5.2

Table Of Contents
You can configure an initial security server pairing without using IPsec rules. Before you install the security
server, you can open View Administrator and deselect the global setting Use IPSec for Security Server
Connections, which is enabled by default. If IPsec rules are not in effect, you do not have to remove them
before you upgrade or reinstall.
NOTE You do not have to remove a security server from View Administrator before you upgrade or
reinstall the security server. Remove a security server from View Administrator only if you intend to
remove the security server permanently from the Horizon View environment.
With View 5.0.x and earlier releases, you could remove a security server either from within the View
Administrator user interface or by using the vdmadmin -S command-line command. In View 5.1 and later
releases, you must use vdmadmin -S. See "Removing the Entry for a View Connection Server Instance or
Security Server Using the -S Option" in the VMware Horizon View Administration document.
CAUTION If you remove the IPsec rules for an active security server, all communication with the security
server is lost until you upgrade or reinstall the security server.
Procedure
1 In View Administrator, click View Configuration > Servers.
2 In the Security Servers tab, select a security server and click More Commands > Prepare for Upgrade
or Reinstallation.
If you disabled IPsec rules before you installed the security server, this setting is inactive. In this case,
you do not have to remove IPsec rules before you reinstall or upgrade.
3 Click OK.
The IPsec rules are removed and the Prepare for Upgrade or Reinstallation setting becomes inactive,
indicating that you can reinstall or upgrade the security server.
What to do next
Upgrade or reinstall security server.
Firewall Rules for View Connection Server
Certain ports must be opened on the firewall for View Connection Server instances and security servers.
When you install View Connection Server, the installation program can optionally configure the required
Windows firewall rules for you. These rules open the ports that are used by default. If you change the
default ports after installation, you must manually configure the Windows firewall to allow View Client
devices to connect to View through the updated ports.
Table 54. Ports Opened During View Connection Server Installation
Protocol Ports View Connection Server Instance Type
JMS TCP 4001 in Standard and replica
JMSIR TCP 4100 in Standard and replica
AJP13 TCP 8009 in Standard and replica
HTTP TCP 80 in Standard, replica, and security server
HTTPS TCP 443 in Standard, replica, and security server
PCoIP TCP 4172 in;
UDP 4172 both
directions
Standard, replica, and security server
Chapter 5 Installing View Connection Server
VMware, Inc. 57