policies & Filters
81. Citrix Daas - HDX Protocol
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/policies/reference.html
High speed connection
Low speed connection
Desktops
Apps
Policy WAN :
Wallpaper: Disabled
Windows Preview: Disabled
Menu Animation: DIsabled
Color Depth: 16bit or 8bit
Codec: ThinWire+,H264,Adaptive DiplayV2
Frame Rate: 16 fps
Limit Print Traffic: 15 Kbps
Limit File redirection Traffic: 15 Kbps
Default Policy
No settings
Resources
Policies & Filters
84. Citrix Daas ā Unified Communications with MS Teams
3
VDI VDI
DataCenter
Location1
Call A/V
Location2
Call A/V
Traditional Communication with Teams VDI Not Optimized Communication with Teams
A/V
Call Control
A/V
Call Control
Location1
Call A/V HDX
Location2
HDX
Call A/V
85. Citrix Daas ā Unified Communications with MS Teams
3
HDX
Location1
VDI
Call Control
VDI
HDX
Location2
HDX
Call Control
Call A/V Call A/V
P2P
Connection
On same Location
Call A/V
Call Control Call Control
Additional Resources:
https://docs.citrix.com/en-us/tech-zone/design/reference-architectures/optimizing-unified-communications-solutions.htm
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/multimedia/opt-ms-teams.html
Windows Server
2008 R2(*),2012 R2, 2016, 2019,2022
*Available only on AZ
Windows 10/11
MULTISESSION
Windows 10/11
88. Citrix Daas ā Security with Castle Approach
3
Azure Subscription ā West Europe
Tenant
Azure AD
VDI/Multisession
89. Citrix Daas ā Security
3
Additional Resources:
https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/policies/reference.html
Copy & Paste
Local Drive Redirection
Printer Redirection
Company Network External Network
User or Group
Tag
Delivery Group Type
Delivery Group
Client Name
Client IP Address
Citrix CloudBridge
Access Control
Policy Filters
HDX Protocol
Copy & Paste
Printer Redirection
Local Drive Redirection
91. Citrix Daas ā Security
3
Additional Resources:
https://docs.citrix.com/en-us/session-recording/current-release.html
Session Recording
ā¢ Powerful activity monitoring
o Capture screen updates to a video file
o Configure monitoring of a specific user, app or server
ā¢ Enhanced auditing
o Record admin screen for change management of critical Notify users
of recording to help deter potential misdeeds
ā¢ Faster problem resolution
Recording Policy
Recording Action
Message about
registration action
Use & Group Range IP Resource
Type
Scope
Event Detection Policy
Use & Group Range IP Resource
Type
Scope
Events to Log
Start/Stop
Application
Network Drive
Access
USB Device
Insert/remove
Copy/Paste
Event Response Policy
Use & Group Range IP Resource
Type
Scope
Event Trigger to response
Start
Recording
LogOff
Session
Disconnect
Session
Lock
Session
93. Citrix Daas ā Security
3
Analytics
What is it?
Descriptive
What happened?
Diagnostic
How it happened?
Predictive
What will happen?
Prescriptive
What to do?
Excessive (sensitive)
file downloads
Stolen
credentials
Loss of
(sensitive) data
Quarantine
User
109. Citrix Daas ā User Access
3
Users
Devices
User
(Start menĆ¹/Icons on Desktop)
(Workspace Widget)
(Browser Web)
Workspace App
110. Citrix Daas ā User Access
3
Support for:
ā¢ Upload and Download files
ā¢ Copy and Paste
ā¢ Print Documents as local PDF File
ā¢ Full Screen & Multi Monitor
ā¢ Dynamic Adjust Screen Resolution
ā¢ Task Bar for application
ā¢ USB redirection
ā¢ Teams Optimization (Tech Preview)
HTML5
114. 2 sedi
Catania 2013
Roma 2017
24 dipendenti
17 tecnici specialisti
Orientamento
alla formazione
ed eccellenza
Rete di partner
specializzati
Data management a
supporto del tuo business
115. SYSTEMS
Disaster Recovery & Business Continuity
Backup & Archiving
Hyper Converged Infrastructure
Virtualization
DEVELOPMENT & ERP
Enterprise Portal
Business Web Application
ERP Process design & implementation
Fatturazione elettronica
CLOUD COMPUTING
Infrastructure As A Service
Platform As A Service
Software As A Service
Desktop As A Service
SECURITY & COMPLIANCE
Consulenza Privacy in ambito GDPR
Compliance sulla Sicurezza delle Informazioni
Consulenza in ambito Security
Governance
CHI SIAMO
118. SETTORE DI RIFERIMENTO: Finanziario
OBIETTIVI DI PROGETTO
ā¢ Abilitare lo smart working in maniera sicura
ā¢ Semplificazione della gestione client per il reparto IT aziendale
ā¢ Gestione postazioni di lavoro per le sedi periferiche
ā¢ Testare la soluzione prima su postazioni pilota
ā¢ Messa in Produzione in tempi brevi
ā¢ PossibilitĆ di scalabilitĆ on demand
CASE STUDY
119. CITRIX CLOUD HYBRID INFRASTRUCTURE
Tenant
S2S VPN
Citrix Cloud
HDX
Data
Center
Active Directory
customer Other Services
120. ļ¼Interconnessione tra lāambiente cloud ed il centro di servizi bancari
ļ¼Validazione delle performances del sistema
ļ¼Procedura di onboarding ed integrazione con gli applicativi bancari
ļ¼Security Requirements: Gateway navigazione internet On Prem
CRITICITAā E STEP PROGETTUALI
122. ā¢ Procedura di integrazione con gli applicativi aziendali con Esito positivo
ā¢ Performances VDI superiore alle aspettative
ā¢ Procedura di Onboarding ed assegnazione utente semplificata
ā¢ Messa in sicurezza dellāaccesso ai dati aziendali
ā¢ Deploy nuove postazione semplice e veloce
ā¢ Aggiornamento degli applicativi centralizzato
ā¢ ScalabilitĆ della soluzione in un click
ā¢ Tempi di gestione del parco client ridotti per la componente IT del cliente
RISULTATI OTTENUTI
123. GRAZIE PER LāATTENZIONE
Territory Account Manager
Massimo Di Giuseppe
massimo.digiuseppe@next04.it
System Engineer
Angelo Grazioso
Angelo.grazioso@next04.it
125. Il tuo alleato nel lavoro di
tutti i giorni
Le soluzioni per tutte le attivitĆ del
tuo Studio Professionale
Dal 1992, portiamo innovazione negli studi
professionali e nelle imprese.
Sfruttiamo la tecnologia per potenziare le
attivitĆ dei nostri clienti e li
accompagniamo nel cammino verso lo
Studio Digitale
Il gestionale piĆ¹ adatto per le
esigenze della tua Azienda
126. Le nostre
Partnership
Da trentāanni ascoltiamo le esigenze degli Studi e
delle Aziende e poi studiamo, progettiamo e
mettiamo in pratica soluzioni innovative.
Vogliamo essere i migliori partner per i nostri
clienti: per questo lavoriamo con i partner migliori.
127. La famiglia
KURO
KURO ĆØ lāinsieme degli ambienti digitali di
lavoro basati su standard moderni in cui le
tecnologie Microsoft si sposano con il meglio delle
altre tecnologie e con i servizi di supporto 24/7
forniti da Si-Net
KURO 365
Il Digital Workspace moderno
per aziende e professionisti
KURO PORTAL
La suite di gestione documentale
multi-device per tutti
KURO CLOUD
Il tuo gestionale completamente in
Cloud, con standard di sicurezza e
operativitĆ elevatissimi
KURO SIGN
La feature che ti permette di firmare
e conservare i tuoi documenti in
modo semplice, veloce e digitale
KURO BI
Analizza i dati presenti nei tuoi
applicativi Sistemi per trarne
informazioni utili per il tuo Studio
e la tua Azienda
KURO HR
La piattaforma che ti permette di gestire il
personale dal recruiting allāonboarding alla
gestione contrattuale
128. Esigenze
ļ¼ Gestire il software ERP Sistemi ā Esolver e Spring nel cloud
ļ¼ Far utilizzare un software Ā«legacyĀ» in cloud, come se fosse
installato direttamente sul proprio pc
ļ¼ Avere la massima garanzia e sicurezza sullāautenticazione di
accesso
ļ¼ Adottare tecnologie sempre aggiornate, sia Hardware che
Software (Sistemi operativi, Database ā¦)
ļ¼ Abilitare nativamente lo SmartWorking
ļ¼ Integrarlo con servizi verticali e di terze parti (Ecommerce,
Terminali Barcode, Gestione Documentale, BIā¦)
129. Virtual App Users
Accesso Controllo
Servizi Connessi
Risorse
Cloud Connector 1
Cloud Connector 2
Sede Si-Net
HDX Session
Management
Cloud Connector 3
File Server
01
Devices
Sql 01 Sql 02 Sql 03
Ftp Server
Utenti
Utenti Utenti Utenti
Server Citrix
Profiles
File Server
02
File Server
03
Master
Win 10-11 Multisession & MS Office
S2S VPN
Master
Windows Server 2019
Master
Windows Server 2019 & MS Office
Sessione
AADDS
Native Client HTML5
Autenticazione
West Europe
Azure Subscription
Tenant
Azure AD
VPN
GW
OVERVIEW INFRASTRUCTURE
130. Risultati ottenuti
ļ¼ La gestione dellāinfrastruttura avviene quasi esclusivamente
dallāinterfaccia web di Citrix con un dettaglio capillare per
ogni singolo servizio
ļ¼ Il nostro gestionale funziona veloce anche su connessioni
lente e lāaccesso al disco locale ĆØ istantaneo
ļ¼ Con lāutilizzo di Windows 10-11 multisession, abbiamo
potuto beneficiare dei vantaggi di licenza per gli utenti con
sottoscrizione Microsoft 365 Business Premium o superiore
131. Risultati ottenuti
ļ¼ Possiamo creare 1-10-100 macchine con un click, decidere
di accederle e spegnerle in base al carico di lavoro e di
conseguenza anche pagare per quello che utilizziamo
ļ¼ Finalmente siamo riusciti ad approcciare questa tecnologia
che prima era usata quasi esclusivamente sulle aziende
enterprise
ļ¼ Non dobbiamo piĆ¹ preoccuparci di mantenere e gestire
tutta lāinfrastruttura di citrix
ļ¼ Abbiamo ridotto il costo delle risorse usate nel cloud di
Azure
135. Microsoft 365 - Eligible licenses for AVD
3
Product Price List
MS 365 E3 Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB) ,EPQOS 35,40 ā¬
MS 365 E5 Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB) ,EPQOS 53,70 ā¬
MS 365 A3 (Docenti e Amministrativi) Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB),EPQOS 3,2 ā¬
MS 365 A3 (Studenti) Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB),EPQOS 2,45 ā¬
MS 365 A5 (Docenti e Amministrativi) Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB),EPQOS 7,85 ā¬
MS 365 A5 (Studenti) Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 5 TB OneDrive, Exchange Online P2 (100 GB),EPQOS 5,90 ā¬
MS 365 Business Premium Montly Cost AVD Agreement , Office 365 ,SCA, Teams, 1 TB OneDrive, Exchange Online P1 (50 GB),EPQOS 18,90 ā¬
Product Price List
Win 10/11 Enterprise E3 Montly Cost OS Only - End Point Qualified Operating System 7,08 ā¬
Win 10/11 Enterprise E5 Montly Cost OS Only - End Point Qualified Operating System 12,96 ā¬
Win 10/11 Ent A3 (Docenti e Amministrativi) Montly Cost OS Only - End Point Qualified Operating System 1,86 ā¬
Win 10/11 Ent A3 (Studenti) Montly Cost OS Only - End Point Qualified Operating System 1,35 ā¬
Win 10/11 Ent A5 (Docenti e Amministrativi) Montly Cost OS Only - End Point Qualified Operating System 6,2 ā¬
Win 10/11 Ent A3 (Studenti) Montly Cost OS Only - End Point Qualified Operating System 5,60 ā¬
Wind 10/11 E3 VDA Montly Cost OS Only ā Any Device 15,48 ā¬
Windows 10/11
Windows 7 (*) Windows 10/11
MULTISESSION
Windows 10/11
Windows 7 (*) Windows 10/11
MULTISESSION
More Info:
https://m365maps.com/matrix.htm
136. New Citrix Daas Packaging Feature Summary (CSA & CSP)
3
ADVANCED PREMIUM
Key Features
DaaS Advanced
(Multisession Only)
DaaS Advanced Plus
(Multisession+ Desktop)
DaaS Premium
(Multisession+ Desktop)
Workload
Type
License Model CCU* & U/D CCU* & U/D CCU* & U/D
Virtual Apps ā Multisession Workload
Virtual Desktops ā Single Session
Windows 10 Multisession
Server VDI
Remote PC Access
Linux Apps - Multisession Workload
Linux Desktop ā Single Session
Hybrid Cloud Support
Manage
&
Monitoring
Citrix Hypervisor Premium Edition (ex XenServer)
WEM
MCS
PVS Only VHA
APP LAYERING Basic Basic Adv Config
Federated Authentication Service
Monitor with Director
Director Premium (Adv Monitorting) *
Director Logging 1 Month 1 Month 1 Year
Config Logging
Delegated Admin
Value-Add
Skype & Teams Optimization
Session Recording
AutoScale
Gateway Service (1GB x License)
Analyt
Performance Analytics ($45)
Security Analytics ($60)
Secty
App Protection ($50)
Adaptive Auth ($50)
Purchase Rules
Minimum Term 1 Year
Minimum Seats 25
PREMIUM PLUS
DaaS Premium Plus
(Multisession+ Desktop)
CCU* & U/D
Adv Config
1 Year
Multi Type Licensing
Supported **
* CSA Only
** Multi Type Licensing***
https://docs.citrix.com/en-us/citrix-daas/manage-deployment/licenses/multi-type-licensing.html
137. New Citrix Daas Packaging Feature Summary (CSA & CSP)
3
New capabilities and changes to the packages
DaaS Standard
for Azure
Lic Model Per User/Device or Concurrent* PUPY & PUPM*
ConPY & ConPM*
Subscription Type Cloud Only or TTU*
TTU includes Hybrid Rights
Cloud Only
OS and Apps
Type Support
Windows Server, Windows 10/11
MultiSession, Linux MS
ļ¬
Windows 10/11 & Linux VDI ļ¬
Remote PC ļ¬
Cloud Provisioning
Hybrid cloud
provisioning
Azure or
Remote PC
Managed Capacity Azure Managed Capacity
(option to purchase separately)
Add-on
Session Recording Strengthens security ļ¬
Workspace Env.
Management
Strengthens scalability &
performance
ļ¬
Performance Performance Analytics Add-on
Security
(Limited to virtual apps
and desktops)
Adaptive Auth Add-on
Security Analytics Add-on
App Protection Add-on
* CSA Only
139. Azure for Beginners IaaS and PaaS
More Info:
https://www.computergross.it/cgross/mail_grafiche/Education/CorsiCG_Azure_IAAS_new2022.html
https://www.computergross.it/cgross/mail_grafiche/Education/CorsiCG_Azure_PAAS_new2022.html
140. Technical Courses
CXD-252
(5 Days)
3
https://training.citrix.com/public/CWS-215/CWS-215-1I-en-Course-Description-v04.pdf
CWS-215: Citrix Virtual Apps and Desktops 7 Administration On-Premises and in Citrix Cloud
CWS-215
(5 Days)
2
CCA-V CC-VA-CC
InfoEducationLabs: info@educationlabs.it
ā¢ buono da 100 euro per iscrizione a corso az-104
ā¢ buono da 100 euro per iscrizione a corso cws-252 o cws-215
ā¢ buono da 250 euro complessivo per iscrizione a corsi (cws-215 + cws-252)
ā¢ buono da 400 euro complessivo per iscrizione a corsi (az-104 + cws-215 + cws-252)
https://training.citrix.com/public/CXD-252/3I/CXD-252-3I-en-Course-Description-v01.pdf
CWS-252: Moving to the Citrix Virtual Apps and Desktops Service on Citrix Cloud with Microsoft Azure
CC-VA-CC CC-MA-CC
https://learn.microsoft.com/it-it/training/courses/az-104t00
AZ-104T00: Microsoft Azure Administrator
AZ-104
AZ-104
(4 Days)
1