Transitioning from an on-premises Citrix Virtual Apps and Desktops site to Citrix DaaS reduces control plane management complexity. This guide covers a tested migration path from architectural planning to user transition.
Phase 1: Cloud Connector Deployment
The Cloud Connector acts as the secure communication bridge between Citrix Cloud control services and your local resource zones. Install a minimum of two Cloud Connectors in each Active Directory domain to ensure high availability. The connector communicates outbound over HTTPS (port 443), eliminating the need for inbound firewall holes.
Phase 2: StoreFront to Workspace Configuration
While Citrix Workspace service hosts the user connection interface natively, legacy Citrix StoreFront deployments can be integrated to maintain custom landing structures. In both cases, configuring Multi-Factor Authentication (MFA) via Microsoft Entra ID provides robust policy gating.
Phase 3: Active VDA Migration
Re-point your Virtual Delivery Agents (VDAs) to register with the new Cloud Connectors. This can be handled by modifying the registry during image updates, or using Active Directory Group Policy Objects (GPOs) to apply updated list configurations dynamically.