User manual

Table Of Contents
n
U.S. Federal Government Personal Identity Verification (PIV), also called FIPS-201
Each client system that uses a smart card for user authentication must have the following software and
hardware:
n
Horizon Client
n
A compatible smart card reader
n
Product-specific application drivers
You must also install product-specific application drivers on the remote desktops or Microsoft RDS host. For
Windows 7 remote desktops, the operating system installs the related driver when you insert a smart card
reader and PIV card. For Windows XP and Windows Vista remote desktops, you can install the related
driver by using ActivIdentify ActivClient.
Users who authenticate with smart cards must have a smart card and each smart card must contain a user
certificate. When you generate a certificate for a blank PIV card, enter the path to the server truststore file on
the Connection Server or security server host on the Crypto Provider tab in the PIV Data Generator tool. For
information about creating a server truststore file, see "Configure Smart Card Authentication" in the View
Administration document.
In addition to meeting these requirements for Horizon Client systems, other View components must meet
certain configuration requirements to support smart cards:
n
For information about configuring Connection Server to support smart card use, see "Configure Smart
Card Authentication" in the View Administration document.
NOTE Smart cards are supported only with View 5.3.2 and later servers and desktops.
You must add all applicable Certificate Authority (CA) certificates for all trusted user certificates to a
server truststore file on the Connection Server host or security server host. These certificates include
root certificates and must include intermediate certificates if the user's smart card certificate was issued
by an intermediate certificate authority.
n
For information about tasks you might need to perform in Active Directory to implement smart card
authentication, see the topics about preparing Active Directory for smart card authentication in the View
Installation document.
Supported Desktop Operating Systems
Administrators create virtual machines with a guest operating system and install agent software in the guest
operating system. End users can log in to these virtual machines from a client device.
For a list of the supported Windows guest operating systems, see the "Supported Operating Systems for
View Agent" topic in the View 5.x or 6.x installation documentation. See the "Supported Operating Systems
for Horizon Agent" topic in the Horizon 7 installation documentation.
Some Linux guest operating systems are also supported if you have View Agent 6.1.1 or later, or
Horizon Agent 7.0 or later. For information about system requirements, configuring Linux virtual machines
for use in Horizon 6 or Horizon 7, and a list of supported features, see Setting Up Horizon 6 for Linux
Desktops, which is part of the Horizon 6, version 6.1 documentation, or see Setting Up Horizon 7 for Linux
Desktops.
Chapter 1 Setup and Installation
VMware, Inc. 9