Administration

Table Of Contents
7 Select Enable Hybrid Logon.
The Enable True SSO option is selected by default. You must have True SSO enabled for the
Horizon 7 environment. Then, unauthenticated access users enabled for hybrid logon use True
SSO to log in to the Connection Server instance from Horizon Client.
Note If the Connection Server pod is not configured for True SSO, then the user can start
an entitled application with unauthenticated access. However, the user does not have network
access because True SSO is not enabled on the pod.
8 (Optional) To enable the user to log in to the Connection Server instance from Horizon Client,
select Enable Password Logon and enter the user's password.
Use this setting if you do not have True SSO configured for the Horizon 7 environment.
In a CPA environment, the hybrid logon user feature only works on the Connection Server pod
on which the hybrid logon user was configured with the Enable Password Logon setting and
entitled to published applications.
For example, in a CPA environment with Pod A and Pod B, with the hybrid logon user
configured with the
Enable Password Logon setting is entitled to an application on Pod A.
The user can view and start the application from a client that connects to either Pod A or
Pod B. However, if another application is entitled to the same user on Pod B then, the user
cannot view and start the application from a client that connects to Pod B. For the hybrid
logon feature to work on Pod B, you must create another hybrid logon user configured with
the Enable Password Logon setting and entitle applications to that user. For more information
on how to set up a CPA environment, see the
Administering Cloud Pod Architecture in Horizon
7
document.
9 Click Finish.
What to do next
Entitle the user to published applications. See, Entitle Unauthenticated Access Users to Published
Applications.
Using the Log In as Current User Feature Available with
Windows-Based Horizon Client
With Horizon Client for Windows, when users select Log in as current user in the Options menu,
the credentials that they provided when logging in to the client system are used to authenticate
to the Horizon Connection Server instance and to the remote desktop using Kerberos. No further
user authentication is required.
Horizon 7 Administration
VMware, Inc. 91