Specifications

Table Of Contents
VMware, Inc. 111
Chapter 5 Client Management
Verifying the Smart Card Authentication Configuration
Afteryousetupsmartcardauthenticationforthefirsttime,orwhensmartcard
authenticationisnotworkingcorrectly,youshouldverifyyourconfiguration.
To verify configuration of smart card authentication
VerifythateachclientsystemhasViewClient,smartcardmiddleware,asmart
cardwithavalidcertificate,andasmartcardreader.
Seethedocumentationprovidedbyyoursmartcardvendorforinformationon
configuringsmartcardsoftwareandhardware.
Oneachclientsystem,selectStart>Settings>ControlPanel>InternetOptions>
Content>Certificates>Personaltoverifythatcertificatesareavailableforsmart
cardauthentication.
Whenauserinsertsasmartcardintothesmartcardreader,Windowscopies
certificatesfromthesmartcardtothe
userscomputersothatViewClientcanuse
them.
Inthelocked.propertiesfileontheViewConnectionServerorsecurityserver
host,verifythattheuseCertAuthpropertyissettotrueandisspelledcorrectly.
Thelocked.propertiesfileislocatedinthisfolder:
<Install_Directory>\VMware\VMwareView\Server\sslgateway\conf
IfyouconfiguredsmartcardauthenticationonaViewConnectionServerinstance,
checkthesmartcardauthenticationsettinginViewAdministrator.
aUnderViewServers,selecttheViewConnectionServerinstanceandclick
Edit.
bVerifythatSmartcardauthenticationissettoeitherOptionalorRequired.
YoumustrestarttheViewConnection
Serverserviceforchangestosmartcard
settingstotakeeffect.
Ifthedomainasmartcarduserresidesinisdifferentthanthedomainyourroot
certificatewasissuedfrom,verifythattheusersuserprincipalname(UPN)isset
tothesubjectalternativename(SAN)containedintherootcertificate ofthetrusted
CertificateAuthority(CA).
aOnyourActiveDirectory
server,selectStart>AdministrativeTools>Active
DirectoryUsersandComputers.
bRightclicktheuserintheUsersfolderandselectProperties.
TheUPNappearsintheUserlogonnamefieldsontheAccounttab.