Administration

Table Of Contents
Modify View Connection Server Configuration Properties
To enable smart card authentication, you must modify View Connection Server conguration properties on
your View Connection Server or security server host.
Prerequisites
Add the CA (certicate authority) certicates for all trusted user certicates to a server truststore le. These
certicates include root certicates and can include intermediate certicates if the user's smart card
certicate was issued by an intermediate certicate authority.
Procedure
1 Create or edit the locked.properties le in SSL gateway conguration folder on the View Connection
Server or security server host.
For example: install_directory\VMware\VMware View\Server\sslgateway\conf\locked.properties
2 Add the trustKeyfile, trustStoretype, and useCertAuth properties to the locked.properties le.
a Set trustKeyfile to the name of your truststore le.
b Set trustStoretype to jks.
c Set useCertAuth to true to enable certicate authentication.
3 Restart the View Connection Server service or security server service to make your changes take eect.
Example: locked.properties File
The le shown species that the root certicate for all trusted users is located in the le lonqa.key, sets the
trust store type to jks, and enables certicate authentication.
trustKeyfile=lonqa.key
trustStoretype=jks
useCertAuth=true
What to do next
If you congured smart card authentication for a View Connection Server instance, congure smart card
authentication seings in View Administrator. You do not need to congure smart card authentication
seings for a security server. Seings that are congured on a View Connection Server instance are also
applied to a paired security server.
Configure Smart Card Settings in View Administrator
You can use View Administrator to specify seings to accommodate dierent smart card authentication
scenarios.
When you congure these seings on a View Connection Server instance, the seings are also applied to
paired security servers.
Prerequisites
n
Modify View Connection Server conguration properties on your View Connection Server host.
n
Verify that Horizon clients make HTTPS connections directly to your View Connection Server or
security server host. Smart card authentication is not supported if you o-load SSL to an intermediate
device.
Procedure
1 In View Administrator, select View  > Servers.
Chapter 3 Setting Up Smart Card Authentication
VMware, Inc. 47