VMware VIEW 4.5 - ARCHITECTURE PLANNING EN-000350-00 Manual page 50

View architecture planning guide
Table of Contents

Advertisement

VMware View Architecture Planning Guide
Direct Client Connections with PCoIP and HP RGS
n
Administrators can configure View Connection Server settings so that View desktop sessions are
established directly between the client system and the View desktop virtual machine, bypassing the View
Connection Server host. This type of connection is called a direct client connection.
View Client with Local Mode Client Connections
n
View Client with Local Mode offers mobile users the ability to check out View desktops onto their local
computer.
Tunneled Client Connections with Microsoft RDP
When users connect to a View desktop with the Microsoft RDP display protocol, View Client makes a second
HTTPS connection to the View Connection Server host. This connection is called the tunnel connection because
it provides a tunnel for carrying RDP data.
The tunnel connection offers the following advantages:
RDP data is tunneled through HTTPS and is encrypted using SSL. This powerful security protocol is
n
consistent with the security provided by other secure Web sites, such as those that are used for online
banking and credit card payments.
A client can access multiple desktops over a single HTTPS connection, which reduces the overall protocol
n
overhead.
Because VMware View manages the HTTPS connection, the reliability of the underlying protocols is
n
significantly improved. If a user temporarily loses a network connection, the HTTP connection is
reestablished after the network connection is restored and the RDP connection automatically resumes
without requiring the user to reconnect and log in again.
In a standard deployment of View Connection Server instances, the HTTPS secure connection terminates at
the View Connection Server. In a DMZ deployment, the HTTPS secure connection terminates at a security
server. See
"Preparing to Use a Security Server,"
security servers.
Clients that use the PCoIP or HP RGS display protocols do not use the tunnel connection.
Direct Client Connections with PCoIP and HP RGS
Administrators can configure View Connection Server settings so that View desktop sessions are established
directly between the client system and the View desktop virtual machine, bypassing the View Connection
Server host. This type of connection is called a direct client connection.
With direct client connections, an HTTPS connection is still made between the client and the View Connection
Server host for users to authenticate and select View desktops, but the second HTTPS connection (the tunnel
connection) is not used.
Clients that use the PCoIP and HP RGS display protocols use direct client connections. They cannot use the
tunnel connection.
PCoIP connections include the following built-in security features:
PCoIP supports Advanced Encryption Standard (AES) encryption, which is turned on by default.
n
The hardware implementation of PCoIP uses both AES and IP Security (IPsec).
n
PCoIP works with third-party VPN clients.
n
For clients that use the Microsoft RDP display protocol, direct client connections are appropriate only if your
deployment is inside a corporate network. With direct client connections, RDP traffic is sent unencrypted over
the connection between the client and the View desktop virtual machine.
50
on page 50
on page 51
on page 55 for information on DMZ deployments and
VMware, Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

View manager 4.5View composer 2.5

Table of Contents