3.0.1
Table Of Contents
- Administration Guide
- Contents
- About This Book
- Introduction
- Installation
- View Administrator
- Virtual Desktop Deployment
- Client Management
- View Client and View Portal
- Client Connections from the Internet
- Creating SSL Server Certificates
- Using Existing SSL Certificates
- Smart Card Authentication
- RSA SecurID Authentication
- View Client Command Line Options
- Virtual Printing
- View Composer
- Offline Desktop
- Component Policies
- Unified Access
- Troubleshooting
- Glossary
- Index
View Manager Administration Guide
84 VMware, Inc.
3UnderthePersonaltab,selectthecertificateyouwishtouseandclickView.
4UndertheCertificationPathtab,selectthecertificateatthetopofthetreeandclick
ViewCertificate.
5UndertheDetailstabclickCopytoFile.YouarepresentedwiththeCertificate
ExportWizard.
6ClickNext>N
ext,andenteranameandlocationforthefileyouwanttoexport.
7ClickNext.Thefileissavedasarootcertificateinthelocationspecified.
Trust Hierarchies
Ausercertificatemaybesignedaspartofatrusthierarchy—thesigningcertificatemay
itselfbesignedbyanother,higherlevel,certificate.
Whileitispermittedtouseanysigningcertificatefromanywherewithinthehierarchy,
itisbestpracticetousetheparentcertificate(theonethatactuallysignedtheus
er
certificate)asyourrootcertificate.
Adding a Root Certificate to Trusted Roots on Active Directory
Thissectiondescribeshowtoimportthethird‐partyrootCAcertificatesintoboth
ActiveDirectoryandtheEnterpriseNTAuthstore.Theproceduresdescribedbeloware
onlyrequiredifyouareusingathird‐partyCAtoissuesmartcardlogonordomain
controllercertificates—theyarenotrequiredinenvironmentswheretheWi
ndows
DomainControlleractsastheRootCA.
To add the third-party root CA to the trusted roots in an Active Directory Group
Policy object
1ClickStart>AllPrograms>AdministrativeTools>ActiveDirectoryUsersand
Computers.
2Intheleftpane,locatethedomaininwhichthepolicyyouwanttoeditisapplied.
3Right‐clickthedomain,andthenclickProperties.
4UndertheGroupPo
licytab,clicktheDefaultDomainPolicyGroupPolicyobject,
andthenclickEdit.Anewwindowisdisplayed.
N
OTEIftheusercertificateisnotpresentinthelistyoumustfirstclicktheImport
buttontomanuallyimporttheusercertificate.Oncethecertificatehasbeen
imported,selectitfromthelistandclickView.