Local group policies and VDA communication
Sometimes, in a more secure environment where local group policies are enforced to disallow network access, the VDA registration can fail.
Event ID 1208 and Event ID 1123 would be seen on the application logs of the virtual desktop. The event detail gives the following errors:
Ping request was rejected by the Citrix Desktop Delivery Controller Service. It may be unable to contact this machine. Check that there is not a firewall blocking connection.
Failed to apply settings on the Virtual Desktop Agent on machine <SID – Reference Number>. Reason: The caller was not authenticated by the service.
To resolve this issue, we need to grant a logon right on the Access this computer from the network to the Controllers Security Group setting. The Controller security group is created when the first Delivery Controller is installed and added to the Active Directory organizational unit.
You can also grant logon rights by completing one of the following...