PCoIP Zero Client and Host Administrator Guide (Issue 5)

Configuration
Category
Setting Name Setting
Enable 802.1x Security True
Enable 802.1x Authentic-
ation Identity
Enter the username configured for the
802.1x authentication.
Profile Zero Cli-
ent USB Author-
ization
/Unauthorization
Example: To allow USB
access to HID devices only,
click Add New and con-
figure these settings:
Authorized:
Rule Type: Class
Device Class: Human Interface Device
Sub Class: Any
Protocol: Any
Unauthorized:
No unauthorization rules. Delete any
existing rules. When there are no rules,
the MC displays two radio buttons on the
Manage Profiles page. Select Erase the
device's existing USB unauthorizations
and replace them with an empty set.
Example: To allow USB
access to all devices except
mass storage, click Add
New and configure these
settings.
Authorized:
Rule Type: Class
Device Class: Any
Sub Class: Any
Protocol: Any
Unauthorized:
Rule Type: Class
Device Class: Mass Storage
Sub Class: Any
Protocol: Any
Certificate Store VCS certificate issuer (root or inter-
mediate) or VCS certificate.
Note that SSL certificates are required in
VMware View 5.1 and newer versions. If
SSL is turned off in firmware version
FW4.0 and older, passwords are sent
unencrypted over the network.
Zero Client Smart Card/Hardware Token Configuration
Typically, no configuration is required on the zero client side for the following:
l CAC and PIV smart card user authentication
l SIPR hardware token user authentication
However, for CAC cards that support both the modern PIV and the old-style CAC (GSC-IS)
command sets, administrators may want to enable the Prefer GSC-IS over PIV Endpoint
TER1206003 Issue 5 83
PCoIP® Zero Client and Host Administrator Guide