by Sachin Bhardwaj, CUGC Member
In this blog, I share some information about the deployment of FSLogix policies using Citrix WEM. FSLogix integration is a popular choice today, but most deployments are made using Active Directory Group Policies because it’s the preferred method to import .Admx for creating FSLogix AD GPOs.
However, what if we could find an alternative solution to apply FSLogix policies deployment? Yes is the response – WEM (Workspace Environment management). All of the FSLogix policies (office/profile) should be managed via Citrix WEM as well, thanks to Citrix. I’ll walk you through the procedures for archiving such situations as follows:
This article outlines the various registry settings applicable to FSLogix that includes (App Services, Profile Containers, ODFC Containers, Cloud Cache) Configuration Settings – FSLogix | Microsoft Learn. You can note down those regedit settings applicable for your environment because we are going to create them in WEM group policies.
Lets begin with deployment:
- Login to WEM SaaS portal https://wem.cloud.com or your onprem WEM controller.
- Select your Configuration set and navigate to “Actions” in left pane.
- Under Action we have “Group Policies Settings,” we have to enable this option as soon as FSlogix polices will be ready.
Note: I am following the WEB console because we have the additional option to import all the registries in one go in WEM console.
- Enable Group Policy Settings (if not already enabled)
- Leave Registry-based selection
- Click on Create GPO
- Add Name and description (example below)
- Name: ODFC(Office Data Fslogix Container)
- Description: Configuration set for Office solutions
- Click Add to create a new entry
- Set the Action
- Select Root Key
- Add Subpath
- Add Name (should be the name of key as per)
- Select the Type
- Add Data (0 or 1)
- Select the type of the data (Hexadecimal/Decimal)
- Click Save to add the GPO
- Click Done in the next window
- IncludeOneDrive is added in the list
- Can add all the keys in same way
- We can Move keys up and down from top selection Menu. For this we have to select EDIT and Move whatever key you want to priority.
- Same way we can create Profile Container GPOs as below:
- Once both container created, next step is assignments:
- Select the group policy created, assignment status is “Not assigned” click on Manage assignments.
- Select assignment targets (users and groups) to Everyone. Click Save.
To know how to create custom assignment group follow the below steps:
- Now Go back to Web Console
- Select the Configuration Set.
- Select Assignments
- Select Assignment Targets
- Click Add assignment target
- Select the identity provider
- Active Directory
- Azure Active Directory
- Select Users and/or Security groups
- Add domain
- Search for the users or security group
- Click Add
Now we have to add filters for controlling when to assign actions to users. A filter can comprise multiple conditions.
- Go to back to Web Console again
- Select the Configuration Set
- Select Assignments
- Select Filters
- Click Create filter
- Under Basic Information
- Add a Filter name
- Type in a Description
- Select Enable this filter? – Yes, click Next.
- Click on Add Condition
- Select an Default condition (Always True) or click on Create new
- If you have chosen Create New
- Add a Condition name
Some conditions are user based only so select based on your use case.
- Select if you would like to Enable this condition? – Yes/No
- Dependent on the Condition type you will get additional options
- Click Done next window to add the condition
Once we finish with FSLogix policies creation and settings in WEM, the next step is to bind them to the Machine catalog in Citrix Studio as follows:
- Login to Citrix DaaS and navigate to Machine Catalog that has to apply the Fslogix policies
- Go to Manage Configuration Set – Bind Catalog to WEM (Select a configuration set to which you want to bind this catalog:
- Tag this MC to respective DG for VDI assignment.
Now as the FSLogix polices are assigned to Machine catalog, any session utilizing these Catalogs will get the same set of policies.
- Login to VDI and verify if all Office/Profile container are working as expected.
- Navigate to “C:\Program Files\FSLogix\Apps\frxtray.exe” to verify the VHD status.
- Open regedit -Navigate to profiles folder, all OFC keys are applied, similarly for PFC.
Are you a member of CUGC? Join for free today!