VMware Horizon View Agent, fix VPN using error

Can not reconnect to machine via Horizon View after setup VPN connection.

When you install View Agent on a virtual machine that has more than one NIC, you must configure the subnet that View Agent uses. The subnet determines which network address View Agent provides to the View Connection Server instance for client protocol connections.

On the virtual machine on which Horizon Agent is installed, open a command prompt, type regedit.exe and create a registry entry to configure the subnet.

For example, in an IPv4 network: HKLM\Software\VMware, Inc.\VMware VDM\IpPrefix = n.n.n.n/m (REG_SZ)

In this example, n.n.n.n is the TCP/IP subnet and m is the number of bits in the subnet mask.

Note:

In releases earlier than Horizon 6 version 6.1, this registry path was HKLM\Software\VMware, Inc.\VMware VDM\Node Manager\subnet = n.n.n.n/m (REG_SZ). The old registry setting is not used with View Agent 6.1 or later. If you upgrade View Agent from an earlier release to version 6.1 or later, make sure to use the current registry setting.

VMware View 7.5 + RDSH

Не работает буфер обмена через HTML Access.

Проверить наличие запущенного процесса VMwareViewClipboard.exe. Если отсутствует, полностью удалить и установить заново VMware View Agent на сервере RDSH.

VMware View, подключение Access Point

1. Ошибка "Failed to connect to the Connection Server", код 404 при обращении к broker/xml.

Необходимо в файл install_directory\VMware\VMware View\Server\sslgateway\conf\locked.properties добавить исключения:

portalHost=<public_site_domain>
balancedHost=<public_site_domain>

https://pubs.vmware.com/horizon-7-view/index.jsp#com.vmware.horizon-view.installation.doc/GUID-FE26A9DE-E344-42EC-A1EE-E1389299B793.html

https://pubs.vmware.com/horizon-7-view/index.jsp#com.vmware.horizon-view.installation.doc/GUID-BFF2E726-A5EB-4105-A0EA-F3D718C5880E.html

2. Ошибка "couldn't resolve proxy name"

Disable the secure tunnel for View Connection Server. In View Administrator, go to the Edit View Connection Server Settings dialog box
and deselect the check box called "Use secure tunnel connection to machine". By default, the securetunnel is enabled on the Access Point appliance.

Disable the PCoIP secure gateway for View Connection Server. In View Administrator, go to the Edit
View Connection Server Settings dialog box and deselect the check box called "Use PCoIP Secure Gateway for PCoIP connections to machine". By default, the PCoIP secure gateway is enabled on the Access Point appliance.

Disable the Blast secure gateway for View Connection Server. In View Administrator, go to the Edit View Connection Server Settings dialog box and deselect the check box called
"Use Blast Secure Gateway for HTML Access to machine". By default, the Blast secure gateway is enabled on the Access Point appliance.

https://pubs.vmware.com/horizon-62-view/topic/com.vmware.ICbase/PDF/access-point-20-deploy-config-guide.pdf

(страница 16)

Отключение HSTS (HTTP Strict Transport Security) на KEMP LoadMaster

Когда VMware View Connection Server опубликован по протоколу HTTPS на одном доменном имени с публичным сайтом (протокол HTTP) в ряде браузеров (Chrome) происходит автоматическое перенаправление пользователя на сайт View при открытии публичного сайта (HTTP -> HTTPS). Причиной является использование механизма HTTP Strict Transport Security в VMware View Connection Server.

Решается модификацией заголовка, возвращаемого VMware View Connection Server. В KEMP LoadMaster для этого необходимо:
1. Создать правило Header Modification Rule:
Rule Type: Replace Header
Header: Strict-Transport-Security
Pattern: max-age=31536000
Replacement: max-age=0
2. Добавить правило в опубликованный HTTPS-сервис (Advanced Properties - HTTP Header Modification).