Citrix ADC / NetScaler
Citrixnetwork4 credentials1 default credential
Default nsroot Credential
citrix-adc / default-nsroot
Citrix ADC/NetScaler appliances document the nsroot local administrator used for initial management access. The default password must be changed during setup.
Default credentials
nsroot:nsrootLocation
Citrix ADC GUI, SSH/CLI, NITRO API, and consolens.conflocal system user configuration and exported appliance config
tech support bundles, appliance backups, and config exports
ns.conf, nsconfig.tgz, support.tgzCitrix ADC configuration exports and support bundles
Local System User Password
citrix-adc / local-system-user-password
ADC local system users authenticate to the management GUI, CLI, and NITRO API with command policies and partitions controlling access.
Looks like
pattern^add system user \S+ Location
/nsconfig/ns.confCitrix ADC running/saved configuration
management GUI, SSH/CLI, NITRO APIpassword managers and automation vaults
ns.log, audit logs, and NITRO traces
ns.conf, nsconfig.tgz, support.tgzCitrix ADC configuration exports and support bundles
NITRO API Session Token
citrix-adc / nitro-session-token
Citrix ADC NITRO API login returns a session cookie/token used for subsequent API operations.
Location
CookieNITRO_AUTH_TOKEN or session cookie used by NITRO API clients
Set-CookieNITRO login response setting the API session cookie
nitro-session.json, nitro-cookie.txtAutomation-client caches for NITRO session cookies/tokens; session values are more commonly in headers/logs than product config
HTTP traces and NITRO debug logs
X-NITRO-USER, X-NITRO-PASSNITRO API login credential headers used by some clients
SSL VPN, AAA, SNMP, and LDAP/RADIUS Secrets
citrix-adc / ssl-vpn-aaa-secrets
ADC configurations contain SSL private keys, VPN/AAA integration credentials, LDAP bind passwords, RADIUS/TACACS+ shared secrets, SNMP communities, and monitor credentials.
Looks like
pattern-----BEGIN (RSA |EC |OPENSSH |ENCRYPTED )?PRIVATE KEY-----Location
/nsconfig/ns.conf/nsconfig/ns.conf, /nsconfig/ssl/, AAA actions, auth policies, monitor definitions, and VPN config
appliance backups, HSM/certificate stores, and password vaults
NITRO automation, Terraform, and ADC config-as-code repositories
AAA debug logs, ns.log, and packet/HTTP traces
ns.conf, nsconfig.tgz, support.tgzCitrix ADC configuration exports and support bundles
Scope
Authorized use
LOLCreds helps map the credential surface of real products: known defaults, generated values, credential locations, and exposure patterns.