User manual
Table Of Contents
Connecting to Remote Desktops and
Applications 2
You can use Horizon Client to connect to remote desktops and applications.
This chapter includes the following topics:
n
“Seing the Certicate Checking Mode in Horizon Client,” on page 9
n
“Connect to a Remote Desktop or Application,” on page 10
n
“Use Unauthenticated Access to Connect to Remote Applications,” on page 11
n
“Disconnecting From a Remote Desktop or Application,” on page 12
n
“Log O From a Remote Desktop,” on page 12
Setting the Certificate Checking Mode in Horizon Client
You can determine whether client connections are rejected if any or some server certicate checks fail by
conguring a seing in Horizon Client.
Certicate checking occurs for SSL connections between the server and Horizon Client. Certicate
verication includes the following checks:
n
Is the certicate intended for a purpose other than verifying the identity of the sender and encrypting
server communications? That is, is it the correct type of certicate?
n
Has the certicate expired, or is it valid only in the future? That is, is the certicate valid according to
the computer clock?
n
Does the common name on the certicate match the host name of the server that sends it? A mismatch
can occur if a load balancer redirects Horizon Client to a server that has a certicate that does not match
the host name entered in Horizon Client. Another reason a mismatch can occur is if you enter an IP
address rather than a host name in the client.
n
Is the certicate signed by an unknown or untrusted certicate authority (CA)? Self-signed certicates
are one type of untrusted CA.
To pass this check, the certicate's chain of trust must be rooted in the device's local certicate store.
To set the certicate checking mode, start Horizon Client and tap the (gear) icon in the upper-right
corner of the Horizon Client window, tap Security options, and tap Security mode. You have three choices:
n
Never connect to untrusted servers. If any of the certicate checks fails, the client cannot connect to the
server. An error message lists the checks that failed.
n
Warn before connecting to untrusted servers. If a certicate check fails because the server uses a self-
signed certicate, you can click Continue to ignore the warning. For self-signed certicates, the
certicate name is not required to match the server name you entered in Horizon Client.
VMware, Inc.
9