
If I check the box for tunnel connections on the brokers, I can get in, but, I won't be able to do USB pass through. I'm testing by bypassing the GTM and going directly to the external LTM. We have all 3 boxes unchecked on the isolated connection brokers.įrom the outside when I try to get in, I get that a tunnel connection could not be established and to try again.For Tunnel Eternal URL we're using the UAG LTM FQDN:8443.For Blast External URL we're using the UAG LTM FQDN:8443.For the PCOIP External URL field we're using the IP of the UAG LTM.Again these LTMs are in front of 2 connection brokers isolated for external access. So the DC1 UAGs are pointed at DC1BrokerLTM, DC2 UAGs are pointed at DC2BrokerLTM. This way we are not doing any 1 to 1 mapping. Inside that LTM, we have 2 brokers designated for external access. The UAGs are each configured to point at an internal LTM for their Connection Server URL.Under each of those LTMs, are 2 UAG servers.

Externally when you hit the GTM, you are handed off to an LTM in either DC1 or DC2. Right now we're focused on externals, so, we'll stick to that. We have all users pointed to a GTM which is split DNS.Let me go over our architecture a bit, see how maybe we're differentiating.
