Configure client proxy settings

Use this policy to configure the primary network proxies that the client can use when connecting to a remote application or desktop.

When this policy is not configured, the client will use its own settings to decide whether to connect through a proxy server.

When this policy is enabled, the client will use the proxy configured based on the proxy type selected:

Proxy type: None

When "None" is selected, the client will attempt to connect to the server directly without traversing a proxy server.

Proxy type: Auto

When "Auto" is selected, the client will use the local machine settings to determine which proxy server to use for a connection. This is usually the settings used by the Web browser installed on the machine.

Proxy type: Script

When "Script" is selected, the client will retrieve a JavaScript based ".pac" file from the URL specified in the "Proxy script URLs" policy option. The ".pac" file is executed to identify which proxy server should be used for the connection.

Proxy type: Secure

When "Secure" is selected, the client will contact the proxy identified by the "Proxy host names" and "Proxy ports" settings. The negotiation protocol will use a "HTTP CONNECT" header request specifying the desired destination address. This proxy protocol is commonly used for HTTP based traffic, and supports GSSAPI proxy authentication.

Proxy Type: SOCKS/SOCKS V4/SOCKS V5

When a "SOCKS" proxy is selected, the client will perform a SOCKS V4 or SOCKS V5 handshake to the proxy identified by the "Proxy hostnames" and "Proxy ports" settings. The "SOCKS" option will detect and use the correct version of Socks.


For any proxy type, you can provide a list of servers that do not traverse the proxy. These should be placed in the "Bypass server list".


Troubleshooting:
Some client platforms do not support the "Auto" proxy type due to operating system limitations. See the appropriate Administrator's Guide for details. For these platforms, the proxy settings should be manually set on the client device.

When configuring the Web Interface server, an appropriate proxy server can be indicated for the particular location of the client. When configuring proxies via Group Policy, it is important to avoid overriding these settings. Where multiple proxies can be chosen, simply use a comma-separated list of options with the first being the default.

Most Intranet client deployments should use the "None" option for the proxy type, otherwise the client may attempt to connect over the Internet. For more advanced deployments the "Bypass server list" option can be used, alternatively ".pac" scripts or Trusted Server Configuration are available to suit the network topology.

Some proxy servers will automatically disconnect connections that are idle for a certain length of time. This can cause client sessions to be disconnected when not in use. A server-side option "ICA Keep-Alive" is available to send extra data packets during periods of inactivity that can be used prevent proxies closing connections.

Supported on: ADMX Migrator encountered a policy that does not have a supportedOn value.
Proxy host names

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Citrix\ICA Client\Engine\Lockdown Profiles\All Regions\Lockdown\Network\Proxy
Value NameProxyHost
Value TypeREG_SZ
Default Value
Proxy ports

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Citrix\ICA Client\Engine\Lockdown Profiles\All Regions\Lockdown\Network\Proxy
Value NameProxyPort
Value TypeREG_SZ
Default Value
Proxy script URLs

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Citrix\ICA Client\Engine\Lockdown Profiles\All Regions\Lockdown\Network\Proxy
Value NameProxyAutoConfigUrl
Value TypeREG_SZ
Default Value
Bypass server list

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Citrix\ICA Client\Engine\Lockdown Profiles\All Regions\Lockdown\Network\Proxy
Value NameProxyBypassList
Value TypeREG_SZ
Default Value

receiver.admx

Administrative Templates (Computers)