User manual

Following is a check list of the tasks you must perform in order to use Horizon Client for Chrome OS.
1 Install View Connection Server on the server or servers that will compose a View Connection Server
replicated group.
For installation instructions, see the View Installation document.
2 If you use security servers, install View Security Server.
For installation instructions, see the View Installation document.
IMPORTANT The version of View Security Server must match the version of View Connection Server.
3 Verify that each View Connection Server instance or security server has a security certificate that can be
fully verified by using the host name that you enter in the browser.
For more information, see the View Installation document.
4 To use two-factor authentication, such as RSA SecurID or RADIUS authentication, verify that this
feature is enabled on View Connection Server.
For more information, see the topics about two-factor authentication in the View Administration
document.
Using Embedded RSA SecurID Software Tokens
If you create and distribute RSA SecurID software tokens to end users, they need enter only their PIN, rather
than PIN and token code, to authenticate.
Setup Requirements
You can use Compressed Token Format (CTF) or dynamic seed provisioning, which is also called CT-KIP
(Cryptographic Token Key Initialization Protocol), to set up an easy-to-use RSA authentication system. With
this system, you generate a URL to send to end users. To install the token, end users paste this URL directly
into Horizon Client on their client devices. The dialog box for pasting this URL appears when end users
connect to View Connection Server with Horizon Client.
After the software token is installed, end users enter a PIN to authenticate. With external RSA tokens, end
users must enter a PIN and the token code generated by a hardware or software authentication token.
The following URL prefixes are supported if end users will be copying and pasting the URL into
Horizon Client when Horizon Client is connected to an RSA-enabled View Connection Server:
n
viewclient-securid://
n
http://127.0.0.1/securid/
End users can install the token by tapping the URL. Both prefixes viewclient-securid:// and
http://127.0.0.1/securid/ are supported. Note that not all browsers support hyperlinks that begin with
http://127.0.0.1. Also some file browsers, such as the File Manager app on the ASUS Transformer Pad,
cannot link the SDTID file with Horizon Client.
For information about using dynamic seed provisioning or file-based (CTF) provisioning, see the Web page
RSA SecurID Software Token for iPhone Devices at http://www.rsa.com/node.aspx?id=3652 or RSA SecurID
Software Token for Android at http://www.rsa.com/node.aspx?id=3832.
Using VMware Horizon Client for Chrome OS
8 VMware, Inc.