Administration

Table Of Contents
n Unauthenticated access is not supported with a security server or an Unified Access Gateway
appliance.
n User preferences are not preserved for unauthenticated users.
n Virtual desktops are not supported for unauthenticated users.
n Horizon Administrator displays a red status for the Connection Server, if the Connection Server
is configured with a CA signed certificate and enabled for unauthenticated access but a default
unauthenticated user is not configured.
n The unauthenticated access feature does not work if the AllowSingleSignon group
policy setting for Horizon Agent installed on an RDS host is disabled. Administrators
can also control whether to disable or enable unauthenticated access with the
UnAuthenticatedAccessEnabled Horizon Agent group policy setting. The Horizon Agent
group policy settings are included in the vdm_agent.admx template file. You must reboot the
RDS host for this policy to take effect.
Create Users for Unauthenticated Access
Administrators can create users for unauthenticated access to published applications. After an
administrator configures a user for unauthenticated access, the user can log in to the Connection
Server instance from Horizon Client only with unauthenticated access.
Prerequisites
n Verify that the Active Directory (AD) user for whom you want to configure unauthenticated
access for has a valid UPN. Only an AD user can be configured as an unauthenticated access
user.
Note Administrators can create only one user for each AD account. Administrators cannot create
unauthenticated user groups. If you create an unauthenticated access user and there is an existing
client session for that AD user, you must restart the client session to make the changes take effect.
Procedure
1 In Horizon Administrator, select Users and Groups.
2 On the Unauthenticated Access tab, click Add.
3 In the Add Unauthenticated User wizard, select one or more search criteria and click Find to
find users based on your search criteria.
The user must have a valid UPN.
4 Select a user and click Next.
Repeat this step to add multiple users.
5 (Optional) Enter the user alias.
The default user alias is the user name that was configured for the AD account. End users can
use the user alias to log in to the Connection Server instance from Horizon Client.
Horizon 7 Administration
VMware, Inc. 85