Installation and Setup Guide

Table Of Contents
n
If you plan to use embedded RSA SecurID software, verify that you have the correct CT-KIP URL and
activation code. See “Using Embedded RSA SecurID Software Tokens,” on page 21.
n
Congure the certicate checking mode for the SSL certicate presented by the server. See “Seing the
Certicate Checking Mode in Horizon Client,” on page 33.
n
If you plan to use ngerprint authentication, verify that the Fingerprint Authentication option is
enabled and at least one ngerprint is enrolled on the Android device. For complete ngerprint
authentication requirements, see “Fingerprint Authentication Requirements,” on page 11.
Procedure
1 If a VPN connection is required, turn on the VPN.
2 On the Android device, tap the Horizon app icon.
3 Connect to a server.
Option Action
Connect to a new server
Enter the name of a server, enter a description (optional), and tap Connect.
Connect to an existing server
Tap the server shortcut on the Servers tab.
Connections between Horizon Client and servers always use SSL. The default port for SSL connections
is 443. If the server is not congured to use the default port, use the format shown in this example:
view.company.com:1443.
4 If a smart card is required or optional, select the smart card certicate to use and enter your PIN.
If your smart card has only one certicate, that certicate is already selected. If there are many
certicates, you can scroll through the certicates.
5 If you are prompted for RSA SecurID credentials or RADIUS authentication credentials, either type
your credentials or, if you plan to use an embedded RSA SecurID token, install an embedded token.
Option Action
Existing token
If you use a hardware authentication token or software authentication
token on a smart phone, enter your user name and passcode. The passcode
might include both a PIN and the generated number on the token.
Install software token
Tap External Token. In the Install Software Token dialog box, paste the CT-
KIP URL or CTFString URL that your administrator sent to you in email. If
the URL contains an activation code, you do not need to enter anything in
the Password or Activation Code text box.
6 If you are prompted a second time for RSA SecurID credentials or RADIUS authentication credentials,
enter the next generated number on the token.
Do not enter your PIN, and do not enter the same generated number that you entered before. If
necessary, wait until a new number is generated.
If this step is required, it is required only when you mistype the rst passcode or when conguration
seings in the RSA server change.
7 If you are prompted for a user name and password, supply your Active Directory credentials.
a Type the user name and password of a user who is entitled to use at least one desktop or
application pool.
b Select a domain.
If the Domain drop-down menu is hidden, type the user name as username@domain or
domain\username.
Chapter 3 Managing Remote Desktop and Application Connections
VMware, Inc. 35