3.0.1
Table Of Contents
- Administration Guide
- Contents
- About This Book
- Introduction
- Installation
- View Administrator
- Virtual Desktop Deployment
- Client Management
- View Client and View Portal
- Client Connections from the Internet
- Creating SSL Server Certificates
- Using Existing SSL Certificates
- Smart Card Authentication
- RSA SecurID Authentication
- View Client Command Line Options
- Virtual Printing
- View Composer
- Offline Desktop
- Component Policies
- Unified Access
- Troubleshooting
- Glossary
- Index
VMware, Inc. 127
Chapter 7 Offline Desktop
Oncecheckedout,OfflineDesktopusesthinprovisionedvirtualdiskstostore
informationonthehostsystem.Thistypeofdiskoccupiesnomorespacethanthat
requiredbythedataitcontains,andphysicaldiskspaceisonlyallocatedasdatais
written;thisminimizesthestoragefootprintofthedownl
oadedsystem.
Ifanetworkconnectionispresentontheclientsystem,thedesktopthathasbeen
checkedoutwillcontinuetocommunicatewithViewConnectionServerinorderto
obtainusagedata,providepolicyupdates,andensurethatlocallycached
authenticationcriteriaiscurrent.Contactisattemptedevery5minutes.Intheab
sence
ofanetworkconnection,thedesktopwillfallbackonlocallycachedinformationin
ordertoauthenticatetheuserduringlogin.
Thedataoneachofflinesystemisencryptedandhasalifetimecontrolledthrough
policy—iftheclientlosescontactwiththeViewConnectionServer,themaximumtime
withoutserv
ercontactistheperiodinwhichtheusercancontinuetousethedesktop
beforetheyarerefusedaccess;thiscountdownisresetoncetheconnectionis
re‐established.Priortodisconnection,theuserisnotifiedthattheofflinedesktop
lifetimeisabouttoexpire.
Similarly,ifuseraccessisremov
ed—thatis,ifentitlementiswithdrawnortheaccount
issuspended—theclientsystembecomesinaccessiblewhenthecacheexpiresorafter
theclientismadeawareofthischangebytheViewConnectionServer(whichever
comesfirst).Inthisscenario,theuserisnotnotifiedpriortodisconnection.
Tunneled Communications and SSL
OfflineDesktopsupportstunneledornon‐tunneledcommunicationsforLAN‐based
datatransfers.
Whentunnelingisenabled,alltrafficisroutedthroughtheViewConnection
Server.
Whentunnelingisnotenabled,datatransferstakeplacedirectlybetweenthe
onlinedesktophostsystemandtheofflineclient.
YoucandisabletunnelingbyselectingtheDirectconnectionforOfflineDesktop
operationscheckboxintheConfigurationpageoftheadministrativeinterface.
Inadditiontospecifyingtherouteforcommunications,youcanencryptthe
c
ommunicationsanddatatransfersthattakeplacebetweentheOfflineDesktopclient
andtheViewConnectionServ erbyselectingtheRequireSSLforOfflineDesktop
operationscheckboxintheConfigurationpageoftheadministrativeinterface.
N
OTEBypassingthetunnelandusinganunencryptedconnectionincreasesdata
transferspeedattheexpenseofsecuredatacommunication.Theencryptionsettinghas
noeffectontheofflinedataitself,whichisalwaysencryptedontheclientsystem.