Configuring Remote Desktop Features

Table Of Contents
Table 511. PCoIP General Policy Settings (Continued)
Setting Description
Configure PCoIP session encryption
algorithms
Controls the encryption algorithms advertised by the PCoIP endpoint during
session negotiation.
Checking one of the check boxes disables the associated encryption
algorithm. You must enable at least one algorithm.
This setting applies to both agent and client. The endpoints negotiate the
actual session encryption algorithm that is used. If FIPS140-2 approved mode
is enabled, the Disable AES-128-GCM encryption value is always overridden
so that AES-128-GCM encryption is enabled.
Supported encryption algorithms, in order of preference, are SALSA20/12-256,
AES-GCM-128, and AES-GCM-256. By default, all supported encryption
algorithms are available for negotiation by this endpoint.
If both endpoints are configured to support all three algorithms and the
connection does not use a Security Gateway (SG), the SALSA20 algorithm will
be negotiated and used. However, if the connection uses an SG, SALSA20 is
automatically disabled and AES128 will be negotiated and used. If either
endpoint or the SG disables SALSA20 and either endpoint disables AES128,
then AES256 will be negotiated and used.
Configuring Remote Desktop Features in Horizon 7
VMware, Inc. 143