Specifications
Table Of Contents
- View Manager Administration Guide
- Contents
- About This Book
- Introduction
- Installation
- View Administrator
- Virtual Desktop Deployment
- Client Management
- Installing and Running View Client and View Portal
- Client Connections from the Internet
- Creating SSL Server Certificates
- Using Existing SSL Certificates
- Smart Card Authentication
- RSA SecurID Authentication
- View Client Command Line Options
- Virtual Printing
- Adobe Flash Bandwidth Reduction
- Client Computer Information
- Using PCoIP Display Protocol
- Using HP RGS Display Protocol
- View Composer
- Overview of View Composer
- Preparing vCenter Server for View Composer
- Preparing a Parent VM
- Deploying Linked Clone Desktops from View Manager
- Refreshing, Recomposing, and Rebalancing Linked Clone Desktops
- Using an Existing View Composer Database
- Using the SviConfig Tool for View Composer
- Offline Desktop
- Component Policies
- Unified Access
- Troubleshooting
- Appendix: The locked.properties File
- Glossary
- Index
View Manager Administration Guide
86 VMware, Inc.
7Fromthetable,choosetheuserorgroupswhoyouwanttobeabletousethis
desktoporpoolandclickOK.
8YouarereturnedtothefirstpageoftheEntitlementswindow,whichnowcontains
theusersorgroupsyouselected.ClickOKtofinish.
Restricting View Desktop Access
YoucanusetherestrictedentitlementsfeaturetorestrictViewdesktopaccessbasedon
theViewConnectionServerinstancethatauserconnectsto.
Withrestrictedentitlements,youassignoneormoretagstoaViewConnectionServer
instance.Then,whenconfiguringadesktopordesktoppool,youselectthetags
ofthe
ViewConnectionServerinstancesthatyouwanttobeabletoaccessthedesktopor
desktoppool.WhenusersloginthroughataggedViewConnectionServerinstance,
theycanaccessonlythosedesktopsanddesktoppoolsthathaveatleastonematching
tagornotags.
Forexample,
yourdeploymentmightincludetwoViewConnectionServerinstances.
Thefirstinstancesupportsyourinternalusers.Thesecondinstanceispairedwitha
securityserverandsupportsyourexternalusers.Topreventexternalusersfrom
accessingcertaindesktops,youcouldsetuprestrictedentitlementsasfollows:
Assignthetag“Internal”totheViewConnectionServerinstancethatsupports
yourinternalusers.
Assignthetag“External”totheViewConnectionServerinstancethatispaired
withthesecurityserverandsupportsyourexternalusers.
Assignthe“Internal”tagtothedesktopsanddesktoppoolsthatshouldbe
accessibleonlytointernalusers.
Inthisexample,externaluserscannotseethedesktopsanddesktoppoolstaggedas
InternalbecausetheyloginthroughtheViewConnectionServertaggedasExternal.
Similarly,youcanuserestrictedentitlementsto
controldesktopaccessbasedonthe
user‐authenticationmethodthatyouconfigureforaparticularViewConnectionServer
instance.Forexample,youcanmakecertaindesktopsavailableonlytouserswhohave
authenticatedwithasmartcard.
Therestrictedentitlementsfeatureonlyenforcestagmatching.Youmustdesignyour
networktopology
toforcecertainclientstoconnectthroughaparticularView
ConnectionServerinstance.