7.0

Table Of Contents
Preparing Active Directory 5
View uses your existing Microsoft Active Directory infrastructure for user authentication and management.
You must perform certain tasks to prepare Active Directory for use with View.
View supports the following Active Directory Domain Services (AD DS) domain functional levels:
n
Windows Server 2003
n
Windows Server 2008
n
Windows Server 2008 R2
n
Windows Server 2012
n
Windows Server 2012 R2
This chapter includes the following topics:
n
“Configuring Domains and Trust Relationships,” on page 29
n
“Creating an OU for Remote Desktops,” on page 31
n
“Creating OUs and Groups for Kiosk Mode Client Accounts,” on page 31
n
“Creating Groups for Users,” on page 31
n
“Creating a User Account for vCenter Server,” on page 31
n
“Creating a User Account for a Standalone View Composer Server,” on page 32
n
“Create a User Account for View Composer AD Operations,” on page 32
n
“Create a User Account for Instant Clone Operations,” on page 33
n
“Configure the Restricted Groups Policy,” on page 33
n
“Using View Group Policy Administrative Template Files,” on page 34
n
“Prepare Active Directory for Smart Card Authentication,” on page 34
n
“Disable Weak Ciphers in SSL/TLS,” on page 37
Configuring Domains and Trust Relationships
You must join each View Connection Server host to an Active Directory domain. The host must not be a
domain controller.
Active Directory also manages the Horizon Agent machines, including single-user machines and RDS hosts,
and the users and groups in your Horizon 7 deployment. You can entitle users and groups to remote
desktops and applications, and you can select users and groups to be administrators in View Administrator.
VMware, Inc.
29