Required Firewall Rules
Network Ports Diagram in VMware Horizon 7
Network Ports Diagram in VMware Horizon 7 (direct PDF link)
Install Connection server
- VMware-viewconnectionserver-x86_64-
(VMware-Horizon-Connection-Server-x86_64-7.6.0-9823717.exe)
VMware Horizon View 7: Deployment and Installation [Part 1]
after installation - https://<connection1.fqdn>/admin
Composer pre-requisites, Database and Connectivity
- set SQL authentication mode to mixed i.e. SQL & Windows
- create SQL database composer (Simple or Full recovery model)
- create SQL composer user, set default DB to composer with DB_Owner privileges
- install on composer server ENU\x64\sqlls.msi - SQL Server native client - SQL 2012 SP2 Feature Pack
- set up System DSN ODBC 64 bit connection using SQL Server Native Client 11.0 and composer SQL account
- install .NET 3.5 Framework on Composer server
- VMware-viewcomposer-7.6.0-9491669.exe
Access Point Deployment (replacement for Security Server)
- 2x vCPU, 4GB RAM, 2.5GB / 20GB HDD, 1x 2x or 3x NICs, vCenter Network Protocol Profile
- add New switch and connect to new nic i.e. vSwitch1 on NIC 1
- add New port group to vSwitch1 and call it DMZ network
- Datacenter > Configure > Network Profiles
- Add 2 Network profiles - 1x for internal, 1x for external network
- install on composer server ENU\x64\sqlls.msi - SQL Server native client - SQL 2012 SP2 Feature Pack
- set up System DSN ODBC 64 bit connection using SQL Server Native Client 11.0 and composer SQL account
- install .NET 3.5 Framework on Composer server
- VMware-viewcomposer-7.6.0-9491669.exe
Access Point Deployment (replacement for Security Server)
- 2x vCPU, 4GB RAM, 2.5GB / 20GB HDD, 1x 2x or 3x NICs, vCenter Network Protocol Profile
- add New switch and connect to new nic i.e. vSwitch1 on NIC 1
- add New port group to vSwitch1 and call it DMZ network
- Datacenter > Configure > Network Profiles
- Add 2 Network profiles - 1x for internal, 1x for external network
Deploying and Configuring Access Point - VMware Docs
Video: Customize Access Point Template
- Deploy OVF Template
- enter DNS server addresses (of internal network)
- IPMode - STATICV4
- NIC1 (eth0) - this is external NIC
- NIC2 (eth1)
- password for admin user
- password for root user
- https://<internalIP>:9443/admin/index.html
Unified Access Gateway (UAG) fips or non-fips
VMware Unified Access Gateway 3.3.1.0
Using PowerShell to Deploy VMware Unified Access Gateway
Note: The Access Point appliance has been renamed to the Unified Access Gateway as of Horizon 7.1
Accessing User Web Interface:
- Windows Security Server - http://<security_server_IP>
- Access Point Portal - http://<access_point_IP>/portal