VMware View Manager 4.5 Admin Manual page 126

Hide thumbs Also See for View Manager 4.5:
Table of Contents

Advertisement

VMware View Administrator's Guide
Add the Root Certificate to the Enterprise NTAuth Store
If you use a CA to issue smart card login or domain controller certificates, you must add the root certificate to
the Enterprise NTAuth store in Active Directory. You do not need to perform this procedure if the Windows
domain controller acts as the root CA.
Procedure
On your Active Directory server, use the
u
NTAuth store.
For example:
The CA is now trusted to issue certificates of this type.
Add the Root Certificate to Trusted Root Certification Authorities
If you use a CA to issue smart card login or domain controller certificates, you must add the root certificate to
the Trusted Root Certification Authorities group policy in Active Directory. You do not need to perform this
procedure if the Windows domain controller acts as the root CA.
Procedure
1
On your Active Directory server, select Start > All Programs > Administrative Tools > Active Directory
Users and Computers.
2
Right-click your domain and click Properties.
3
On the Group Policy tab, click Open to open the Group Policy Management plug-in.
4
Right-click Default Domain Policy, and then click Edit.
5
Expand the Computer Configuration section and then open Windows Settings\Security Settings\Public
Key.
6
Right-click Trusted Root Certification Authorities and select Import.
7
Follow the prompts in the wizard to import the certificate and click OK.
8
Close the Group Policy window.
All of the systems in the domain now have a copy of the certificate in their trusted root store.
Verify Your Smart Card Authentication Configuration
After you set up smart card authentication for the first time, or when smart card authentication is not working
correctly, you should verify your smart card authentication configuration.
Procedure
Verify that each client system has View Client, smart card middleware, a smart card with a valid certificate,
n
and a smart card reader.
See the documentation provided by your smart card vendor for information on configuring smart card
software and hardware.
On each client system, select Start > Settings > Control Panel > Internet Options > Content > Certificates
n
> Personal to verify that certificates are available for smart card authentication.
When a user inserts a smart card into the smart card reader, Windows copies certificates from the smart
card to the user's computer so that View Client can use them.
126
certutil -dspublish -f
path_to_root_CA_cert NTAuthCA
command to publish the certificate to the Enterprise
certutil
VMware, Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

View composer 2.5

Table of Contents