スキル一覧に戻る
dray86

citrix-infrastructure-design

by dray86

Comprehensive Claude Code development environment with 23 specialized AI agents, MCP integrations, and development tools

0🍴 0📅 2025年11月24日
GitHubで見るManusで実行

SKILL.md


name: citrix-infrastructure-design description: Citrix infrastructure architecture and capacity planning. Use when designing Citrix environments, planning capacity, sizing components, configuring high availability, designing multi-site deployments, or planning disaster recovery. Covers architecture patterns, component sizing, redundancy design, and best practices.

Citrix Infrastructure Design

Overview

This skill provides guidance for designing and architecting Citrix infrastructure, including component sizing, high availability patterns, multi-site deployments, and disaster recovery planning.

Architecture Patterns

Single-Site Architecture

Components:

  • 2+ Delivery Controllers (N+1 redundancy)
  • SQL Server (AlwaysOn or mirroring)
  • StoreFront server group (2-5 servers)
  • NetScaler ADC HA pair
  • Hypervisor cluster

Use Cases:

  • Small to medium deployments
  • Single geographic location
  • Simpler management requirements

Multi-Site Architecture

Components per site:

  • Local Delivery Controllers
  • Local StoreFront servers
  • Local database replica
  • Zone configuration in single site

Cross-site components:

  • GSLB for user routing
  • Database replication
  • Image management strategy

Use Cases:

  • Geographic distribution
  • DR requirements
  • Regional performance needs

Citrix Cloud Hybrid

Citrix Cloud (managed):

  • Delivery Controllers
  • Site database
  • Studio/Director
  • Licensing
  • Gateway Service

Customer managed:

  • Cloud Connectors (2+ per location)
  • VDAs and applications
  • Hypervisor/cloud infrastructure
  • Active Directory

Benefits:

  • Reduced infrastructure
  • Automatic updates
  • Built-in redundancy

Component Sizing

Delivery Controllers

VDAsControllersvCPUMemoryNotes
<500248 GBMinimum HA
500-2500248 GBStandard
2500-50003816 GBMedium
5000-100004816 GBLarge
10000+5+816 GBEnterprise

Placement:

  • Anti-affinity rules across hosts
  • Different failure domains
  • Separate from other workloads

SQL Database

VDAsSQL TierIOPSNotes
<1000Standard500SQL Express possible
1000-3000Standard1000Dedicated SQL
3000-5000Enterprise2000AlwaysOn
5000+Enterprise3000+AlwaysOn AG

Database sizing:

  • Site DB: 500 MB - 2 GB
  • Logging DB: Grows based on retention
  • Monitoring DB: Grows based on retention

VDA Sizing

Single-Session (VDI):

WorkloadvCPUMemoryStorage IOPS
Task Worker24 GB20-30
Knowledge Worker2-46-8 GB40-60
Power User4-68-16 GB80-100

Multi-Session (RDSH):

Users/ServervCPUMemoryStorage IOPS
10-15832 GB100-150
15-251248 GB150-200
25-401664 GB200-300

Storage Considerations

MCS Requirements:

  • Identity disk: 16 MB per VM (fixed)
  • Difference disk: 10-40 GB (grows with writes)
  • Write cache: 10-20 GB SSD/NVMe recommended

IOPS Guidelines:

  • Boot storm: 50-100 IOPS per VM (brief)
  • Steady state: 5-30 IOPS per VM
  • Use MCS I/O with RAM cache to reduce storage load

High Availability Design

Controller Redundancy

# Local Host Cache provides outage protection
# Minimum 2 controllers per site
# Controllers share site database
# Automatic failover to LHC during outage

LHC Capabilities:

  • VDA registration
  • Session brokering
  • Power management
  • Some policy application

LHC Limitations:

  • No new configurations
  • No monitoring data
  • Limited reporting

Database HA

SQL AlwaysOn Availability Groups (Recommended):

  • Synchronous replication within site
  • Automatic failover
  • Multiple readable secondaries

SQL Mirroring:

  • Simpler setup
  • Single secondary
  • Manual or automatic failover

Connection String:

Server=SQLListener.domain.com;Database=CitrixSite;
MultiSubnetFailover=True;Integrated Security=True

StoreFront HA

  • Server group with 2-5 members
  • Sub-40ms latency required
  • Configuration auto-synchronized
  • Load balanced via NetScaler or NLB

NetScaler HA

  • Active/Passive or Active/Active
  • Synchronous configuration
  • Virtual MAC for seamless failover
  • Health monitoring for backend services

Network Design

VLAN Segmentation

VLANPurposeAccess
ManagementControllers, SQL, AdminRestricted
VDADesktop/App serversUser access
DMZGateway, StoreFront externalInternet
StorageSAN/NAS trafficInfrastructure

Firewall Requirements

User to StoreFront:

  • 443/TCP (HTTPS)

StoreFront to Controller:

  • 80/TCP (HTTP)
  • 443/TCP (HTTPS)

User to VDA (internal):

  • 1494/TCP (ICA)
  • 2598/TCP (Session Reliability)
  • 443/TCP (TLS)

VDA to Controller:

  • 80/TCP (Registration)
  • 443/TCP (Secure registration)

Bandwidth Planning

Session TypeBandwidth
Task worker50-150 Kbps
Office apps150-250 Kbps
Web/email250-500 Kbps
Graphics1-3 Mbps
Video2-5 Mbps

Disaster Recovery

RTO/RPO Objectives

TierRTORPOStrategy
1<1 hrNear-zeroActive/Active
21-4 hr<1 hrWarm standby
34-24 hr<4 hrCold standby

Active/Active Design

  • Controllers at both sites
  • GSLB routes users to nearest site
  • Real-time database replication
  • Both sites handle production load
  • Automatic failover

Active/Passive Design

  • Secondary site in standby
  • Asynchronous replication acceptable
  • Manual or automated failover
  • Lower cost than active/active
  • Longer RTO

DR Considerations

Non-persistent VDI advantages:

  • No VM replication needed
  • Rapid provisioning at DR site
  • Only master images replicated
  • Lower storage costs

Key data to replicate:

  • Site database
  • Master images
  • User profiles (if persistent)
  • Application data

Design Best Practices

Scalability

  1. Design for growth - Size for 3-5 year projection
  2. Use zones - Separate workloads by zone
  3. Catalog organization - Group by OS, workload, location
  4. Delivery group strategy - Align with user groups

Performance

  1. MCS I/O - Use RAM cache with disk overflow
  2. Storage tiering - SSD for write cache, HDD for read
  3. Network optimization - EDT, Multi-Stream ICA
  4. Profile optimization - Streaming, exclusions

Security

  1. Segmentation - Isolate management plane
  2. Encryption - TLS for all communications
  3. MFA - Required for external access
  4. Least privilege - RBAC for administration

Operations

  1. Monitoring - Director, SCOM, third-party
  2. Alerting - Proactive threshold alerts
  3. Automation - PowerShell for routine tasks
  4. Documentation - Architecture, runbooks, DR

Reference Materials

For detailed design guidance, see:

  • citrix-knowledge/domain-knowledge/comprehensive-citrix-knowledge.md
  • citrix-knowledge/architecture/ for design patterns
  • citrix-knowledge/templates/ for documentation templates

スコア

総合スコア

50/100

リポジトリの品質指標に基づく評価

SKILL.md

SKILL.mdファイルが含まれている

+20
LICENSE

ライセンスが設定されている

0/10
説明文

100文字以上の説明がある

+10
人気

GitHub Stars 100以上

0/15
最近の活動

3ヶ月以内に更新がある

0/10
フォーク

10回以上フォークされている

0/5
Issue管理

オープンIssueが50未満

+5
言語

プログラミング言語が設定されている

+5
タグ

1つ以上のタグが設定されている

0/5

レビュー

💬

レビュー機能は近日公開予定です