Setting Up for Linux Desktops

Table Of Contents
Table 64. Examples of install_viewagent.sh Parameters
Condition Examples
Broker host and
Broker admin are
from same
domain
n
Digest-MD5.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain.com
-d mydomain.com -u myadmin -p Pa\$ssword
n
Kerberos.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain.com
-d mydomain.com -u myadmin -p Pa\$ssword -k mydomain-host.mydomain.com
Broker host and
Broker admin are
from different
domains
n
MD5-Digest.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain1.com
-d mydomain2.com -u
myadmin@mydomain2.com-p Pa\$ssword
n
Kerberos.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain1.com
-B mydomain1.com -K mydomain1-host.mydomain1.com -d mydomain2.com -u myadmin
-p Pa\$ssword -k mydomain2-host.mydomain2.com
Enable Reversible Password Encryption
During installation, Horizon Agent must authenticate itself to View Connection Server as a View
administrator. If the authentication mechanism is DIGEST-MD5, you must first enable the Active Directory
(AD) setting Store password using reversible encryption for the administrator's account.
Procedure
1 On the AD server, open Administrative Tools > Active Directory Users and Computers.
2 Right-click the View administrator's account and select Properties.
3 Select the Account tab.
4 In Account options, select the Store password using reversible encryption setting.
5 Reset the password for the View administrator.
Configure the Certificate for Linux Agent
When you install Linux Agent, the installer generates a self-signed certificate for VMwareBlastServer.
n
When the Blast Security Gateway is disabled on the broker, VMwareBlastServer presents this certificate
to the browser that uses HTML Access to connect to the Linux Desktop.
n
When the Blast Security Gateway is enabled on the broker, Blast Security Gateway's certificate presents
the certificate to the browser.
To comply with industry or security regulations, you can replace the self-signed certificate with a certificate
that is signed by a Certificate Authority (CA).
Procedure
1 Install the private key and the certificate to VMwareBlastServer.
a Rename the private key to rui.key and the certificate to rui.crt .
b Run sudo chmod 550 /etc/vmware/ssl.
c Copy the rui.crt and rui.key to /etc/vmware/ssl.
d Run chmod 440 /etc/vmware/ssl.
Chapter 6 Installing Horizon Agent and Managing Linux Desktops
VMware, Inc. 45