5.0

Table Of Contents
2 Add the keyfile, keypass, and storetype properties to the locked.properties file in the SSL gateway
configuration directory on the View Connection Server or security server host.
If the locked.properties file does not already exist, you must create it.
a Set the keyfile property to the name of your keystore file.
For example: keyfile=keys.jks or keyfile=keys.pfx
b Set the keypass property to the password for your keystore file.
For example: keypass=MY_PASS
c Set the storetype property to match the type of the keystore file.
Option Description
PKCS#12 or PFX file
Set the value of storetype to pkcs12:
storetype=pkcs12
Java keystore file
Set the value of storetype to jks:
storetype=jks
You must specify the storetype property for a Java keystore file.
3 Restart the View Connection Server service or Security Server service to make your changes take effect.
What to do next
In View Administrator, configure settings to use SSL for client connections. See “Configure SSL for Client
Connections,” on page 82.
If your SSL certificates are signed by a CA that is not well known, install the root certificate (if not already
present) and intermediate certificate in Active Directory. See “Add SSL Certificates in Active Directory,” on
page 88.
Configure SSL for Client Connections
To configure whether client connections use SSL when communicating with View Connection Server, you
configure a global setting in View Administrator. The setting applies to View desktop clients and clients that
run View Administrator.
Global settings affect all client sessions that are managed by a standalone View Connection Server instance or
a group of replicated instances. They are not specific to a single View Connection Server instance.
If View Connection Server is configured for smart card authentication, SSL must be enabled for client
connections.
SSL is enabled by default for client connections.
NOTE If you disable SSL for client connections, users must deselect the Use secure connection (SSL) check
box in View Client before connecting to the View Connection Server host and administrators must type an
HTTP URL to run View Administrator.
IMPORTANT If you disable or enable SSL for client connections, all existing client connections are terminated.
Choose a time to restart the View Connection Server service that is least disruptive to the desktop users.
Procedure
1 In View Administrator, select View Configuration > Global Settings and click Edit.
2 To configure SSL for client connections, select or deselect Require SSL for client connections and View
Administrator.
3 Click OK to save your changes.
VMware View Installation
82 VMware, Inc.