Administration

Table Of Contents
Table 55. Keys for Configuring True SSO on Horizon Agent (Continued)
Key
Min &
Max Description
Number of keys to pre-create
1-100 Number of keys to pre-create on RDS servers that provide remote
desktops and hosted Windows applications. The default is 5.
Minimum validity period required
for a certificate
N/A Minimum validity period, in minutes, required for a certicate
when it is being reused to reconnect a user. The default is 5.
Enrollment Server Configuration Settings
You can use Windows Registry seings on the enrollment server OS to congure which domains to connect
to, various timeout periods, polling periods, and retries, and whether to prefer using the certicate authority
that is installed on the same local server (recommended).
To change the advanced conguration seings, you can open the Windows Registry Editor (regedit.exe) on
the enrollment server machine and navigate to the following registry key:
HKLM\SOFTWARE\VMware, Inc.\VMware VDM\Enrollment Service
Table 56. Registry Keys for Configuring True SSO on the Enrollment Server
Registry Key
Min
&
Max Type Description
ConnectToDomains
N/A REG_MUL
TI_SZ
List of domains the enrollment server aempts to connect
to automatically. For this multi-string registry type, the
DNS fully qualied domain name (FQDN) of each
domain is listed on its own line.
The default is to trust all domains.
ExcludeDomains
N/A REG_MUL
TI_SZ
List of domains the enrollment server does not connect to
automatically. If the connection server provides a
conguration set with any of the domains, the enrollment
server will aempt to connect to that domain or domains.
For this multi-string registry type, the DNS FQDN of each
domain is listed on its own line.
The default is to exclude no domains.
ConnectToDomainsInForest
N/A REG_SZ Species whether to connect to and use all domains in the
forest that the enrollment server is a member of. The
default is TRUE.
Use one of the following values:
n
0 means false; do not connect to the domains of the
forest being used.
n
!=0 means true.
ConnectToTrustingDomains
N/A REG_SZ Species whether to connect to explicitly
trusting/incoming domains. The default is TRUE.
Use one of the following values:
n
0 means false; do not connect to explicitly
trusting/incoming domains.
n
!=0 means true.
View Administration
84 VMware, Inc.