Setting Up Desktop and Application Pools in View

Table Of Contents
Procedure
1 Determine whether to use an existing Active Directory user profile path or configure a user profile
repository on a network share.
Option Action
Use an existing Active Directory
user profile path
If you have an existing Windows roaming profiles configuration, you can
use the user profile path in Active Directory that supports roaming
profiles. You can skip the remaining steps in this procedure.
Configure a network share to store
the user profile repository
If you do not have an existing Windows roaming profiles configuration,
you must configure a network share for the user profile repository. Follow
the remaining steps in this procedure.
2 Create a shared folder on a computer that your users can access from the guest operating systems on
their desktops.
If %username% is not part of the folder path that you configure, View Persona Management appends
%username%.%userdomain% to the path.
For example: \\server.domain.com\VPRepository\%username%.%userdomain%
3 Set access permissions for the shared folders that contain user profiles.
CAUTION Make sure that access permissions are configured correctly. The incorrect configuration of
access permissions on the shared folder is the most common cause of problems with View Persona
Management.
Setting Access Permissions on Shared Folders for View Persona Management
View Persona Management and Windows roaming profiles require a specific minimum level of permissions
on the user profile repository. View Persona Management also requires that the security group of the users
who put data on the shared folder must have read attributes on the share.
Set the required access permissions on your user profile repository and redirected folder share.
Table 172. Minimum NTFS Permissions Required for the User Profile Repository and Redirected Folder
Share
User Account Minimum Permissions Required
Creator Owner Full Control, Subfolders and Files Only
Administrator None. Instead, enable the Windows group policy setting, Add the Administrators
security group to the roaming user profiles. In the Group Policy Object Editor, this
policy setting is located in Computer Configuration\Administrative
Templates\System\User Profiles\.
Security group of users
needing to put data on share
List Folder/Read Data, Create Folders/Append Data, Read Attributes - This Folder
Only
Everyone No permissions
Local System Full Control, This Folder, Subfolders and Files
Table 173. Share Level (SMB) Permissions Required for User Profile Repository and Redirected Folder
Share
User Account Default Permissions Minimum Permissions Required
Everyone Read only No permissions
Security group of users needing to put data
on share
N/A Full Control
Chapter 17 Configuring User Profiles with View Persona Management
VMware, Inc. 261