Setting Up for Linux Desktops
Table Of Contents
- Setting Up Horizon 7 for Linux Desktops
- Contents
- Setting Up Horizon 7 for Linux Desktops
- Features and System Requirements
- Preparing a Linux Virtual Machine for Desktop Deployment
- Setting Up Active Directory Integration for Linux Desktops
- Configuration Options for Linux Desktops
- Setting Up Graphics for Linux Desktops
- Installing Horizon Agent and Managing Linux Desktops
- Install Horizon Agent on a Linux Virtual Machine
- Enable Reversible Password Encryption
- Configure the Certificate for Linux Agent
- Create a Desktop Pool That Contains Linux Virtual Machines
- Upgrade Horizon Agent on a Linux Virtual Machine
- Uninstalling and Reinstalling Horizon 7 for Linux Machines
- How to Perform Power Operations on Linux Desktops from vSphere
- Gather Information About Horizon 7 for Linux Software
- Bulk Deployment of Horizon 7 for Linux Desktops
- Overview of Bulk Deployment of Linux Desktops
- Create a Virtual Machine Template for Cloning Linux Desktop Machines
- Input File for the Sample PowerCLI Scripts to Deploy Linux Desktops
- Sample Script to Clone Linux Virtual Machines
- Sample Script to Join Cloned Virtual Machines to AD Domain
- Sample Script to Join Cloned Virtual Machines to AD Domain Using SSH
- Sample Script to Install Horizon Agent on Linux Virtual Machines
- Sample Script to Install Horizon Agent on Linux Virtual Machines Using SSH
- Sample Script to Upload Configuration Files to Linux Virtual Machines
- Sample Script to Upload Configuration Files to Linux Virtual Machines Using SSH
- Sample Script to Upgrade Horizon Agent on Linux Desktop Machines
- Sample Script to Upgrade Horizon Agent on Linux Virtual Machines Using SSH
- Sample Script to Perform Operations on Linux Virtual Machines
- Sample Script to Delete Machines from the Connection Server LDAP Database
- Troubleshooting Linux Desktops
- Collect Diagnostic Information for Horizon 7 for Linux Machine
- Troubleshooting Horizon Agent Registration Failure for a Linux Machine
- Troubleshooting an Unreachable Horizon Agent on a Linux Machine
- Troubleshooting Horizon Agent on a Linux Machine That Is Not Responding
- Troubleshooting Copy and Paste between Remote Desktop and Client Host
- Configuring the Linux Firewall to Allow Incoming TCP Connections
- Index
Table 6‑4. Examples of install_viewagent.sh Parameters
Condition Examples
Broker host and
Broker admin are
from same
domain
n
Digest-MD5.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain.com
-d mydomain.com -u myadmin -p Pa\$ssword
n
Kerberos.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain.com
-d mydomain.com -u myadmin -p Pa\$ssword -k mydomain-host.mydomain.com
Broker host and
Broker admin are
from different
domains
n
MD5-Digest.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain1.com
-d mydomain2.com -u
myadmin@mydomain2.com-p Pa\$ssword
n
Kerberos.
sudo install_viewagent.sh -A yes -n mymachine -b mybroker.mydomain1.com
-B mydomain1.com -K mydomain1-host.mydomain1.com -d mydomain2.com -u myadmin
-p Pa\$ssword -k mydomain2-host.mydomain2.com
Enable Reversible Password Encryption
During installation, Horizon Agent must authenticate itself to View Connection Server as a View
administrator. If the authentication mechanism is DIGEST-MD5, you must first enable the Active Directory
(AD) setting Store password using reversible encryption for the administrator's account.
Procedure
1 On the AD server, open Administrative Tools > Active Directory Users and Computers.
2 Right-click the View administrator's account and select Properties.
3 Select the Account tab.
4 In Account options, select the Store password using reversible encryption setting.
5 Reset the password for the View administrator.
Configure the Certificate for Linux Agent
When you install Linux Agent, the installer generates a self-signed certificate for VMwareBlastServer.
n
When the Blast Security Gateway is disabled on the broker, VMwareBlastServer presents this certificate
to the browser that uses HTML Access to connect to the Linux Desktop.
n
When the Blast Security Gateway is enabled on the broker, Blast Security Gateway's certificate presents
the certificate to the browser.
To comply with industry or security regulations, you can replace the self-signed certificate with a certificate
that is signed by a Certificate Authority (CA).
Procedure
1 Install the private key and the certificate to VMwareBlastServer.
a Rename the private key to rui.key and the certificate to rui.crt .
b Run sudo chmod 550 /etc/vmware/ssl.
c Copy the rui.crt and rui.key to /etc/vmware/ssl.
d Run chmod 440 /etc/vmware/ssl.
Chapter 6 Installing Horizon Agent and Managing Linux Desktops
VMware, Inc. 45










