6.2

Table 15. Security-Related Settings in the View Agent Configuration Template (Continued)
Setting Description
CommandsToRunOnConnect
Specifies a list of commands or command scripts to be run when a session is
connected for the first time.
No list is specified by default.
The equivalent Windows Registry value is CommandsToRunOnConnect.
CommandsToRunOnReconnect
Specifies a list of commands or command scripts to be run when a session is
reconnected after a disconnect.
No list is specified by default.
The equivalent Windows Registry value is CommandsToRunOnReconnect.
CommandsToRunOnDisconnect
Specifies a list of commands or command scripts to be run when a session is
disconnected.
No list is specified by default.
The equivalent Windows Registry value is CommandsToRunOnDisconnect.
ConnectionTicketTimeout
Specifies the amount of time in seconds that the View connection ticket is valid.
If this setting is not configured, the default timeout period is 120 seconds.
The equivalent Windows Registry value is VdmConnectionTicketTimeout.
CredentialFilterExceptions
Specifies the executable files that are not allowed to load the agent
CredentialFilter. Filenames must not include a path or suffix. Use a semicolon to
separate multiple filenames.
No list is specified by default.
The equivalent Windows Registry value is CredentialFilterExceptions.
For more information about these settings and their security implications, see the View Administration
document.
Security Settings in the Horizon Client Configuration Template
Security-related settings are provided in the ADM template file for Horizon Client (vdm_client.adm). Except
where noted, the settings include only a Computer Configuration setting. If a User Configuration setting is
available and you define a value for it, it overrides the equivalent Computer Configuration setting.
Security Settings are stored in the registry on the host machine under one of the following paths:
n
For 32-bit Windows: HKEY_LOCAL_MACHINE\Software\VMware, Inc.\VMware VDM\Client\Security
n
For 64-bit Windows: HKLM\SOFTWARE\Wow6432Node\VMware, Inc.\VMware VDM\Client\Security
Table 16. Horizon Client Configuration Template: Security Settings
Setting Description
Allow command line credentials
(Computer Configuration setting)
Determines whether user credentials can be provided with Horizon Client
command line options. If this setting is disabled, the smartCardPIN and
password options are not available when users run Horizon Client from the
command line.
This setting is enabled by default.
The equivalent Windows Registry value is AllowCmdLineCredentials.
Servers Trusted For Delegation
(Computer Configuration setting)
Specifies the View Connection Server instances that accept the user identity and
credential information that is passed when a user selects the Log in as current
user check box. If you do not specify any View Connection Server instances, all
View Connection Server instances accept this information.
To add a View Connection Server instance, use one of the following formats:
n
domain\system$
n
system$@domain.com
n
The Service Principal Name (SPN) of the View Connection Server service.
The equivalent Windows Registry value is BrokersTrustedForDelegation.
View Security
12 VMware, Inc.