Horizon Client Linux Installation
Horizon Client Linux Installation
You can find the most up-to-date technical documentation on the VMware website at:
https://docs.vmware.com/
VMware, Inc.
3401 Hillview Ave.
Palo Alto, CA 94304
www.vmware.com
©
Copyright 2022 VMware, Inc. All rights reserved. Copyright and trademark information.
VMware, Inc. 2
Contents
1 System Requirements 7
System Requirements for Linux Client Systems 7
System Requirements for Horizon Client Features 9
Smart Card Authentication Requirements 9
Client Device Certificate Authentication Requirements 11
System Requirements for Serial Port Redirection 14
Requirements for Using URL Content Redirection 15
System Requirements for Real-Time Audio-Video 15
System Requirements for Scanner Redirection 17
System Requirements for Multimedia Redirection (MMR) 17
System Requirements for HTML5 Multimedia Redirection 19
System Requirements for the Session Collaboration Feature 20
System Requirements for Skype for Business 20
Supported Desktop Operating Systems 21
VMware, Inc. 3
VMware Horizon Client for Linux Installation and Setup Guide
VMware, Inc. 4
VMware Horizon Client for Linux Installation and Setup Guide
VMware, Inc. 5
VMware Horizon Client for Linux Installation
and Setup Guide
This document, VMware Horizon Client for Linux Installation and Setup Guide, provides
®
information about installing, configuring, and using VMware Horizon Client™ software on a Linux
client system.
The information in this document includes system requirements and instructions for installing and
using Horizon Client for Linux.
Note This document does not include instructions for installing the Linux operating system on
a client system. For information about installing Linux, refer to the instructions provided by the
maker of your Linux distribution.
This information is intended for administrators who need to set up a Horizon deployment that
includes Linux client systems. The information is written for experienced system administrators
who are familiar with virtual machine technology and data center operations.
Note This document pertains mostly to the Horizon Client for Linux that VMware makes available.
In addition, several VMware partners offer thin and zero client devices for Horizon deployments.
The features that are available for each thin or zero client device, and the operating systems
supported, are determined by the vendor, the model, and the configuration that an enterprise
chooses to use. For information about the vendors and models for these client devices, see the
VMware Compatibility Guide, available on the VMware website.
VMware, Inc. 6
System Requirements
1
Client systems must meet certain hardware and software requirements.
Note These system requirements pertain to the Horizon Client for Linux that VMware makes
available. In addition, several VMware partners offer thin and zero client devices for VMware
Horizon deployments. The vendor and model of the thin or zero client device, and the
configuration that an enterprise chooses to use, determine the features available for each client
device and the operating systems supported. For information about the vendors and models for
these client devices, see the VMware Compatibility Guide, available on the VMware website.
Architecture
Memory
At least 2 GB of RAM
Operating system
Horizon Client for Linux has been tested on the following operating systems for this release.
VMware, Inc. 7
VMware Horizon Client for Linux Installation and Setup Guide
Red Hat Enterprise Linux (RHEL) 64-bit 7.7, 7.8, 7.9, 8.0, 8.1, 8.2, 8.3, 8.4, 8.5
Note On RHEL 8.x systems, Horizon Client only supports the X11 display server protocol. The
Wayland display server protocol is not supported.
OpenSSL requirement
Horizon Client requires a specific version of OpenSSL. The correct version is automatically
downloaded and installed.
Horizon Client requires the latest maintenance release of one of the following:
If client systems connect from outside the corporate firewall, it is good practice for you to use a
Unified Access Gateway appliance or security server. With a Unified Access Gateway appliance
or security server, client systems do not require a VPN connection.
Display protocol
n VMware Blast
n PCoIP
n RDP
n x64-based processor with SSE2 extensions, with an 800 MHz or faster processor speed
n Available RAM above system requirements to support various monitor setups. Use the
following formula as a general guide:
VMware, Inc. 8
VMware Horizon Client for Linux Installation and Setup Guide
n x64-based processor with SSE2 extensions, with an 800 MHz or faster processor speed
n 128 MB RAM
If you plan to use an RDP connection to Horizon desktops and you prefer to use a FreeRDP
client for the connection, you must install the correct version of FreeRDP and any applicable
patches. See Using FreeRDP and Remote Desktop for RDP Connections.
Horizon Client also has certain other software requirements, depending on the Linux
distribution you use. Allow the Horizon Client installation wizard to scan your system for library
compatibilities and dependencies. The following list of requirements pertains only to Ubuntu
distributions.
n libudev.so.0
Note libudev0 is required to run Horizon Client. By default, libudev0 is not installed in
some systems.
This article describes the system requirements for smart card authentication with Horizon Client.
For instructions on how to set up the smart card authentication feature, see Configure Horizon
Client for Smart Card Authentication.
n Horizon Client
VMware, Inc. 9
VMware Horizon Client for Linux Installation and Setup Guide
Users that authenticate with smart cards must use a supported smart card type with the
corresponding middleware, as described in the following section. Each smart card must also
contain a user certificate.
IDprime .NET Card Gemalto Gemalto .NET PKCS11 Gemalto .NET minidriver
library (libgtop11dotnet.so)
To make the Username hint text box appear on the Horizon Client login dialog box, you must
enable the smart card user name hints feature in Connection Server. For information about
enabling the smart card user name hints feature, see the Horizon Administration document.
If your environment uses a Unified Access Gateway appliance for secure external access, you
must configure the Unified Access Gateway appliance to support the smart card user name hints
feature. The smart card user name hints feature is supported only with Unified Access Gateway
2.7.2 and later. For information about enabling the smart card user name hints feature in Unified
Access Gateway, see the Deploying and Configuring VMware Unified Access Gateway document.
Horizon Client continues to support single-account smart card certificates even when the smart
card user name hints feature is enabled.
An administrator must add all applicable Certificate Authority (CA) certificate chains for all
trusted user certificates to a server truststore file on the Connection Server host or, if a security
server is used, on the security server host. These certificate chains include root certificates
VMware, Inc. 10
VMware Horizon Client for Linux Installation and Setup Guide
and, if an intermediate certificate authority issues the user's smart card certificate, must also
include intermediate certificates.
For information about configuring Connection Server to support smart card use, see the
Horizon Administration document.
For information about configuring smart card authentication on a Unified Access Gateway
appliance, see the Deploying and Configuring VMware Unified Access Gateway document.
Active Directory
For information about tasks that an administrator might need to perform in Active Directory to
implement smart card authentication, see the Horizon Administration document.
Prerequisites
This feature has the following requirements.
n Client system is equipped with a root Certification Authority (CA) certificate that Unified Access
Gateway accepts
For information about configuring Unified Access Gateway, see the Unified Access Gateway
Documentation.
n Import the certificate and keys file into the SoftHSM2 database.
VMware, Inc. 11
VMware Horizon Client for Linux Installation and Setup Guide
The following procedure provides guidelines for completing the setup on a general Linux client
system. Specific steps might vary depending on your Linux distribution.
Note Device certificate authentication is also supported on thin clients running Becrypt Paradox.
For setup information, refer to the documentation for Becrypt Paradox.
1 Install the SoftHSM2 library on the Linux client system using one of the following methods.
For example, on an Ubuntu system you can run the following command.
2 Compile, configure, and install the SoftHSM2 library from the cloned source code.
Note Horizon Client installs its own OpenSSL library and also consumes the OpenSSL
library that is linked to SoftHSM2. To avoid conflict during runtime, ensure that you link
SoftHSM2 to the same OpenSSL library installed by Horizon Client.
In the following command example, the <path to OpenSSL library> should contain the
"include" and "lib" path.
cd SoftHSMv2/
sh autogen.sh
./configure --with-crypto-backend=openssl --with-openssl=<path to OpenSSL library>
make
sudo make install
By default, SoftHSM2 has one token slot. When you initialize a token in the first slot, a second
slot is automatically added. Subsequent slots are added as you initialize a new token in each
slot.
b Make a note of the slot ID returned by the token creation command. You will need this
slot ID later when you import X.509 device certificate and key files into the SoftHSM2
database.
3 Prepare the X.509 device certificate and public and private keys.
a Get the device certificate in PFX format which contains the private key.
VMware, Inc. 12
VMware Horizon Client for Linux Installation and Setup Guide
b Convert the PFX file to a keys file in PEM format. For example, the following command
transforms client.pfx to client-keys.pem.
4 Import the X.509 certificate and keys file into the SoftHSM2 certificate database.
For example, the following command imports the client-key.pk8 file. Replace <your
token label> and <slot ID> with the values you got in step 2.
softhsm2-util --import client-key.pk8 --token "<your token label>" --slot <slot ID>
--label "client" --id 0001
For example, the following command imports the client-cert.der file. Replace
<softhsm2-pin> with the PIN required to access the SoftHSM2 database.
c Verify that the X.509 certificate, public key, and private key are all stored in the SoftHSM2
database.
VMware, Inc. 13
VMware Horizon Client for Linux Installation and Setup Guide
To compile the SoftHSM2 library with FIPS Compliance Mode, run the following sequence of
commands.
cd SoftHSMv2/
sh autogen.sh
./configure --with-crypto-backend=openssl --with-openssl=<path to OpenSSL library> --enable-
fips
make
sudo make install
Note If you encounter missing header issues during the compile, you can download the source
code for FIPS-related headers from www.openssl.org/source/. Copy the headers into the path
to the OpenSSL library and repeat the command sequence to compile the SoftHSM2 library with
FIPS Compliance Mode.
The RDS host that hosts published desktops must have Horizon Agent 7.6 or later installed
with the Serial Port Redirection setup option selected. This setup option is deselected by
default.
For information about which guest operating systems are supported for RDS hosts, see
"System Requirements for Serial Port Redirection" in the Configuring Remote Desktop
Features in Horizon document.
You do not need to install serial port device drivers in the RDS host.
Virtual desktops
Virtual desktops must have Horizon Agent 7.9 or later installed with the Serial Port Redirection
setup option selected. This setup option is deselected by default.
For information about which guest operating systems are supported for virtual desktops,
see "System Requirements for Serial Port Redirection" in the Configuring Remote Desktop
Features in Horizon document.
You do not need to install serial port device drivers on the virtual desktop.
The serial port redirection feature is supported on Linux systems that are supported for this
release. Any required serial port device drivers must be installed and the serial port must be
operable.
VMware, Inc. 14
VMware Horizon Client for Linux Installation and Setup Guide
Nested sessions
The serial port redirection feature is supported in published applications that are started from
Horizon Client inside published desktops (nested sessions). Horizon Client 4.10 or later must
be installed in the published desktops.
The serial port redirection feature has the following limitations when used in a nested session.
n Users must use matched client and agent versions, for example, Horizon Client 2006 and
Horizon Agent 2006.
Display protocols
n VMware Blast
For example, an end user can click a link in the native Firefox browser on the client and the link
opens in the remote Internet Explorer browser, or an end user can click a link in the remote
Internet Explorer browser and the link opens in the native Firefox browser on the client machine.
Any number of protocols can be configured for redirection, including HTTP, mailto, and callto.
A Horizon administrator must also configure settings that specify how Horizon Client redirects
URL content from the client to a remote desktop or published application, or how Horizon Agent
redirects URL content from a remote desktop or published application to the client.
For complete information, see the "Configuring URL Content Redirection" topic in the Configuring
Remote Desktop Features in Horizon document.
Virtual desktops
VMware, Inc. 15
VMware Horizon Client for Linux Installation and Setup Guide
When using Microsoft Teams with Real-Time Audio-Video, virtual desktops must have a
minimum of 4 vCPUs and 4 GB of RAM.
n Real-Time Audio-Video is supported on all operating systems that run Horizon Client for
Linux on x64 devices. This feature is also supported on Raspberry Pi 4 Model B devices
running ThinLinx Operating System (TLXOS) or Stratodesk NoTouch Operating System.
The client system must meet the following minimum hardware requirements.
n Video4Linux2
n libv4l
n Pulse Audio
libuuid.so.1
libv4l2.so.0
libspeex.so.1
libudev0
libtheoradec.so.1
libtheoraenc.so.1
libv4lconvert.so.0
libjpeg.so.8
All these files must be present on the client system or the Real-Time Audio-Video feature
does not work. These dependencies are in addition to the dependencies required for
Horizon Client itself.
n The webcam and audio device drivers must be installed, and the webcam and audio device
must be operable, on the client computer. You do not need to install the device drivers on
the machine where the agent is installed.
Display protocols
n PCoIP
n VMware Blast
VMware, Inc. 16
VMware Horizon Client for Linux Installation and Setup Guide
Remote desktops
Remote desktops must have Horizon Agent 7.8 or later, installed with the Scanner Redirection
setup option selected, on the parent or template virtual machines or RDS hosts. On
Windows desktop and Windows Server guest operating systems, the Horizon Agent Scanner
Redirection setup option is deselected by default.
For information about which guest operating systems are supported for virtual desktops and
RDS hosts, see "System Requirements for Scanner Redirection" in the Configuring Remote
Desktop Features in Horizon document.
The client computer must be connected to a scanner compatible with the SANE scanner
interface standard. The SANE scanner device drivers must be installed, and the scanner must
be operable, on the client computer. You do not need to install the scanner device drivers on
the remote desktop operating system where the agent is installed.
SANE
Display protocols
n PCoIP
n VMware Blast
Remote desktops
For information about operating system requirements and other software requirements and
configuration settings, see the topics about Windows Media Multimedia Redirection in the
Configuring Remote Desktop Features in Horizon document.
Because MMR offloads media processing from the server to the client, the client has the
following minimum hardware requirements.
VMware, Inc. 17
VMware Horizon Client for Linux Installation and Setup Guide
Processor speed: 1.5 GHz for common case, or 1.8 GHz for Full HD
Memory: 2 GB RAM
Media formats that Windows Media Player supports, for example: M4V; MOV; MP4; MPEG-4
Part 2; WMV 7, 8, and 9; WMA; AVI; ACE; MP3.
MP3 is not supported when using MMS and RTSP.
GStreamer Framework
Set up the GStreamer environment such that the framework consists of the graphics card,
hardware acceleration API, and GStreamer plug-in that allow GStreamer to function properly.
Table 1-1. GStreamer Framework Setup lists the different possible setup combinations.
To ensure the best possible environment, set up your GStreamer environment using the
information in Table 1-1. GStreamer Framework Setup for the NVIDIA and Intel graphic cards.
-- OpenMax gst-omx
-- DCE gstreamer-ducati
MMR is not enabled by default. To enable it, you must set the configuration option
view.enableMMR. For more information, see Horizon Client Configuration Settings and Command-
Line Options.
VMware, Inc. 18
VMware Horizon Client for Linux Installation and Setup Guide
With HTML5 Multimedia Redirection, if an end user uses the Google Chrome or Microsoft Edge
browser in a remote desktop, HTML5 multimedia content is sent to the client system. The client
system plays the multimedia content, which reduces the load on the ESXi host, and the end user
has a better audio and video experience.
Remote desktop
n Horizon Agent must be installed on the virtual desktop or RDS host for published desktops
with the HTML5 Multimedia Redirection custom setup option selected. Beginning with
Horizon Agent 7.10, the HTML5 Multimedia Redirection custom setup option is removed
and HTML5 Multimedia Redirection is installed by default. For more information, see the
topics about installing Horizon Agent in the Setting Up Virtual Desktops in Horizon and
Setting Up Published Desktops and Applications in Horizon documents.
n The HTML5 Multimedia Redirection group policy settings must be configured on the Active
Directory server. See the topics about configuring HTML5 Multimedia Redirection in the
Configuring Remote Desktop Features in Horizon document.
n The Google Chrome, Microsoft Edge, or Microsoft Edge (Chromium) browser must be
installed.
Client system
n The HTML5 Multimedia Redirection Support custom setup option must be selected when
you install Horizon Client. This option is selected by default.
n GNU C Library (glibc) version 2.14 or later must be installed on the client system.
n PCoIP
n VMware Blast
TCP port
VMware, Inc. 19
VMware Horizon Client for Linux Installation and Setup Guide
Session collaborators
To join a collaborative session, a user must have Horizon Client for Windows, Mac, or Linux
installed on the client system, or must use HTML Access.
The Session Collaboration feature must be enabled at the desktop pool or farm level. For
information about enabling the Session Collaboration feature for desktop pools, see the
Setting Up Virtual Desktops in Horizon document. For information about enabling the Session
Collaboration feature for a farm, see the Setting Up Published Desktops and Applications in
Horizon document.
You can use Horizon Agent group policy settings to configure the Session Collaboration
feature. For information, see the Configuring Remote Desktop Features in Horizon document.
For Linux remote desktop requirements, see the Setting Up Linux Desktops in Horizon
document.
Connection Server
The Session Collaboration feature requires that the Connection Server instance uses an
Enterprise license.
Display protocols
VMware Blast
The Session Collaboration feature does not support published application sessions.
To use this feature, you must install the VMware Virtualization Pack for Skype for Business
feature on the client machine during the Horizon Client for Linux installation. For information,
see Installation Options .
A Horizon administrator must also install the VMware Virtualization Pack for Skype for Business
feature on the virtual desktop when Horizon Agent is installed. For information about installing
Horizon Agent, see the Setting Up Virtual Desktops in Horizon document.
VMware, Inc. 20
VMware Horizon Client for Linux Installation and Setup Guide
For complete requirements, see "Configure Skype for Business" in the Configuring Remote
Desktop Features in Horizon document.
For a list of the supported Windows guest operating systems, see the Horizon Installation
document.
Some Linux guest operating systems are also supported. For information about system
requirements, configuring Linux virtual machines, and a list of supported features, see the Setting
Up Linux Desktops in Horizon document.
VMware, Inc. 21
Installing Horizon Client for Linux
2
The process of installing Horizon Client on a Linux system is like installing most other applications.
For step-by-step installation instructions, see Install or Upgrade Horizon Client for Linux from
VMware Product Downloads.
n Install or Upgrade Horizon Client for Linux from VMware Product Downloads
If your VMware Horizon deployment includes a security server, verify that you are using the latest
maintenance releases of Connection Server 7.5 and Security Server 7.5 or later releases. For more
information, see the installation document for your Horizon version.
Note Security servers are not supported in VMware Horizon 2006 and later.
VMware, Inc. 22
VMware Horizon Client for Linux Installation and Setup Guide
n Verify that a desktop or application pool has been created and that the user account that
you plan to use is entitled to access the pool. For more information, see the Setting Up
Virtual Desktops in Horizon and Setting Up Published Desktops and Applications in Horizon
documents.
User Authentication
Use the following check list when setting up user authentication.
n To provide end users with unauthenticated access to published applications in Horizon Client,
you must enable this feature in the Connection Server instance. For more information, see the
topics about unauthenticated access in the Horizon Administration document.
n To use two-factor authentication, such as RSA SecurID or RADIUS authentication, with Horizon
Client, you must enable the two-factor authentication feature for the Connection Server
instance. Beginning with Horizon 7 version 7.11, you can customize the labels on the RADIUS
authentication login page. Beginning with Horizon 7 version 7.12, you can configure two-factor
authentication to occur after a remote session times out. For more information, see the topics
about two-factor authentication in the Horizon Administration document.
n To hide the server URL in Horizon Client, enable the Hide server information in client user
interface global setting. For more information, see the Horizon Administration document.
n To hide the Domain drop-down menu in Horizon Client, enable the Hide domain list in client
user interface global setting. Beginning with Horizon 7 version 7.8, this setting is enabled by
default. For more information, see the Horizon Administration document.
n To send the domain list to Horizon Client, enable the Send domain list global setting in
Horizon Console. This setting is available in Horizon 7 version 7.8 and later and is deactivated
by default. Earlier Horizon 7 versions send the domain list. For more information, see the
Horizon Administration document.
The following table shows how the Send domain list and Hide domain list in client user interface
global settings determine how users can log in to the server.
VMware, Inc. 23
VMware Horizon Client for Linux Installation and Setup Guide
Disabled (default) Enabled The Domain drop-down menu is hidden. Users must enter one of
the following values in the User name text box.
n User name (not allowed for multiple domains)
n domain\username
n [email protected]
Disabled (default) Disabled If a default domain is configured on the client, the default domain
appears in the Domain drop-down menu. If the client does not
know a default domain, *DefaultDomain* appears in the Domain
drop-down menu. Users must enter one of the following values in
the User name text box.
n User name (not allowed for multiple domains)
n domain\username
n [email protected]
Enabled Enabled The Domain drop-down menu is hidden. Users must enter one of
the following values in the User name text box.
n User name (not allowed for multiple domains)
n domain\username
n [email protected]
Enabled Disabled Users can enter a user name in the User name text box and then
select a domain from the Domain drop-down menu. Alternatively,
users can enter one of the following values in the User name text
box.
n domain\username
n [email protected]
Note On most Linux distributions, the Horizon Client installer bundle starts a GUI wizard. You
can also run the installer with the command-line --console parameter to start the command-line
wizard.
Prerequisites
n Verify that the client system runs a supported operating system. See System Requirements for
Linux Client Systems.
VMware, Inc. 24
VMware Horizon Client for Linux Installation and Setup Guide
n If you plan to use the RDP display protocol to connect to a Horizon desktop, verify that you
have the appropriate RDP client installed. See System Requirements for Linux Client Systems.
n Uninstall any earlier version of the Horizon Client software. See Uninstall Horizon Client for
Linux.
n If you plan to use the command-line installer, become familiar with the Linux command-line
installation options. See Command-Line Installation Parameters for the Linux Client.
n Confirm that version 2.x or 3.x of Python is installed on the client system. If the system does
not have the Python 2.x or 3.x package, run the necessary command to install it.
n If you are using a thin client, confirm that libgtk 3.14 or later is installed on the system. If
needed, obtain version 3.14 or later of the libgtk library and install it on the thin-client system.
As part of the installation process, the installer runs a scan of the system libraries to determine
whether the system is compatible with Horizon Client, although you can select to skip the scan.
Procedure
1 On the Linux client system, download the Horizon Client installer file from the Horizon Client
Product Downloads page at http://www.vmware.com/go/viewclients.
2 Open a Terminal window and change directories to the directory that contains the installer file.
3 If you want to set executable permissions on the installer file, run the appropriate command.
For example:
chmod +x VMware-Horizon-Client-YYMM-x.x.x-yyyyyyy.arch.bundle
Option Command
VMware, Inc. 25
VMware Horizon Client for Linux Installation and Setup Guide
Option Command
Note In addition to --console, you can use other command-line parameters and environment
variables to control installation settings such as the acceptance of the end-user license
agreement and the installation of optional components. See Command-Line Installation
Parameters for the Linux Client.
The installer wizard appears, prompting you to accept the end-user license agreement.
5 To finish the installation, follow the prompts to confirm the installation of optional components.
For more information about each optional component, see Installation Options.
Important You are prompted to allow the installer to register and start installed services after
the installation. Allowing the installer to complete these tasks means that you do not need to
manually start USB redirection services every time you reboot.
6 After installation is complete, specify whether to perform the compatibility scan for libraries
that various feature components depend on.
The system scan displays a result value for each library compatibility.
Failed The specified library was not found. You must locate and install the
required library version on the client system. For more details, refer to the
documentation and support information for your Linux distribution.
Results
What to do next
Start Horizon Client and verify that you can log in to the correct virtual desktop. See Connect to a
Remote Desktop or Published Application.
VMware, Inc. 26
VMware Horizon Client for Linux Installation and Setup Guide
Installation Options
During the Horizon Client installation process, you are prompted to confirm the installation of
optional components. The default is to install all components.
For instructions on how to download and start the Horizon Client for Linux installer, see Install or
Upgrade Horizon Client for Linux from VMware Product Downloads. For instructions on how to
install Horizon Client for Linux silently using command-line parameters and environment variable
settings, see Command-Line Installation Parameters for the Linux Client.
Option Description
Client Drive Lets users share folders and drives on the client computer with remote desktops and applications.
Redirection Drives can include mounted drives and USB storage devices.
The component files are installed in /usr/lib/vmware/view/vdpService/.
HTML5 Redirects HTML5 multimedia content from a Google Chrome or Microsoft Edge browser on the
Multimedia desktop to the client machine, where the stream is processed.
Redirection
(HTML5MMR)
Media Redirects Microsoft Teams audio calls, video calls, and desktop share views to process on the client
Optimization machine instead of in the virtual desktop.
for Microsoft
Teams
Multimedia Redirects multimedia stream from the desktop to the client machine, where the stream is processed.
Redirection The component file is installed in /usr/lib/vmware/view/vdpService/.
(MMR)
Real-Time Redirects webcam and audio devices that are connected to the client system so that they can be used
Audio-Video on the remote desktop.
The component file is installed in /usr/lib/pcoip/vchan_plugins/.
Scanner Lets users scan data into remote desktops with SANE-compliant scanners connected to their local
Redirection client system. Users do not have to install additional drivers on their remote desktops.
If you allow the Horizon Client installer to register and start the installed services after the installation
completes successfully, the scanner redirection daemon runs automatically. Otherwise, you can start
the scanner redirection daemon manually by running the following command.
Scanner redirection requires remote desktops to have Horizon Agent 7.8 or later, installed with
the Scanner Redirection setup option, on the parent or template virtual machines or RDS hosts. In
addition, this feature requires the PCoIP or VMware Blast display protocol.
After the installation, you can configure group policy settings for this feature by following the
instructions in "Configure Scanner Redirection" in the Configuring Remote Desktop Features in
Horizon document.
Seamless With this feature, users can interact with an application that is running on a remote desktop as if it was
Window a locally running application.
VMware, Inc. 27
VMware Horizon Client for Linux Installation and Setup Guide
Option Description
Serial Port Lets end users redirect locally connected serial ports, such as built-in RS-232 ports (/dev/ttySxx) or
Redirection USB-to-Serial adapters (/dev/ttyUSBxx), to their remote desktops. If you allow the Horizon Client
installer to register and start the installed services after the installation completes successfully, the
serial port daemon runs automatically. Otherwise, you can start the serial port daemon manually by
running the following command.
To make a USB-to-Serial adapter device available for serial port redirection, deselect Connect USB
Device > Automatically Connect at Startup & Automatically Connect when inserted and ensure that
the USB-to-Serial adapter device is not selected under the Connect USB Device menu.
Smart Card Lets users authenticate into remote desktops with smart cards attached to their client systems when
Redirection they use the VMware Blast or PCoIP display protocol. Although this option is selected in the client
installer by default, this option is not selected by default when you run the Horizon Agent installer in
the remote desktop.
Smart card redirection is supported on remote desktops that are deployed on single-user machines
and RDS hosts.
The component files are installed in /usr/lib/pcoip/vchan_plugins/.
USB Gives users access to locally connected USB devices on their desktops and applications.
Redirection USB redirection is supported on remote desktops and applications that are deployed on single-user
machines.
The component files are installed in /usr/lib/vmware/view/usb/. If you allow the installer to
register and start installed services after the installation completes, the USB arbitrator daemon,
vmware-USBArbitrator, runs automatically. Otherwise, you can start the daemon manually by
running the following command:
Note You can use group policy settings to disable USB redirection for specific users. For more
information, see the Configuring Remote Desktop Features in Horizon document.
VMware Lets users run Skype for Business inside a virtual desktop without negatively affecting the virtual
Horizon infrastructure and overloading the network. All media processing takes place on the Linux client
Virtualization system, instead of in the virtual desktop, during Skype audio and video calls.
Pack for Skype The component file is installed in /usr/lib/vmware/mediaprovider.
for Business
VMware Lets users print to local or network printers from a Windows remote desktop without having to install
Integrated additional printer drivers in the remote desktop. In addition to installing this option on the client
Printing system, you must enable the VMware Integrated Printing option in the Horizon Agent installer and
set policies that control VMware Integrated Printing behavior.
For information about installing Horizon Agent, see the Setting Up Virtual Desktops in Horizon
or Setting Up Published Desktops and Applications in Horizon document. For information about
configuring policies, see the Configuring Remote Desktop Features in Horizon document.
VMware, Inc. 28
VMware Horizon Client for Linux Installation and Setup Guide
For instructions on how to download the Horizon Client for Linux installer, see Install or Upgrade
Horizon Client for Linux from VMware Product Downloads.
Install Horizon Client silently by using the --console parameter along with other command-line
parameters and environment variable settings. With silent installation, you can efficiently deploy
Horizon components in a large enterprise.
The following table lists the parameters you can use when you run the VMware-Horizon-Client-
YYMM-x.x.x-yyyyyyy.arch.bundle installer file.
Option Description
--gtk Opens the GUI-based VMware installer, which is the default option.
If the GUI cannot be displayed or loaded for any reason, console
mode is used.
--regular Shows installation questions that have not been answered before or
are required. This option is the default.
--required Shows the license agreement prompt only and then proceeds to
install the client.
The default is --regular, which means show only questions that do
not have a default answer.
--set-setting vmware-horizon-media- Installs the VMware Horizon Virtualization Pack for Skype for
provider mediaproviderEnable yes Business optional component.
--set-setting vmware-horizon-teams- Installs the Media Optimization for Microsoft Teams component.
optimization teamsOptimizationEnable
yes
VMware, Inc. 29
VMware Horizon Client for Linux Installation and Setup Guide
Option Description
In addition to the parameters listed in the table, you can set the following environment variables.
Variable Description
n DEBUG
n INFO
n WARNING
n ERROR
n CRITICAL
./VMware-Horizon-Client-YYMM-x.x.x-yyyyyyy.arch.bundle --console \
VMware, Inc. 30
VMware Horizon Client for Linux Installation and Setup Guide
This next example shows how to perform a silent installation of Horizon Client using the default
settings.
VMware, Inc. 31
Configuring Horizon Client for End
Users 3
Configuring Horizon Client for end users can involve constructing URIs, setting the certificate
verification mode, modifying advanced TLS/SSL options, configuring specific keys and key
combinations, setting display protocol options, and enabling FIPS Compatible mode.
The following table shows only some of the configuration settings that you can set in one or more
ways.
VMware, Inc. 32
VMware Horizon Client for Linux Installation and Setup Guide
Active Directory user name URI, Configuration File Property, Command Line
Remote desktop display name URI, Configuration File Property, Command Line
You can use the vmware-view command-line interface or set properties in configuration files to
define default values your users see in Horizon Client or to suppress some dialog boxes from
prompting users for information. You can also specify settings that you do not want users to
change.
1 /etc/vmware/view-mandatory-config
2 Command-line arguments
3 ~/.vmware/view-preferences
4 /etc/vmware/view-default-config
If a setting is defined in multiple locations, the value that is used is the value from the last file or
command-line option read. For example, to specify settings that override users' preferences, set
properties in the /etc/vmware/view-mandatory-config file.
VMware, Inc. 33
VMware Horizon Client for Linux Installation and Setup Guide
To set default values that users can change, use the /etc/vmware/view-default-config file.
After users change a setting, when they exit Horizon Client, any changed settings are saved in the
~/.vmware/view-preferences file.
You can use either the short form or the long form of the option name, although not all options
have a short form. For example, to specify the domain you can use either -d (short form) or
--domainName= (long form). You might choose to use the long form to make a script more human-
readable.
You can use the --help option to get a list of command-line options and usage information.
This workaround is required because you must clear the environment variables that were
previously set for the proxy. If you do not perform this action, the proxy exception setting does
not take effect in Horizon Client. You configure a proxy exception for the View Connection Server
instance.
Important Some command-line options and configuration keys are available only with the version
of Horizon Client provided by third-party vendors. For more information about VMware thin-
client and zero-client partners, see the VMware Compatibility Guide at http://www.vmware.com/
resources/compatibility/search.php?deviceCategory=vdm.
VMware, Inc. 34
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys
--lockServer -s view.company.com
VMware, Inc. 35
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 36
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
view.defaultBroker -s, --serverURL= Adds the name that you specify to the Server
text box in Horizon Client. Specify a fully
qualified domain name. You can also specify
a port number if you do not use the default
443.
The default is the most recently used value.
For example:
--serverURL=https://
view.company.com
-s view.company.com
--serverURL=view.company.com:1443
VMware, Inc. 37
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
view.defaultDesktopSize --desktopSize= Sets the default size of the window for the
remote desktop:
n To use all monitors, set the property to
"1" or use the command-line argument
"all".
n To use full screen mode on one monitor,
set the property to "2" or use the
command-line argument "full".
n To use a large window, set the
property to "3" or use the command-line
argument "large".
n To use a small window, set the
property to "4" or use the command-line
argument "small".
n To set a custom size, set the
property to "5"and then also set
the view.defaultDesktopWidth and
view.defaultDesktopHeight properties.
Alternatively, specify the width by height,
in pixels, at the command line as
"widthxheight".
For example:
--desktopSize="1280x800"
--desktopSize="all"
view.defaultDomain -d, --domainName= Sets the domain name that Horizon Client
uses for all connections and adds the domain
name that you specify to the Domain Name
text box in the authentication dialog box.
VMware, Inc. 38
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
view.defaultLogLevel None Sets the log level for Horizon Client logs. Set
the property to one of the following values:
n "0" means include all log events.
n "1" means include trace-level events and
events captured for settings 2 though 6.
n "2" means include debug events and
events captured for settings 3 through 6.
n "3" (the default) means include info-level
events and events captured for settings 4
through 6.
n "4" means include warning, error, and
fatal events.
n "5" means include error and fatal events.
n "6" means include fatal events.
The default is "3".
view.defaultUser -u, --userName= Sets the user name that Horizon Client uses
for all connections and adds the user name
that you specify to the User Name text box in
the authentication dialog box.
For kiosk mode, the account name can be
based on the client's MAC address, or it can
begin with a recognized prefix string, such as
custom-.
VMware, Inc. 39
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 40
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 41
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
view.kbdLayout -k, --kbdLayout= Specifies which locale to use for the keyboard
layout.
xfreerdp --kbd-list
--kbdLayout="en-us"
-k "fr"
-k "0x00010407"
VMware, Inc. 42
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
--allmonitors --monitors="1,2" `
--nonInteractive
--serverURL="https://
view.company.com"
--userName="user1" --
password="-"
--domainName="xyz"
--desktopName="Windows 10"
VMware, Inc. 43
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
--rdesktopOptions="-f -m"
--redirect="sound:off"
None --save Saves the user name and domain name that
were last used to log in successfully so that
you do not need to enter them the next time
you are prompted to supply login credentials.
VMware, Inc. 44
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 45
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 46
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
--
unauthenticatedAccessEnabled="TRU
E"
--
unauthenticatedAccessAccount='ano
nymous1'
VMware, Inc. 47
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
VMware, Inc. 48
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
vmware-view -serverURL
view.mycompany.com
-userName user1 -password
'secret'
-domainName domain -appName
Calculator
vmware-view -serverURL
view.mycompany.com
-userName user1 -password
'secret'
-domainName domain -appName
Paint --useExisting
vmware-view -serverURL
horizon.mycompany.com
-userName user1 -password
'secret'
-domainName domain -appName
Calculator --useExisting
VMware, Inc. 49
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
--printEnvironmentInfo
-s view.company.com
VMware, Inc. 50
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-2. Horizon Client Command-Line Options and Configuration File Keys (continued)
vmware-view --
serverURL='12.345.67.89' -q
--tokenUserName='pwduser' --
userName='johndoe'
--password='password' --
domainName='mydomain'
--passcode='passcode'
To set up kiosk mode, you must use the vdmadmin command-line interface on the Horizon
Connection Server instance and perform several procedures documented in the chapter about
kiosk mode in the Horizon Administration document. After you set up kiosk mode, you can use the
vmware-view command on a Linux client to connect to a remote desktop in kiosk mode.
To connect to remote desktops from Linux clients in kiosk mode, you must, at a minimum, include
the following configuration keys or command-line options.
view.kioskLogin --kioskLogin
view.fullScreen --fullscreen
VMware, Inc. 51
VMware Horizon Client for Linux Installation and Setup Guide
view.noMenuBar --nomenubar
Omitting any of these configuration settings is not supported for kiosk mode. If Horizon
Connection Server is set up to require a non-default kiosk user name, you must also set the
view.defaultUser property or use the -u or --userName= command-line option. If a non-default
user name is not required and you do not specify a user name, Horizon Client can derive and use
the default kiosk user name.
Note If you set the view.sslVerificationMode configuration key, set it in the /etc/vmware/
view-mandatory-config file. When the client runs in kiosk mode, the client does not look in the
view-preferences file.
The command shown in this example runs Horizon Client on a Linux client system and has the
following characteristics:
n Horizon Client runs in full screen mode without a Horizon Client menu bar.
n Users are automatically connected to the specified Horizon Connection Server instance and
remote desktop and are not prompted for login credentials.
n If a connection error occurs, depending on the error code returned, a script might run, or a
kiosk monitoring application might handle the error. As a result, for example, the client system
might display an out-of-order screen or might wait a certain amount of time before attempting
to connect to Horizon Connection Server again.
Important If a pre-login message has been configured to appear before allowing Horizon Client
to connect to a remote desktop, the user must acknowledge the message before being allowed to
access the desktop. To avoid this issue, use Horizon Console to deactivate pre-login messages.
You create these links by constructing URIs that provide some or all the following information, so
that your end users do not need to supply it.
n Server address
VMware, Inc. 52
VMware Horizon Client for Linux Installation and Setup Guide
n Domain name
n Window size
n Display protocol
To construct a URI, you use the vmware-view URI scheme with path and query parts specific to
Horizon Client.
To use URIs to start Horizon Client, you must first install Horizon Client on the client computers.
URI Specification
When you create a URI, you are calling vmware-view with the full Horizon URI string as an
argument.
vmware-view://[authority-part][/path-part][?query-part]
The only required element is the URI scheme, vmware-view. Because the scheme name is case-
sensitive for some versions of some client operating systems, enter vmware-view.
Important In all parts, non-ASCII characters must first be encoded according to UTF-8 [STD63],
and then each octet of the corresponding UTF-8 sequence must be percent-encoded to be
represented as URI characters.
For information about encoding for ASCII characters, see the URL encoding reference at http://
www.utf8-chartable.de/.
authority-part
The server address and, optionally, a user name, a non-default port number, or both.
Underscores (_) are not supported in server names. Server names must conform to DNS
syntax.
user1@server-address
VMware, Inc. 53
VMware Horizon Client for Linux Installation and Setup Guide
You cannot specify a UPN address, which includes the domain. To specify the domain, you can
use the domainName query part in the URI.
server-address:port-number
path-part
The display name of the remote desktop or published application. The display name is
specified in Horizon Console when the desktop pool or application pool is created. If the
display name contains a space, use the %20 encoding mechanism to represent the space.
Note More than one remote desktop or published application can have the same display
name, but the desktop and application ID is unique. To specify a particular remote desktop or
published application, use the desktop or application ID rather than the display name.
query-part
The configuration options to use, or the remote desktop or published application actions
to perform. Queries are not case-sensitive. To use multiple queries, use an ampersand (&)
between the queries. If the queries conflict, Horizon Client uses the last query in the list. Use
the following syntax.
query1=value1[&query2=value2...]
Supported Queries
The following queries are supported for this type of Horizon Client. If you are creating URIs for
multiple types of clients, such as desktop clients and mobile clients, see the installation and setup
guide for each type of client system for the list of supported queries.
action
VMware, Inc. 54
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-3. Values That Can Be Used with the action Query
Value Description
browse Displays a list of available remote desktops and published applications hosted on the
specified server. You are not required to specify a remote desktop or published application
when using this action.
start-session Opens the specified remote desktop or published application. If no action query is provided
and the remote desktop or published application name is provided, start-session is the
default action.
reset Shuts down and restarts the specified remote desktop or published application. Unsaved
data is lost. Resetting a remote desktop is the same as pressing the Reset button on a
physical PC.
restart Shuts down and restarts the specified remote desktop. Restarting a remote desktop is the
same as the Windows operating system restart command. The operating system usually
prompts the user to save any unsaved data before it restarts.
logoff Logs the user out of the guest operating system in the remote desktop. If you specify a
published application, the action is ignored or the end user sees the warning message
"Invalid URI action."
args
Specifies command-line arguments to add when the published application starts. Use the
syntax args=value, where value is a string. Use percent encoding for the following characters:
For example, to specify the filename "My new file.txt" for the Notepad++ application, use
%22My%20new%20file.txt%22.
appProtocol
For published applications, valid values are PCOIP and BLAST. For example, to specify PCoIP,
use the syntax appProtocol=PCOIP.
desktopLayout
Sets the size of the remote desktop window. To use this query, you must set the action query
to start-session or not have an action query.
Value Description
VMware, Inc. 55
VMware Horizon Client for Linux Installation and Setup Guide
Value Description
WxH Custom resolution, where you specify the width by height, in pixels. An example
of the syntax is desktopLayout=1280x800.
desktopProtocol
For remote desktops, valid values are RDP, PCOIP, and BLAST. For example, to specify PCoIP,
use the syntax desktopProtocol=PCOIP.
domainName
Specifies the NETBIOS domain name associated with the user who is connecting to the
remote desktop or published application. For example, you might use mycompany rather than
mycompany.com.
launchMinimized
Starts Horizon Client in minimized mode. The Horizon Client window remains minimized and
hidden in the background while the user-specified remote desktop or published application
starts. The syntax is launchMinimized=true. The default value is false.
useExisting
If this option is set to true, only one Horizon Client instance can run. If users try to connect to
a second server, they must log out of the first server, causing remote desktop and published
application sessions to be disconnected. If this option is set to false, multiple Horizon Client
instances can run and users can connect to multiple servers at the same time. The default is
true. An example of the syntax is useExisting=false.
unauthenticatedAccessEnabled
n If this option is set to true, the Unauthenticated Access feature is enabled. The File >
Unauthenticated Access setting is visible in the user interface and is selected.
n If this option is set to false, the Unauthenticated Access feature is deactivated. The File >
Unauthenticated Access setting is visible in the user interface and is deselected.
n If this option is set to "", the Unauthenticated Access feature is deactivated and the File >
Unauthenticated Access setting is visible in the user interface and is deselected.
unauthenticatedAccessAccount
VMware, Inc. 56
VMware Horizon Client for Linux Installation and Setup Guide
If the Unauthenticated Access feature is enabled, sets the account to use. If Unauthenticated
Access is deactivated, then this query is ignored. An example of the syntax using the
anonymous1 user account is unauthenticatedAccessAccount=anonymous1.
Each URI example is followed by a description of what the end user sees after clicking the URI link.
1 vmware-view://view.mycompany.com/Primary%20Desktop?action=start-session
Horizon Client starts and connects to the view.mycompany.com server. The login dialog box
prompts the user for a user name, domain name, and password. After a successful login, the
client connects to the remote desktop that has the display name Primary Desktop, and the
user is logged in to the guest operating system.
Note In this example, the default display protocol and window size are used. The default
display protocol is PCoIP and the default window size is full screen.
You can change the defaults. See Using the vmware-view Command-Line Interface and
Configuration Files.
2 vmware-view://view.mycompany.com/
cn%3Dwin7-32%2Cou%3Dapplications%2Cdc%3Dvdi%2Cdc%3Dvmware%2Cdc%3Dint
Horizon Client starts and connects to the view.mycompany.com server. The login
dialog box prompts the user for a user name, domain name, and password.
After a successful login, the client connects to the remote desktop that has the
desktop ID CN=win7-32,OU=Applications,DC=vdi,DC=vmware,DC=int (encoded value
cn%3Dwin7-32%2Cou%3Dapplications%2Cdc%3Dvdi%2Cdc%3Dvmware%2Cdc%3Dint).
3 vmware-view://view.mycompany.com:7555/Primary%20Desktop
This URI has the same effect as the previous example, except that it uses the nondefault port of
7555 for the Connection Server instance. (The default port is 443.) Because a remote desktop
identifier is provided, the remote desktop opens, even though the start-session action is
not included in the URI.
4 vmware-view://[email protected]/Finance%20Desktop?desktopProtocol=PCOIP
Horizon Client starts and connects to the view.mycompany.com server. In the login dialog
box, the User name text box is populated with fred. The user must supply the domain name
and password. After a successful login, the client connects to the remote desktop that has the
display name Finance Desktop, and the user is logged in to the guest operating system. The
connection uses the PCoIP display protocol.
VMware, Inc. 57
VMware Horizon Client for Linux Installation and Setup Guide
5 vmware-view://view.mycompany.com/Calculator?action=start-session&appProtocol=BLAST
Horizon Client starts and connects to the view.mycompany.com server. In the login dialog
box, the user must supply the user name, domain name, and password. After a successful
login, the client connects to the published application that has the display name Calculator.
The connection uses the VMware Blast display protocol.
6 vmware-view://[email protected]/Finance%20Desktop?domainName=mycompany
Horizon Client starts and connects to the view.mycompany.com server. In the login dialog
box, the User name text box is populated with fred, and the Domain text box is populated
with mycompany. The user must supply only a password. After a successful login, the client
connects to the remote desktop that has the display name Finance Desktop, and the user is
logged in to the guest operating system.
7 vmware-view://view.mycompany.com/
Horizon Client starts and the user is taken to the login prompt for connecting to the
view.mycompany.com server.
8 vmware-view://view.mycompany.com/Primary%20Desktop?action=reset
Horizon Client starts and connects to the view.mycompany.com server. The login dialog box
prompts the user for a user name, domain name, and password. After a successful login,
Horizon Client resets the specified desktop.
Note This action is available only if a Horizon administrator has enabled the reset feature for
the remote desktop.
9 vmware-view://view.mycompany.com/Primary%20Desktop?action=restart
Horizon Client starts and connects to the view.mycompany.com server. The login dialog box
prompts the user for a user name, domain name, and password. After a successful login,
Horizon Client restarts the specified desktop.
Note This action is available only if a Horizon administrator has enabled the restart feature for
the remote desktop.
10 vmware-view://
Horizon Client starts and the user is taken to the page for entering the address of a server.
11 vmware-view://10.10.10.10/My%20Notepad++?args=%22My%20new%20file.txt%22
Starts My Notepad++ on server 10.10.10.10 and passes the argument My new file.txt in the
published application start command. The filename is enclosed in double quotes because it
contains spaces.
VMware, Inc. 58
VMware Horizon Client for Linux Installation and Setup Guide
12 vmware-view://10.10.10.10/Notepad++%2012?args=a.txt%20b.txt
Starts Notepad++ 12 on server 10.10.10.10 and passes the argument a.text b.txt in the
published application start command. Because the argument is not enclosed in quotes, a
space separates the filenames and the two files are opened separately in Notepad++.
Note Published applications can differ in the way that they use command-line arguments. For
example, if you pass the argument a.txt b.txt to WordPad, WordPad opens only one file,
a.txt.
13 vmware-view://view.mycompany.com/Notepad?
unauthenticatedAccessEnabled=true&unauthenticatedAccessAccount=anonymous1
Horizon Client starts and connects to the view.mycompany.com server using the anonymous1
user account. The Notepad application starts without prompting the user to provide login
credentials.
<html>
<body>
</body>
</html>
Prerequisites
n Verify that your client device meets the requirements described in Smart Card Authentication
Requirements.
n (Optional) To make the Username hint field appear in the Horizon Client login dialog box,
enable the smart card user name hints feature in Connection Server. For more information, see
"Setting Up Smart Card Authentication" in the Horizon Administration document.
VMware, Inc. 59
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
2 Create a symbolic link to the pkcs11 library, which is used for smart card authentication.
sudo ln -s /usr/lib64/pkcs11/opensc-pkcs11.so
/usr/lib/vmware/view/pkcs11/libopenscpkcs11.so
Note Make sure that the symbolic link name to the opensc-pkcs11 library begins with lib.
You can allow H.264 decoding and High Efficiency Video Coding (HEVC). H.264 is an industry
standard for video compression, which is the process of converting digital video into a format that
takes up less capacity when it is stored or transmitted. When H.264 decoding is allowed, you can
also allow increased color fidelity. Increased color fidelity is not supported on ARM processors.
The maximum resolution that is supported depends on the capability of the graphical processing
unit (GPU) on the client. A GPU that can support 4K resolution for JPEG/PNG might not support
4K resolution for H.264.
H.264 decoding is supported on AMD, NVIDIA, and Intel GPUs. H.264 decoding requires that the
graphics library OpenGL 3.2 or later is installed for AMD and NVIDIA GPUs.
If you plan to use H.264 decoding with an NVIDIA GPU, install VDPAU (Video Decode and
Presentation API for UNIX). VDPAU is no longer included with the latest NVIDIA driver and must
be installed separately.
To use H.264 with an Intel GPU, the Intel VA-API driver and the GLX VA-API libraries are
required. Running the command vainfo shows the H.264 profiles.
To use HEVC 4:4:4 decoding with an Intel GPU, a Gen 10 (Ice Lake) or later CPU is required.
If your environment uses a proxy server, you can specify whether to allow VMware Blast
connections to an operating system proxy server.
For an SSL proxy server, you also need to configure certificate checking for secondary
connections through the SSL proxy server. For more information, see Setting the Certificate
Checking Mode in Horizon Client.
You can configure VMware Blast options before or after you connect to a server.
Prerequisites
To use High Efficiency Video Coding (HEVC), your environment must meet the following criterion:
VMware, Inc. 60
VMware Horizon Client for Linux Installation and Setup Guide
n For increased color accuracy with YUV 4:4:4, Horizon Agent 7.11 or later must be installed.
To use High Efficiency Video Coding (HEVC), Horizon Agent 7.7 or later must be installed. For
increased color accuracy with YUV 4:4:4, Horizon Agent 7.11 or later must be installed. In addition,
the client system must have a GPU that supports HEVC decoding.
Depending on the Horizon Agent version that is installed, a Horizon administrator can use agent-
side group policy settings to enable or deactivate VMware Blast features, including H.264 and
HEVC high color accuracy. For information, see "VMware Blast Policy Settings" in the Configuring
Remote Desktop Features in Horizon document.
Procedure
2 Select File > Configure VMware Blast from the menu bar.
3 To allow H.264 decoding in Horizon Client, select the Allow H.264 decoding check box.
n When this option is selected (the default setting), and the client GPU has an H.264
hardware decoder, Horizon Client uses H.264 4.2.0 hardware decoding.
n When this option is selected and if the client GPU does not have an H.264 hardware
decoder and the increased color fidelity feature is not allowed, Horizon Client uses H.264
4.2.0 software decoding.
n When this option is deselected, Horizon Client uses JPG/PNG decoding (with Horizon
Agent 7.x) or Blast Codec decoding (with Horizon Agent 2006 and later).
4 To allow increased color fidelity when H.264 decoding is allowed in Horizon Client, select the
High Color Accuracy (reduces battery life and performance) check box.
When this option is selected, Horizon Client uses H.264 4.4.4 software decoding, regardless
of whether or not the client GPU has an H.264 hardware decoder. Selecting this option might
reduce battery life and performance. This feature is deactivated by default.
5 To allow HEVC, select the Allow High Efficiency Video Decoding (HEVC) check box.
When this option is selected, performance and image quality are improved if the client
machine has a GPU that supports HEVC decoding. This feature is enabled by default.
If this option is selected but the client machine does not have a GPU that supports HEVC
decoding, or the agent does not support HEVC encoding, Horizon Client uses H.264 decoding
instead if H.264 is selected. Horizon Client uses Blast Codec decoding if H.264 is not selected.
6 To allow VMware Blast connections through a proxy server, select the Allow Blast connections
to use operating system proxy settings check box.
VMware, Inc. 61
VMware Horizon Client for Linux Installation and Setup Guide
Results
Changes take effect the next time a user connects to a remote desktop or published application
and selects the VMware Blast display protocol. Your changes do not affect existing VMware Blast
sessions.
Note To use cursor event handling, Horizon Agent 2006 or later must be installed on the remote
desktop.
Setting Description
You can also configure cursor event handling on the agent machine. For example, you can use the
agent-side Cursor Warping group policy setting to configure cursor warping, and you can modify
Windows registry settings on the agent machine to enable or disable coalescing mouse movement
events and the low-latency channel. The settings on both the client and agent must match for the
feature to be enabled. For information about the agent-side settings, see the Configuring Remote
Desktop Features in Horizon document.
VMware, Inc. 62
VMware Horizon Client for Linux Installation and Setup Guide
For information about configuring Horizon to join the CEIP, see the Horizon Administration
document.
VMware collects data about client systems to prioritize hardware and software compatibility. If
your Horizon administrator has opted to participate in the customer experience improvement
program, VMware collects anonymous data about your deployment to respond better to customer
requirements. VMware does not collect data that identifies your organization. Horizon Client
information is sent first to the Connection Server instance and then to VMware, along with data
about Connection Server, desktop pools, and remote desktops.
The information is encrypted when it is in transit to the Connection Server instance. The
information on the client system is logged unencrypted in a user-specific directory. The logs do
not contain personally identifiable information.
A Horizon administrator can select whether to participate in the VMware customer experience
improvement program when installing Connection Server or by setting an option in Horizon
Console after the installation.
Table 3-5. Data Collected from Horizon Clients for the Customer Experience Improvement
Program
Product name No
VMware, Inc. 63
VMware Horizon Client for Linux Installation and Setup Guide
Table 3-5. Data Collected from Horizon Clients for the Customer Experience Improvement
Program (continued)
Procedure
2 Select File > Configure data sharing from the menu bar.
You can configure one of the following certificate verification strategies for end users.
n End users are allowed to select the certificate checking mode in Horizon Client.
n (Warn) If the server presents a self-signed certificate, end users are warned. Users can
determine whether to allow this type of connection.
n (Full security) Full verification is performed and connections that do not pass full verification
are rejected.
If you use an SSL proxy server to inspect traffic sent from the client environment to the Internet,
you can configure certificate checking for secondary connections through the SSL proxy server.
This feature applies to both Blast Secure Gateway and secure tunnel connections. You can also
allow proxy server use for VMware Blast connections.
For information about the types of certificate checks that can be performed, see Setting the
Certificate Checking Mode in Horizon Client.
You can set the default certificate checking mode and proxy server settings by setting properties
in the /etc/vmware/view-mandatory-config file.
VMware, Inc. 64
VMware Horizon Client for Linux Installation and Setup Guide
To set the default certificate checking mode, set the view.sslVerificationMode property to
one of the following values.
To configure the certificate checking mode so that end users cannot change it, set the
view.allowSslVerificationMode property to "False". To set this property from the command
line, see Horizon Client Configuration Settings and Command-Line Options.
To configure the Allow connection via an SSL Proxy setting so that end users cannot change it,
set the view.allowAllowSslProxy key to "False".
To set the default Allow connection via an SSL Proxy setting, set the view.allowSslProxy
property. "True" enables the setting and "False" deactivates the setting.
To set the default Allow Blast connections to use operating system proxy settings setting, set
the view.allowBlastProxy property. "True" enables the setting and "False" deactivates the
setting.
To configure the Allow Blast connections to use operating system proxy settings setting so that
end users cannot change it, set the view.allowAllowBlastProxy key to False.
These options are also used to encrypt the USB channel (communication between the USB service
daemon and the agent).
With the default setting, cipher suites use 128-bit or 256-bit AES, remove anonymous DH
algorithms, and then sort the current cipher list in order of encryption algorithm key length.
By default, TLS v1.1 and TLS v1.2 are enabled. SSL v2.0, SSL v3.0, and TLS v1.0 are not supported.
If you configure a security protocol for Horizon Client that is not enabled on the server to which
the client connects, a TLS error occurs and the connection fails.
Important At least one of the protocols that you enable in Horizon Client must also be enabled on
the remote desktop or USB devices cannot be redirected to the remote desktop.
On the client system, you can use either configuration file properties or command-line options for
these settings:
VMware, Inc. 65
VMware Horizon Client for Linux Installation and Setup Guide
For more information, see Using the vmware-view Command-Line Interface and Configuration
Files and look up the property and option names in the table in Horizon Client Configuration
Settings and Command-Line Options.
You might prefer to have some keys or key combinations handled by your local client system when
working in a remote desktop. For example, you might want to use a particular key combination
to start the screen saver on your client computer. You can create a file located at /etc/vmware/
view-keycombos-config and specify the key combinations and individual keys.
Place each key or key combination on a new line using the following format:
<modName>scanCode
scanCode
The first example is for a key combination. The second example is for a single key. The scanCode
value is the keyboard scan code, in hexadecimal.
In this example, modName is one of four modifier keys: ctrl, alt, shift, and super. The Super
key is keyboard-specific. For example, the Super key is usually the Windows key on a Microsoft
Windows keyboard but is the Command key on a Mac OS X keyboard. You can also use <any>
as a wildcard for modName. For example, <any>0x153 specifies all combinations of the Delete key,
including the individual Delete key for the US keyboard. The value you use for modName is not
case-sensitive.
PREVIOUS_TRACK 0x110
NEXT_TRACK 0x119
MUTE 0x120
CALCULATOR 0x121
VMware, Inc. 66
VMware Horizon Client for Linux Installation and Setup Guide
PLAY_PAUSE 0x122
STOP 0x124
VOLUME_DOWN 0x12e
VOLUME_UP 0x130
BROWSER_HOME 0x132
BROWSER_SEARCH 0x165
BROWSER_FAVORITES 0x166
BROWSER_REFRESH 0x167
BROWSER_STOP 0x168
BROWSER_FORWARD 0x169
BROWSER_BACK 0x16A
MY_COMPUTER 0x16B
MAIL 0x16C
MEDIA_SELECT 0x16D
HANGUL_EN 0x72
HANJA_EN 0x71
HANGUL_KO 0x172
HANJA_KO 0x171
HANGUL 0xF2
HANJA 0xF1
SYSTEM_SLEEP 0x15F
SYSTEM_WAKE 0x163
SYSTEM_POWER 0x15e
VMware, Inc. 67
VMware Horizon Client for Linux Installation and Setup Guide
Because the rdesktop program is no longer being actively developed, Horizon Client can also
run the xfreerdp executable if your Linux machine has the required version and patches for
FreeRDP.
Use a package manager, such as apt for Ubuntu or yum for RHEL, to install the latest version of
xfreerdp or rdesktop on the Linux machine.
Important If you plan to connect to remote desktops or applications on a Microsoft RDS host,
if that host is configured with the Per Device mode of licensing, you must use xfreerdp or else
change the licensing mode to Per User mode. The reason is that Per Device licensing mode
requires the RDP client to provide a client ID, and rdesktop does not provide that ID, whereas
xfreerdp does.
General Syntax
You can use the vmware-view command-line interface or some properties in configuration files to
specify options for xfreerdp, just as you can for rdesktop.
n To specify that Horizon Client should run xfreerdp rather than rdesktop, use the appropriate
command-line option or configuration key.
n To specify options to forward to the xfreerdp program, use the appropriate command-line
option or configuration key, and specify the FreeRDP options.
VMware, Inc. 68
VMware Horizon Client for Linux Installation and Setup Guide
For more information about using the vmware-view command-line interface and configuration
files, see Using the vmware-view Command-Line Interface and Configuration Files.
--enableNla
Also, you must add the /cert-ignore option so that the certificate verification process can
succeed. Following is an example of the correct syntax:
If the password contains any special characters, escape the special characters (for example: \$).
n You must escape special characters that you might normally place in quotation marks. For
example, the following command does not work because the special character $ in pa$$word
is not escaped:
n If end users will use a session-in-session implementation of Horizon Client, you must use
the /rfx option. An example of a session-in-session implementation is one in which an end
user logs in to Horizon Client on a thin client, so that the Horizon Client interface is the only
one the end user sees, and the end user then launches a nested version of Horizon Client in
order to use a remote application provided by an RDS host. In cases like this, if you do not use
the /rfx option, the end user will not be able to see the remote desktop and application icons
in the desktop and application selector of the nested client.
For a full list of other known issues with RDP connections, see the Horizon Client for Linux Release
Notes on the VMware Horizon Client for Linux Documentation page.
VMware, Inc. 69
VMware Horizon Client for Linux Installation and Setup Guide
Note FIPS Compatible Mode means Horizon Client for Linux implements a cryptographic
module that is designed for FIPS 140-2 compliance. This module was validated in operational
environments listed in CMVP certificate #2839 and was ported to this platform. However, the
CAVP and CMVP testing requirement to include the new operational environments in VMware's
NIST CAVP and CMVP certificates remains to be completed on the product roadmap.
Important If you enable FIPS Compatible mode in the client, the remote desktop must have FIPS
Compatible mode enabled as well. Mixed mode, where only the client, or only the desktop, has
FIPS Compatible mode enabled, is not supported.
usb.enableFIPSMode = "TRUE"
mks.enableFIPSMode = “TRUE”
View.fipsMode = ”TRUE”
pcoip.enable_fips_mode = 1
The PCoIP image cache captures spatial, as well as temporal, redundancy. For example, when you
scroll down through a PDF document, new content appears from the bottom of the window and
the oldest content disappears from the top of the window. All the other content remains constant
and moves upward. The PCoIP image cache is capable of detecting this spatial and temporal
redundancy.
Because during scrolling, the display information sent to the client device is primarily a sequence
of cache indices, using the image cache saves a significant amount of bandwidth. This efficient
scrolling has benefits both on the LAN and over the WAN.
n On the LAN, where bandwidth is relatively unconstrained, using client-side image caching
delivers significant bandwidth savings.
VMware, Inc. 70
VMware Horizon Client for Linux Installation and Setup Guide
n Over the WAN, to stay within the available bandwidth constraints, scrolling performance is
often degraded unless client-side caching is used. In this situation, client-side caching can save
bandwidth and ensure a smooth, highly responsive scrolling experience.
By default this feature is enabled, so that the client stores portions of the display that were
previously transmitted. The default cache size is 250MB. A larger cache size reduces bandwidth
usage but requires more memory on the client. A smaller cache size requires more bandwidth
usage. For example, a thin client with little memory requires a smaller cache size.
pcoip.image_cache_size_mb = 50
If you specify a value that is less than the amount of available memory divided by 2, the value is
rounded to the nearest multiple of 10. The minimum value is 50. Any value that is less than 50 is
ignored.
If you specify a value that is larger than the available memory divided by 2, the value is set to the
amount of available memory divided by 2 and rounded to the nearest multiple of 10.
You can set this property in any of several files. When Horizon Client starts up, the setting is
processed from various locations in the following order:
1 /etc/teradici/pcoip_admin_defaults.conf
2 ~/.pcoip.rc
3 /etc/teradici/pcoip_admin.conf
If a setting is defined in multiple locations, the value that is used is the value from the last file read.
Note You can set the following property to display a visual indication that the image cache is
working:
pcoip.show_image_cache_hits = 1
With this configuration, for every tile (32 x 32 pixels) in an image that comes from the image cache,
you can see a rectangle around the tile.
pcoip.enable_tile_based_image_caching = 0
VMware, Inc. 71
VMware Horizon Client for Linux Installation and Setup Guide
VMware, Inc. 72
Managing Remote Desktop
and Published Application
Connections
4
End users can use Horizon Client to connect to a server, log in to or off of remote desktops, and
use published applications. For troubleshooting purposes, end users can also restart and reset
remote desktops and reset published applications.
Depending on how you configure policies, end users might be able to perform many operations
on their remote desktops and published applications.
Before you have end users access their remote desktops and applications, test that you can
connect to a remote desktop or application from a client device. You must specify a server and
supply credentials for your user account.
Prerequisites
n Obtain login credentials, such as a user name and password, RSA SecurID user name and
passcode, RADIUS authentication credentials, or smart card personal identification number
(PIN).
n Obtain the NETBIOS domain name for logging in. For example, you might use mycompany
rather than mycompany.com.
n Perform the administrative tasks described in Preparing Connection Server for Horizon Client.
VMware, Inc. 73
VMware Horizon Client for Linux Installation and Setup Guide
n If you are outside the corporate network and require a VPN connection to access remote
desktops and published applications, verify that the client device is set up to use a VPN
connection and turn on that connection.
n Verify that you have the fully qualified domain name (FQDN) of the server that provides access
to the remote desktop or published application. Underscores (_) are not supported in server
names. If the port is not 443, you also need the port number.
n If you plan to use the RDP display protocol to connect to a remote desktop, verify that the
AllowDirectRDP agent group policy setting is enabled. For information, see the Configuring
Remote Desktop Features in Horizon document.
Procedure
1 Either open a terminal window and enter vmware-view or search the applications for VMware
Horizon Client, and double-click the icon.
2 Connect to a server.
Option Action
Connect to a new server Double-click the + Add Server button, or click New Server on the menu bar,
enter the name of a server, and click Connect.
Connect to an existing server Double-click the server icon, or right-click the server icon and select
Connect.
Connections between Horizon Client and the server always use TLS. The default port for TLS
connections is 443. If the server is not configured to use the default port, use the format
servername:port, for example, view.company.com:1443.
You might see a message that you must confirm before the login dialog box appears.
3 If you are prompted for RSA SecurID credentials or RADIUS authentication credentials, enter
the credentials and click Login.
4 If you are prompted for a user name and password, supply Active Directory credentials.
a Type the user name and password of a user who is entitled to use at least one desktop or
application pool.
If the Domain drop-down menu is disabled, you must type the user name as
domain\username or [email protected].
c Click Login.
VMware, Inc. 74
VMware Horizon Client for Linux Installation and Setup Guide
5 (Optional) To configure display settings for a remote desktop, right-click the remote desktop
icon and select Settings.
Option Action
Select a display protocol If a Horizon administrator has allowed it, use the Connect Via drop-down
menu to select the display protocol.
Select a display layout Use the Display drop-down menu to select a window size or to use multiple
monitors.
6 (Optional) To mark the remote desktop or published application as a favorite, right-click the
remote desktop or published application icon and select Mark as Favorite from the context
menu that appears.
A star icon appears in the upper-right corner of the remote desktop or published application
name. The next time you log in, you can click the Show Favorites button to find this
application or desktop quickly.
If you are connecting to a session-based remote desktop, which is hosted on a Microsoft RDS
host, and if the desktop is already set to use a different display protocol, you cannot connect
immediately. You are prompted to either use the protocol that is set or have the system log
you off the remote operating system so that a connection can be made with the protocol you
selected.
Results
If authentication to Connection Server fails or if the client cannot connect to the remote desktop or
application, perform the following tasks:
n Verify that the security certificate for Connection Server is working properly. If it is not, in
Horizon Console, you might also see that Horizon Agent on desktops is unreachable. These
symptoms indicate additional connection problems caused by certificate problems.
n Verify that the tags set on the Connection Server instance allow connections from this user.
See the Setting Up Published Desktops and Applications in Horizon document.
n Verify that the user is entitled to access this desktop or application. See the Setting Up
Published Desktops and Applications in Horizon or Setting Up Virtual Desktops in Horizon
document.
n If you are using the RDP display protocol to connect to a remote desktop, verify that the
remote operating system allows remote desktop connections.
VMware, Inc. 75
VMware Horizon Client for Linux Installation and Setup Guide
Before you have end users access their published applications using unauthenticated access, test
that you can connect to the published applications from a client device using an unauthenticated
access user account.
Prerequisites
Verify that your unauthenticated access users are created in Horizon Console. If the default
unauthenticated user is the only unauthenticated access user, the Horizon Client connects to the
Connection Server with the default user.
Procedure
1 Either open a terminal window and enter vmware-view or search the applications for VMware
Horizon Client, and double-click the icon.
2 In the Horizon Client home screen, select File > Unauthenticated Access from the menu bar, if
it is not already selected.
n If the server that you need has not yet been added, double-click the + Add Server button,
or click the New Server button in the menu bar. Then enter the name of the Connection
Server and click Connect.
n If the server that you need is displayed in the Horizon Client home screen, right-click the
icon for the server and select Connect from the context menu.
You might see a message that you must confirm before the login dialog box appears.
4 In the Server Login dialog box, specify the unauthenticated access account to use.
a Select a user account from the drop-down menu of existing unauthenticated access
accounts.
b (Optional) Click Always use this account if you want to bypass the Server Login dialog box
the next time you connect to the server.
c Click OK.
VMware, Inc. 76
VMware Horizon Client for Linux Installation and Setup Guide
The application selector window appears and displays the published applications that the
unauthenticated access account is authorized to use.
Note If you selected the Always use this account option during a previous unauthenticated
access login session, you are not prompted for the account to use for the current
unauthenticated access session. To deselect this option, right-click the icon for the server in
the Horizon Client home screen, and select Wipe Unauthenticated Account (<saved account
name>) from the context menu.
The Disconnect from Session dialog box appears asking if you want to disconnect from the
server.
Results
If the session timeout specified by your Horizon administrator is reached, the session is
automatically disconnected from the server.
Shared drives can include mapped drives and USB storage devices.
The client drive redirection feature does not support sharing Microsoft OneDrive, Google Drive,
and enterprise file storage.
In a Windows remote desktop, shared folders and drives appear in the This PC folder or in
the Computer folder, depending on the Windows operating system version. In a published
application, such as Notepad, you can browse to and open a file in a shared folder or drive.
The client drive redirection feature requires that the following library files be installed. On some
thin-client machines, these library files might not be installed by default.
n libsigc-2.0.so.0
n libglibmm-2.4.so.1
The client drive redirection settings apply to all remote desktops and published applications.
Prerequisites
To share folders and drives with a remote desktop or published application, the client drive
redirection feature must be installed in Horizon Agent. The client drive redirection feature is
installed by default.
VMware, Inc. 77
VMware Horizon Client for Linux Installation and Setup Guide
With Horizon Agent 7.9 and later, you can include or exclude folders on devices that have
specified vendor and product IDs from being redirected by using the Include Vid/Pid Device and
Exclude Vid/Pid Device group policy settings. For more information, see the Configuring Remote
Desktop Features in Horizon document.
Procedure
1 Open the Settings dialog box with the Sharing panel displayed.
Option Description
From the desktop and application Right-click a remote desktop or published application icon, select Settings,
selector window and click Drive Sharing. Alternatively, select Connection > Settings from the
menu bar and click Drive Sharing.
From the Sharing dialog box when Click Allow to share, or Deny to not share, your home directory.
you connect to a remote desktop or
published application
From within a remote desktop Select Connection > Settings from the menu bar and click Drive Sharing.
Option Action
Share a specific folder or drive Click the Add button, browse to and select the folder or drive to share, and
with remote desktops and published click Open.
applications
Note If a USB device is already connected to a remote desktop or published
application with the USB redirection feature, you cannot share a folder on the
USB device.
Stop sharing a specific folder or Select the folder or drive in the Folder list and click the Remove button.
drive
Give remote desktops and published Select the Share your home folder: home-directory check box.
applications access to files in your
home directory
VMware, Inc. 78
VMware Horizon Client for Linux Installation and Setup Guide
Option Action
Share USB storage devices with Toggle the Allow auto access to removable storage option to on. The client
remote desktops and published drive redirection feature shares all USB storage devices inserted in your
applications client system and all FireWire and Thunderbolt-connected external drives
automatically. Selecting a specific device to share is not necessary.
If this option is toggled off, you can use the USB redirection feature to
connect USB storage devices to remote desktops and published applications.
Do not show the Sharing dialog Select the Do not show dialog when connecting to a desktop or application
box when you connect to a remote check box.
desktop or published application If this check box is deselected, the Sharing dialog box appears the first time
you connect to a remote desktop or published application. For example, if
you log in to a server and connect to a remote desktop, you see the Sharing
dialog box. If you then connect to another remote desktop or published
application, you do not see the dialog box. To see the dialog box again, you
must disconnect from the server and log in again.
3 Click Apply.
What to do next
Verify that you can see the shared folders from within the remote desktop or published
application.
n In a Windows remote desktop, open File Explorer and look in the This PC folder, or open
Windows Explorer and look in the Computer folder, depending on the Windows operating
system version.
n In a published application, select File > Open or File > Save As and navigate to the folder or
drive.
The folders and drives that you selected for sharing might use one (or more) of the following
naming conventions.
For some Horizon Agent versions, a redirected folder can have two entrances, such as under
Devices and drives and Network locations in Windows 10, and both entrances can appear at the
same time. If all the volume labels (from A: through Z:) are already in use, the redirected folder has
only one entrance.
VMware, Inc. 79
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
1 Create a configuration file named config if it does not exist in any of the following locations:
n $HOME/.vmware/
n /usr/lib/vmware/
n /etc/vmware/
2 Add the following line for each folder that you want to share:
tsdr.share=Folder Path
For example, to share folders / and /home/user1, create the file /etc/vmware/config and
add the following lines:
tsdr.share=/
tsdr.share=/home/user1
Results
Folders that are shared in a configuration file are not listed in the Sharing pane of the Settings
dialog. You can edit the configuration file to stop sharing folders or share additional folders.
n Is the certificate intended for a purpose other than verifying the identity of the sender and
encrypting server communications? That is, is it the correct type of certificate?
n Has the certificate expired, or is it valid only in the future? That is, is the certificate valid
according to the computer clock?
n Does the common name on the certificate match the host name of the server that sends it? A
mismatch can occur if a load balancer redirects Horizon Client to a server that has a certificate
that does not match the host name entered in Horizon Client. Another reason a mismatch can
occur is if you enter an IP address rather than a host name in the client.
For information about distributing a self-signed root certificate that users can install on their Linux
client systems, see the Ubuntu documentation.
VMware, Inc. 80
VMware Horizon Client for Linux Installation and Setup Guide
Horizon Client uses the PEM-formatted certificates stored in the /etc/ssl/certs directory on
the client system. For information about importing a root certificate stored in this location, see
"Importing a Certificate into the System-Wide Certificate Authority Database" in the document at
https://help.ubuntu.com/community/OpenSSL.
If a Horizon administrator has allowed it, you can set the certificate checking mode. To set the
certificate checking mode, start Horizon Client and select File > Preferences from the menu bar.
You can select one of the following options.
n Never connect to untrusted servers. This setting means that you cannot connect to the server
if any of the certificate checks fail. An error message lists the checks that failed.
n Warn before connecting to untrusted servers. This setting means that you can click Continue
to ignore the warning if a certificate check fails because the server uses a self-signed
certificate. For self-signed certificates, the certificate name is not required to match the server
name that you entered in Horizon Client. You can also receive a warning if the certificate has
expired.
n Do not verify server identity certificates. This setting means that no certificate checking
occurs.
You can configure the default certificate checking mode and prevent end users from changing it
in Horizon Client. For more information, see Configuring the Certificate Checking Mode for End
Users.
To allow VMware Blast connections through a proxy server, see Configure VMware Blast Options.
VMware, Inc. 81
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
u Select a remote desktop or application from the same server or a different server.
Option Action
You can log off from a remote desktop even if you do not have the remote desktop open. This
feature has the same result as sending Ctrl+Alt+Del to the remote desktop and then clicking Log
Off.
VMware, Inc. 82
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
Option Action
Also quit Horizon Client Click the Close button in the corner of the window or select File > Quit from
the menu bar.
Select a different remote desktop on Select Desktop > Disconnect from the menu bar.
the same server
Select a remote desktop on a Select File > Disconnect from server from the menu bar.
different server
Note A Horizon administrator can configure remote desktops to log off automatically when
they are disconnected. In that case, any open applications in the remote desktop are stopped.
Option Action
From within the remote desktop Use the Windows Start menu to log off.
From the menu bar Select Desktop > Disconnect and Log off.
If you use this procedure, files that are open on the remote desktop are
closed without being saved first.
a From the Home screen with desktop shortcuts, select the desktop and select Desktop >
Log off from the menu bar.
VMware, Inc. 83
Working in a Remote Desktop or
Published Application 5
Horizon Client for Linux provides a familiar, personalized desktop and application environment.
End users can access USB and other devices connected to their local computer, send documents
to any printer that their local computer can detect, authenticate with smart cards, and use multiple
display monitors.
n Supported Languages
n Using Scanners
VMware, Inc. 84
VMware Horizon Client for Linux Installation and Setup Guide
This version of Horizon Client works with Windows virtual desktops that have Horizon Agent
7.5 or later installed. Supported guest operating systems include Windows 7, Windows 8.x, and
Windows 10, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019, with the
following limitations:
n Windows Server 2019 virtual desktops require Horizon Agent 7.7 or later.
n Windows 7 and Windows 8.x virtual desktops are not supported with Horizon Agent 2006 and
later.
This version of Horizon Client works with RDS hosts that have Horizon Agent 7.5 or later installed.
Supported guest operating systems include Windows Server 2012, Windows Server 2012 R2,
Windows Server 2016, and Windows Server 2019, with the following limitations:
n Windows Server 2019 RDS hosts require Horizon Agent 7.7 or later.
n Window Server 2012 RDS hosts are not supported with Horizon Agent 2006 and later.
Feature Requirements
Serial port redirection For Windows virtual desktops, Horizon Agent 7.9 or later
For RDS hosts, Horizon Agent 7.6 or later
This version of Horizon Client for Linux does not support the following remote desktop features,
which are supported in Horizon Agent 7.x releases:
Note The vendor and model of each thin-client device, and the configuration that an enterprise
chooses to use, determine the features that are available for the device. For information about
the vendors and models for thin-client devices, see the VMware Compatibility Guide at http://
www.vmware.com/resources/compatibility/search.php?deviceCategory=vdm.
VMware, Inc. 85
VMware Horizon Client for Linux Installation and Setup Guide
Supported Languages
The user interface and documentation are available in English, Japanese, French, German,
Simplified Chinese, Traditional Chinese, Korean, and Spanish.
n Enable Xinerama. If you do not enable Xinerama, the primary display might be identified
incorrectly.
n The menu bar appears on the top-left-most monitor. For example, if you have two monitors
side by side and the top of the left monitor is lower than the top of the right monitor, the menu
bar appears on the right monitor because the right monitor is still the top-left-most monitor.
n You can use up to four monitors if you have enough video RAM.
To use more than two monitors to display your remote desktop on an Ubuntu client system,
you must configure the kernel.shmmax setting correctly. Use the following formula:
n Horizon Client uses the monitor configuration that is in use when Horizon Client starts. If you
change a monitor from landscape to portrait mode or if you plug an additional monitor into the
client system while Horizon Client is running, you must restart Horizon Client to use the new
monitor configuration.
n If you use two monitors, the monitors are not required to be in the same mode. For example,
if you are using a laptop connected to an external monitor, the external monitor can be in
portrait mode or landscape mode.
VMware, Inc. 86
VMware Horizon Client for Linux Installation and Setup Guide
n Monitors can be placed side by side, stacked 2 by 2, or vertically stacked only if you are using
two monitors.
n If you specify that you want to use all monitors, and if you are using the VMware Blast or
PCoIP display protocol, you can specify a subset of adjacent monitors to use by right-clicking
the desktop in the desktop selector window, selecting Full Screen - All Monitors from the
Display drop-down menu, and clicking to select the monitors you want to use.
Note If you have an Ubuntu client system, you must select the top-left-most monitor as one of
the monitors. For example, if you have four monitors stacked 2 X 2, you must select either the
two monitors on top or the two left-most monitors.
Screen Resolution
Consider the following guidelines when setting screen resolutions:
n If you open a remote desktop on a secondary monitor and then change the screen resolution
on that monitor, the remote desktop moves to the primary monitor.
n If you use more than two monitors, the monitors must use the same screen resolution.
n With the VMware Blast display protocol or the PCoIP display protocol, a remote desktop
screen resolution of 4K (3840 x 2160) is supported. The number of 4K displays that are
supported depends on the hardware version of the desktop virtual machine and the Windows
version.
Number of 4K Displays
Hardware Version Windows Version Supported
11 7 1
(3D rendering feature enabled)
11 8, 8.x, 10 1
13 or 14 7, 8, 8.x, 10 1
(3D rendering feature enabled)
13 or 14 7, 8, 8.x, 10 4
For the best performance, the virtual machine should have at least 2 GB of RAM and 2 vCPUs.
This feature might require good network conditions, such as a bandwidth of 1000 Mbps with
low network latency and a low package loss rate.
Note When the remote desktop screen resolution is set to 3840 x 2160 (4K), items on the
screen might appear smaller, and you might not be able to use the Screen Resolution dialog
box in the remote desktop to make text and other items larger.
VMware, Inc. 87
VMware Horizon Client for Linux Installation and Setup Guide
n With RDP, if you have multiple monitors, you cannot adjust the resolution for each monitor
separately.
Touchscreen Gestures
You can use touchscreen gestures with a remote desktop or application in either full-screen mode
or window mode. Touchscreens also work with the Horizon Client user interface.
Note To use a touchscreen with the Horizon Client user interface, you must have GTK 3.24.28 or
later installed on your client device.
Keyboard Limitations
Generally, keyboards work as well with a remote desktop as they do with a physical computer.
Following is a list of the limitations you might encounter, depending on the type of peripherals and
software on your client system:
n If you use the PCoIP display protocol and want the remote desktop to detect which keyboard
map your client system uses, such as, for example, a Japanese keyboard or a German
keyboard, you must set a GPO in Horizon Agent. Use the Turn on PCOIP user default input
language synchronization policy, available as part of the View PCoIP Session Variables ADM
template file. For more information, see the Configuring Remote Desktop Features in Horizon
document.
n Some multimedia keys on a multimedia keyboard might not work. For example, the Music key
and My Computer key might not work.
n An administrator can configure which keyboard shortcuts to send to the remote desktop and
which keyboard shortcuts to send instead to the client system when a desktop session is open.
For more information, see the VMware Horizon Client for Linux Installation and Setup Guide.
n If you connect to a desktop using RDP and if you have the Fluxbox window manager, if a
screen saver is running in the remote desktop, after a period of inactivity, the keyboard might
stop working.
Regardless of which window manager you use, it is a good practice to turn off the screen saver
on a remote desktop and avoid specifying a sleep timer.
You can select up to four adjacent monitors. The monitors can be side by side, or stacked
vertically. For example, you might configure two rows of two monitors each.
Prerequisites
VMware, Inc. 88
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
2 In the desktop and application selector window, right-click the remote desktop and select
Settings.
3 From the Display drop-down menu, select Full Screen - All Monitors.
Thumbnails of the monitors that are currently connected to the client system appear below
the display settings. The display topology matches the display settings on the client system. If
you disconnect or connect a monitor to the client system, the thumbnails update to reflect the
current monitor configuration.
4 To select or deselect a monitor on which to display the remote desktop window, click a
thumbnail.
Your changes are applied immediately when you connect to the remote desktop. Horizon
Client saves the display settings for that remote desktop so that the desktop opens with the
specified display each time you reconnect to it.
Prerequisites
Procedure
2 Right-click the remote desktop in the desktop and application selection window and select
Settings.
3 From the Display drop-down menu, select Full Screen - This Monitor, Large Screen, Small
Screen, or Custom Size.
Large Screen maximizes the window size. Small Screen sets the window size to 640 x 480
pixels in 100 percent scaling. If you select Custom Size, you can select a specific window size.
Results
By default, the remote desktop window opens on the primary monitor. You can drag the remote
desktop window to a non-primary monitor, and the next time you open the remote desktop, the
VMware, Inc. 89
VMware Horizon Client for Linux Installation and Setup Guide
remote desktop window appears on that same monitor. The window opens, is centered in the
monitor, and uses the window size that you selected for the display mode, not a size that you
might have created by dragging the window to resize it.
You can select up to four adjacent monitors. The monitors can be side by side, or stacked
vertically. For example, you might configure two rows of two monitors each.
n For an application published on an RDS host, you can select up to four adjacent monitors.
n For an application published on a Windows 10-hosted desktop, you can select up to three
adjacent monitors. For information about Windows 10-hosted applications, see the "Deploying
Applications that Run on Desktop Pools with VM Hosted Applications" topic in the Setting Up
Virtual Desktops in Horizon document for your Horizon Agent version.
Prerequisites
Procedure
2 Click the Settings button (gear icon) in the upper-right corner of the desktop and application
selection window.
Thumbnails of the monitors that are currently connected to the client system appear below the
display settings. The display topology matches the display settings on the client system.
VMware, Inc. 90
VMware Horizon Client for Linux Installation and Setup Guide
Scaling feature, a remote desktop supports the client machine's scaling setting and appears
normal-sized rather than very small.
Note The DPI Scaling feature is not supported on Raspberry Pi devices and does not work with
published applications.
In a multiple-monitor setup, using display scaling does not affect the number of monitors and the
maximum resolutions that Horizon Client supports. When display scaling is allowed and is in effect,
scaling is based on the DPI setting of the system.
Procedure
2 In the desktop and application selector window, right-click the remote desktop and select
Settings.
3 To turn on Display Scaling, select the Allow display scaling check box.
When the DPI Synchronization feature and the Display Scaling feature are both enabled, only one
feature takes effect at any given time. Display scaling occurs only when DPI synchronization has
not yet taken effect (that is, before the DPI setting on the remote desktop matches the DPI setting
on the client system), and display scaling stops working after the DPI settings match.
The DPI Synchronization agent group policy setting determines whether the DPI Synchronization
feature is enabled. The feature is enabled by default.
Beginning with Horizon Agent 2012, the client's per-monitor DPI setting is synchronized to the
agent and changes take effect immediately during a remote session by default. This feature
is controlled by the DPI Synchronization Per Monitor agent group policy setting. The DPI
Synchronization Per Monitor feature is supported by default for virtual desktops and physical
desktops. It is not supported for published desktops.
With earlier Horizon Agent versions, Horizon Client supports synchronization only to the system
DPI setting. DPI Synchronization happens during the initial connection, and Display Scaling works
in case of reconnection, if necessary. When DPI Synchronization works and the client system's
DPI setting matches the remote desktop's DPI setting, Display Scaling cannot take effect, even if
you toggle the Allow Display Scaling option to on in the user interface. Windows does not allow
VMware, Inc. 91
VMware Horizon Client for Linux Installation and Setup Guide
users to change the system-level DPI setting for the current user session, and DPI synchronization
occurs only when they log in and start a remote session. If users change the DPI setting during
a remote session, they must log out and log in again to make the remote desktop's DPI setting
match the client system's new DPI setting.
Note The system DPI setting might not be the same as the main monitor's DPI setting. For
example, if you close the main monitor and the system switches to an external display that has
a different DPI setting than the main monitor, the system DPI setting is still the same as the DPI
setting of the previously closed main monitor.
This version of Horizon Client does not support the DPI Synchronization Per Connection agent
group policy setting, which is provided with Horizon Agent versions 7.8 through 2006.
For more information about the DPI synchronization group policy settings, see the Configuring
Remote Desktop Features in Horizon document for your Horizon Agent version.
Note For Windows server machines that are configured as a desktop, the DPI Synchronization
Per Monitor feature is not supported.
VMware, Inc. 92
VMware Horizon Client for Linux Installation and Setup Guide
Note For RDS hosts, the DPI Synchronization Per Monitor feature is not supported. This
limitation does not apply to published applications that run on desktop pools with the VM Hosted
Applications feature.
n If you change the DPI setting on the client system, but the DPI setting does not change in the
remote desktop, you might need to log out and log in again to make Horizon Client aware of
the new DPI setting on the client system.
n If you start a remote session on a client system that has a DPI setting of more than 100
percent, and then use the same session on another client system that has a different DPI
setting of more than 100 percent, you might need to log out and log back in to the remote
session on the second client system to make DPI synchronization work on the second client
system.
n If a Horizon administrator changes the DPI Synchronization group policy setting value for
Horizon Agent on a Windows remote desktop, you must log out and log in again to make the
new setting take effect.
Custom display resolution and display scaling settings are stored only on the local client system. If
you log in to the remote desktop from a different system, the settings are not applied.
n Customizing the display resolution and scaling for a remote desktop is not supported in
multiple-monitor mode.
n If you select a custom resolution that is higher than the client resolution, Horizon Client resizes
the remote desktop window to fit the client window. If you select a custom resolution that is
lower than the client resolution, black bars appear in the remote desktop window.
n If you customize the display resolution during a remote desktop session, your changes take
effect immediately. If you customize display scaling during a remote desktop session, you must
log out and log back in to make your changes take effect.
VMware, Inc. 93
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
3 In the desktop and application selector window, right-click the remote desktop and select
Settings.
5 From the Display drop-down menu, select Full Screen - This Monitor, Large Screen, Small
Screen, or Custom.
Note If you select the Full Screen - All Monitors option, the Resolution and Scaling drop-
down menus are hidden, and you cannot customize the display resolution or scaling of remote
desktops.
6 To customize the display resolution, select a resolution from the Resolution drop-down menu.
If you select Automatic (the default setting), Horizon Client fits the remote desktop to the
client window size. If the remote desktop does not support the display resolution that you
select, it uses the default setting.
7 To customize display scaling, select a scaling size from the Scaling drop-down menu.
If you select Automatic (the default setting), Horizon Client sets the display scaling percentage
based on the display resolution that you select.
Procedure
VMware, Inc. 94
VMware Horizon Client for Linux Installation and Setup Guide
n Click the Settings (gear) icon in the upper-right corner of the desktop and application
selection window and select the remote desktop in the left pane.
n Right-click the remote desktop in the desktop and application selection window and select
Settings.
3 To enable the lock key synchronization feature, select the Automatically synchronize the
keypad, scroll and caps lock keys check box and click Close.
Note If the remote desktop does not support the capability to synchronize the lock key state,
the Automatically synchronize the keypad, scroll and caps lock keys check box appears
dimmed and cannot be selected.
Results
The lock key synchronization feature is enabled for the remote desktop.
This feature supports the following keyboard input source languages on the client system.
n English
n French
n German
n Japanese
n Korean
n Spanish
n Simplified Chinese
n Traditional Chinese
Synchronization does not occur if the keyboard input source language is not supported.
Keyboard input source language synchronization is controlled by the agent-side Keyboard locale
synchronization group policy setting. For more information, see "VMware Blast Group Policy
Settings" in the Configuring Remote Desktop Features in Horizon document.
VMware, Inc. 95
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
2 Click the Settings (gear) icon in the upper-right corner of the desktop and application selection
window.
In most circumstances, if you are using applications that do not require 3D rendering, Horizon
Client transmits information about mouse pointer movements by using absolute coordinates.
Using absolute coordinates, the client renders the mouse movements locally, which improves
performance, especially if you are outside the corporate network.
For work that requires using graphics-intensive applications, such as AutoCAD, or for playing 3D
video games, you can improve mouse performance by enabling the relative mouse feature, which
uses relative, rather than absolute, coordinates.
The Horizon Client relative mouse feature is not enabled by default. You can use the
view.enableRelativeMouse configuration key in the ~/.vmware/view-preferences file to enable
or disable Horizon Client relative mouse and prevent users from changing the setting in the
Horizon Client user interface. You must configure the relative mouse setting before end users
connect to a server. The setting is applied to the current desktop connection session. If the
Horizon Client relative mouse setting is configured using the ~/.vmware/view-preferences file,
end users cannot change the setting after connecting to a server.
When the relative mouse feature is enabled, performance might be slow if you are outside the
corporate network, on a WAN.
Prerequisites
A Horizon administrator must turn on 3D rendering for the desktop pool. For information about
pool settings and the options available for 3D rendering, see the Setting Up Virtual Desktops in
Horizon or Setting Up Published Desktops and Applications in Horizon document.
Procedure
VMware, Inc. 96
VMware Horizon Client for Linux Installation and Setup Guide
4 Select Connection > Enable Relative Mouse from the Horizon Client menu bar.
The option is a toggle. To disable the relative mouse feature, select Connection > Enable
Relative Mouse again.
Note If you use Horizon Client in windowed mode rather than full-screen mode and the
relative mouse feature is enabled, you might not be able to move the mouse pointer to the
Horizon Client menu options or move the pointer outside of the Horizon Client window. To
resolve this situation, press Ctrl+Alt.
When you use the USB redirection feature, most USB devices that are attached to the local client
system become available from menus in Horizon Client. You can use the menus to connect and
disconnect the devices.
You can redirect locally connected USB thumb flash drives and hard disks for use in published
desktops and applications. Published desktops and applications can also support more generic
USB devices, including TOPAZ Signature Pad, Olympus Dictation Foot pedal, and Wacom
signature pad. Other types of USB devices, including security storage drives and USB CD-ROM
drives, are not supported in published desktops and applications.
You can connect USB devices to a remote desktop or published application either manually or
automatically.
Important The following procedures describe how to use Horizon Client to connect USB devices
to a remote desktop or published application. You can also configure USB redirection by using a
configuration file or by creating a group policy. For more information about using a configuration
file, see Chapter 6 Configuring USB Redirection on the Client. For more information about creating
group policies, see the Configuring Remote Desktop Features in Horizon document.
Prerequisites
n To use USB devices with a remote desktop or published application, a Horizon administrator
must enable the USB feature.
This task includes installing the USB Redirection component of Horizon Agent, and can include
setting policies regarding USB redirection. For more information, see the Configuring Remote
Desktop Features in Horizon document and Setting USB Configuration Properties.
n The USB Redirection component must be installed in Horizon Client. If you did not include this
component in the installation, uninstall the client and run the installer again to include the USB
Redirection component.
VMware, Inc. 97
VMware Horizon Client for Linux Installation and Setup Guide
Procedure
b From the Horizon Client menu bar, click Connect USB Device.
The device is redirected from the local system to the remote desktop.
b In the desktop and application selector window, open the published application.
The name of the application is the name that your administrator has configured for the
application.
c In the desktop and application selector window, right-click the application icon and select
Settings.
e In the right pane, select the USB device and click Connect.
Note The name of the application in the list comes from the application itself and
might not match the application name that your administrator configured to appear in
the desktop and application selector window.
Horizon Client connects the USB device to the published application that you selected. The
USB device is also available to other applications in the same farm as the application that
you selected. After you close the application, the USB device is not released right away.
g (Optional) To configure Horizon Client to connect the USB device automatically to the
published application when the application is started, select the Auto-connect at Startup
check box and click Apply.
VMware, Inc. 98
VMware Horizon Client for Linux Installation and Setup Guide
h (Optional) To configure Horizon Client to connect the USB device automatically to the
published application when you plug the device into the local system, select the Auto-
connect when inserted check box and click Apply.
j When you are finished using the application, release the USB device so that you can
access it from your local system. In the desktop and application selector window, open the
Settings window again, select USB Devices, and select Disconnect.
u Configure Horizon Client to connect USB devices automatically to a remote desktop when
Horizon Client starts.
b From the Horizon Client menu bar, click Connect USB Device.
USB devices that you connect to your local system after you start Horizon Client are redirected
to the remote desktop.
u Configure Horizon Client to connect USB devices automatically to a remote desktop when you
plug them in to the local system.
The remote desktop must be activated and in the foreground for this behavior to take effect.
Enable this option if you plan to connect devices that use MTP drivers, such as Android-based
Samsung smart phones and tablets. This option is not selected by default.
a Before you plug in the USB device, start Horizon Client and connect to a remote desktop.
b From the Horizon Client menu bar, click Connect USB Device.
VMware, Inc. 99
VMware Horizon Client for Linux Installation and Setup Guide
USB devices that you connect to your local system after you start Horizon Client are redirected
to the remote desktop.
Note You can also configure automatically connecting USB devices to remote
desktops using the configuration file options view.usbAutoConnectAtStartUp and
view.usbAutoConnectOnInsert. For more information, see Horizon Client Configuration
Settings and Command-Line Options.
Results
If the USB device does not appear in the remote desktop or published application after several
minutes, disconnect and reconnect the device to the client system.
What to do next
If you have problems with USB redirection, see the topic about troubleshooting USB redirection
problems in the Configuring Remote Desktop Features in Horizon document.
n When you access a USB device from a menu in Horizon Client and use the device in a remote
desktop or published application, you cannot access the USB device on the local device.
n USB devices that do not appear in the menu, but are available in a remote desktop or
published application, include human interface devices such as keyboards and pointing
devices. The remote desktop or published application, and the local device, use these devices
at the same time. Interaction with these USB devices can sometimes be slow because of
network latency.
n Large USB disk drives can take several minutes to appear in the remote desktop or published
application.
n Some USB devices require specific drivers. If a required driver is not already installed, you
might be prompted to install it when you connect the USB device to the remote desktop or
published application.
n If you plan to attach USB devices that use MTP drivers, such as Android-based Samsung smart
phones and tablets, configure Horizon Client so that it connects USB devices to the remote
desktop or published application automatically. Otherwise, if you try to manually redirect the
USB device by using a menu item, the device is not redirected unless you unplug the device
and then plug it in again.
n Do not connect to scanners by using the Connect USB Device menu. To use a scanner device,
use the scanner redirection feature. This feature is available for Horizon Client when used with
Horizon Agent 7.8 or later. See Using Scanners.
n The redirection of USB audio devices depends on the state of the network and is not reliable.
Some devices require a high data throughput even when they are idle. Audio input and output
devices work well with the Real-Time Audio-Video feature. You do not need to use USB
redirection for those devices.
n You cannot format a redirected USB drive in a published desktop unless you connect as an
administrator user.
Note Do not redirect USB devices such as USB Ethernet devices and touch screen devices to a
remote desktop or published application. If you redirect a USB Ethernet device, your client system
loses network connectivity. If you redirect a touch screen device, the remote desktop or published
application receives touch input but not keyboard input. If you have set the remote desktop or
published application to autoconnect USB devices, you can configure a policy to exclude specific
devices. See "Configuring Filter Policy Settings for USB Devices" in the Configuring Remote
Desktop Features in Horizon document.
If a Horizon administrator has configured the serial port redirection feature, and if you use the
VMware Blast or PCoIP display protocol, serial port redirection works in the virtual desktop or
RDS-hosted desktop without further configuration. For example, /dev/ttyS0 on the local client
system is redirected as COM1 on the remote desktop. Serial port /dev/ttyS1 is redirected as COM2.
If the /dev/ttyS port is already in use, it is mapped to avoid conflicts. For example, if COM1
and COM2 exist on the remote desktop, /dev/ttyS0 on the client system is mapped to COM3 by
default.
You must have any required device drivers installed on the local client system, but you do not
need to install the device drivers on the remote desktop. For example, if you use a USB-to-serial
adapter that requires specific device drivers to work on your local client system, you must install
those drivers, but only on the client system.
Important If you are using a device that plugs in to a USB-to-serial adapter, do not connect the
device from the Connect USB Device menu in Horizon Client. Doing so routes the device through
USB redirection and bypasses the serial port redirection feature.
When you click the serial port icon, the Serial COM Redirection for VMware Horizon context
menu appears. If an administrator has locked the configuration, the items in the context
menu are dimmed. The icon appears only if a Horizon administrator has configured the serial
port redirection feature and all requirements are met. For more information, see System
Requirements for Serial Port Redirection.
n In the context menu, the port items are listed as port mapped to port, for example, /dev/
ttyS0 mapped to COM1. The first port, which is /dev/ttyS0 in this example, is the physical port
or the USB-to-serial adapter on the local client system. The second port, which is COM1 in this
example, is the port used in the remote desktop.
In the COM Properties dialog box, you can configure a port to connect automatically when
a remote desktop session is started, or you can ignore DSR (data-set-ready signal), which is
required for some modems and other devices.
You can also change the port number that the remote desktop uses. For example, if the /dev/
ttyS0 port on the client system is mapped to COM3 in the remote desktop, you can change
the port number to COM1. If COM1 exists in the remote desktop, you might see COM1
(Overlapped). You can still use this overlapped port. The remote desktop can receive serial
data through the port from the server and also from the client system.
n Connect to a mapped COM port by selecting Connect to use the port in the remote desktop.
When a redirected COM port is opened and in use on a remote desktop, you cannot access
the port on the local computer. Conversely, when a /dev/ttyS port is in use on the local
computer, you cannot access the port on the remote desktop.
n You can then select the Disconnect command to disconnect and make the physical COM port
available for use on the client computer.
1 Start a remote desktop session and open a console window on the desktop.
2 Change to the directory location of the utility and run the following command.
vmwsprrdctl.exe -h
n Hardware ID information:
Note The utility does not provide the source COM port number on the client or the COM port
redirection status for any virtual COM port on the agent redirected from a client port that uses a
USB-to-serial adapter.
Using Scanners
With the scanner redirection feature, you can scan information into remote desktops with scanners
that are connected to the local client system. You can control scanner settings by selecting options
in the remote desktop interface. This feature redirects scanning data with a significantly lower
bandwidth than can be achieved by using USB redirection.
Scanner redirection supports scanning devices that are compatible with the SANE interface
standard. You must install the SANE scanner device drivers on the local client system. You do
not need to install the scanner device drivers on a remote desktop.
The scanner redirection feature does not support webcam devices. VMware recommends that you
use the Real-Time Audio-Video feature to redirect webcams.
Note Scanner redirection to the remote desktop does not work when you scan from an
application that supports the WIA (Windows Image Acquisition) standard. To use scanner
redirection, scan from an application that supports the TWAIN standard instead.
If a Horizon administrator has configured the scanner redirection feature, and if you use the
VMware Blast display protocol or the PCoIP display protocol, a scanner connected to your local
client system can be used in a remote desktop.
Important Do not connect a scanner from the Connect USB Device menu in Horizon Client. The
performance will be unusable.
When scanning data is redirected to a remote desktop, you cannot access the scanner on the local
client computer. Conversely, when a scanner is in use on the local client computer, you cannot
access it on the remote desktop.
Note When you connect a scanner to a USB port on the local client computer, Horizon Client
sends scanning data to the remote desktop through USB redirection by default. To send data
through scanner redirection instead, configure a USB redirection policy to exclude your scanning
device. For more information, see Setting USB Configuration Properties.
A Horizon administrator can configure group policy settings to control the options that available in
the VMware Horizon Scanner Redirection Preferences dialog box. For more information, see the
Configuring Remote Desktop Features in Horizon document.
Note If a Horizon administrator configures scanner redirection to use a specific scanner and that
scanner is not available, scanner redirection does not work.
If the scanner or serial port service does not start, restart the local client system.
Note You do not need to use the menu that appears when you click the scanner icon.
Scanner redirection works without any further configuration. If the menu that appears does
not list any scanners, an incompatible scanner is connected to the local client system. If the
scanner icon is not present, the scanner redirection feature is either disabled or not installed
on the remote desktop. The scanner icon also does not appear on local client systems that do
not support this feature.
n If you want the TWAIN Scanning Properties dialog box to appear even if a scanning
application does not display the scanning dialog box, click the Preferences option in the
scanner icon menu and select the Force the TWAIN Scanning Properties dialog check box.
n To display the actual scanner names rather than VMware Virtual nnn scanner, click the
Preferences option in the scanner icon menu and select the Use vendor defined names for
TWAIN scanners check box.
n To select options to control image compression or determine how to select the default
scanner, click the Preferences option in the scanner icon menu and select the Compression or
Defaults tab.
n Most scanners display a scanner settings dialog box by default, but some do not. For those
scanners that do not display settings options, you can use the Preferences option in the
scanner icon menu and select the Force the TWAIN Scanning Properties dialog option.
n To display the TWAIN Scanner Properties dialog box on the remote desktop, click the
Preferences option in the scanner icon menu and select the Agent (VMware Scanning
Properties dialog) check box. Horizon Client for Linux does not support the Client (Native
Scanning Properties dialog, if supported) option.
n Scanning too large an image or scanning at too high a resolution might not work. In this
case, you might see the scanning progress indicator freeze, or the scanner application might
exit unexpectedly. If you minimize the remote desktop, an error message might appear on
the local client system, notifying you that the resolution is set too high. To resolve this issue,
reduce the resolution or crop the image to a smaller size and scan again.
For information about setting up the Real-Time Audio-Video feature on the agent machine,
including configuring the frame rate and image resolution, see the Configuring Remote Desktop
Features in Horizon document.
Note This feature is available only with the version of Horizon Client for Linux provided by third-
party vendors or with the Horizon Client software available from the VMware Product Downloads
website.
During the setup of an application such as Skype, Webex, or Google Hangouts on a remote
desktop, you can select input and output devices from menus in the application.
For remote desktops and published applications, a redirected webcam is named VMware Virtual
Webcam in the application.
When the client computer uses the webcam, the remote session cannot use it at the same time.
Also, when the remote session uses the webcam, the client computer cannot use it at the same
time.
Important If end users use USB webcams, do not configure the client to forward devices through
USB redirection automatically. If the webcam connects through USB redirection, the performance
is not usable for video chat.
If more than one webcam is connected to the local client computer, you can configure a preferred
webcam to use in remote sessions.
With the Real-Time Audio-Video feature, audio input devices and audio output devices work
without requiring the use of USB redirection, and the amount of network bandwidth required is
greatly reduced. Analog audio input devices are also supported.
The following example procedure describes choosing a default microphone from the user interface
of an Ubuntu client system. The exact procedure can differ based on the Linux distribution running
on the client system. Administrators can also configure a preferred microphone by editing a
configuration file. See Select a Preferred Webcam or Microphone on a Linux Client System.
Prerequisites
n Verify that you have a USB microphone or another type of microphone installed and
operational on your client system.
n Verify that you are using the VMware Blast display protocol or the PCoIP display protocol for
your remote desktop.
Procedure
1 In the Ubuntu graphical user interface, select System > Preferences > Sound.
You can alternatively click the Sound icon on the right side of the toolbar at the top of the
screen.
The preferred webcam or microphone is used on the remote desktop if it is available, and if not,
another webcam or microphone is used.
With the Real-Time Audio-Video feature, webcams, audio input devices, and audio output devices
work without requiring the use of USB redirection, and the amount network bandwidth required is
greatly reduced. Analog audio input devices are also supported.
To set the properties in the /etc/vmware/config file and specify a preferred device, you must
determine the values of certain fields. You can search the log file for the values of these fields.
n For webcams, you set the rtav.srcWCamId property to the value of the UserId field for the
webcam and the rtav.srcWCamName property to the value of the Name field for the webcam.
The rtav.srcWCamName property has a higher priority than the rtav.srcWCamId property.
Both properties should specify the same webcam. If the properties specify different webcams,
the webcam specified by rtav.srcWCamName is used, if it exists. If it does not exist, the
webcam specified by rtav.srcWCamId is used. If both webcams are not found, the default
webcam is used.
n For audio devices, you set the rtav.srcAudioInId property to the value of the Pulse Audio
device.description field.
Prerequisites
Depending on whether you are configuring a preferred webcam, preferred microphone, or both,
perform the appropriate prerequisite tasks:
n Verify that you have a USB webcam installed and operational on your client system.
n Verify that you have a USB microphone or another type of microphone installed and
operational on your client system.
n Verify that you are using the VMware Blast display protocol or the PCoIP display protocol for
your remote desktop.
Procedure
1 Launch the client, and start a webcam or microphone application to trigger an enumeration of
camera devices or audio devices to the client log.
The log file with real-time audio-video log messages is located at /tmp/vmware-
<username>/vmware-RTAV-<pid>.log. The client log is located at /tmp/vmware-
<username>/vmware-view-<pid>.log.
b Search the log file to find the log file entries that reference the attached webcams and
microphones.
The following example shows an extract of the audio device selection, and the current
audio level for each:
Warnings are shown if any of the source audio levels for the selected device do not meet
the PulseAudio criteria if the source is not set to 100% (0dB), or if the selected source
device is muted, as follows:
3 Copy the description of the device and use it to set the appropriate property in the /etc/
vmware/config file.
For this example, you could also set the rtav.srcWCamId property to "Microsoft". The
rtav.srcWCamId property supports both partial and exact matches. The rtav.srcWCamName
property supports only an exact match.
For an audio device example, copy Logitech USB Headset Analog Mono to specify the
Logitech headset as the preferred audio device and set the property as follows:
For Windows desktops, this task includes enabling the Session Collaboration feature at the
desktop pool or farm level. It can also include using group policies to configure Session
Collaboration features, such as the available invitation methods. For complete requirements, see
System Requirements for the Session Collaboration Feature.
For information about enabling the Session Collaboration feature for Windows desktops, see the
Setting Up Virtual Desktops in Horizon document. For information about enabling the Session
Collaboration feature for a farm, see the Setting Up Published Desktops and Applications in
Horizon document. For information about using group policy settings to configure the Session
Collaboration feature, see the Configuring Remote Desktop Features in Horizon document.
For information about enabling the Session Collaboration feature for Linux desktops, see the
Setting Up Linux Desktops in Horizon document.
You can invite only users that belong to a domain that the server allows for authentication. You
can invite up to five users by default. A Horizon administrator can change the maximum number of
users that you can invite.
n If you have multiple monitors, only the primary monitor is shown to session collaborators.
n You must select the VMware Blast display protocol when you create a remote desktop session
to share. The Session Collaboration feature does not support PCoIP or RDP sessions.
n H.264 hardware encoding is not supported. If the session owner is using hardware encoding
and a collaborator joins the session, both fall back to software encoding.
n Session collaborators must have Horizon Client for Windows, Mac, or Linux installed, or they
must use HTML Access.
n You cannot use the Session Collaboration feature to share published application sessions.
Prerequisites
n To use the IM invitation method for a Windows remote desktop, Skype for Business must be
installed and configured.
Procedure
1 Connect to a remote desktop for which the Session Collaboration feature is enabled.
2 In the system tray in the remote desktop, click the VMware Horizon Collaboration icon, for
example, .
The collaboration icon might look different, depending on the operating system version.
3 When the VMware Horizon Collaboration dialog box opens, enter the user name (for example,
testuser or domain\testuser) or the email address of the user that you want to join the
remote desktop session.
The first time you enter the user name or email address of a particular user, you must click
Look up "user", enter a comma (,), or press the Enter key to validate the user. For Windows
remote desktops, the Session Collaboration feature remembers the user the next time you
enter the user's user name or email address.
Option Action
Email Copies the collaboration invitation to the clipboard and opens a new email
message in the default email application. An email application must be
installed to use this invitation method.
Copy Link Copies the collaboration invitation to the clipboard. You must manually
open another application, such as Notepad, and press Ctrl+V to paste the
invitation.
Results
After you send an invitation, the VMware Horizon Collaboration icon also appears on the desktop
and the Session Collaboration user interface turns into a dashboard that shows the current state of
the collaboration session and enables you to take certain actions.
When a session collaborator accepts your invitation to join a Windows remote desktop session,
the Session Collaboration feature notifies you and a red dot appears on the VMware Horizon
Collaboration icon in the system tray. When a session collaborator accepts your invitation to join a
Linux remote desktop session, a notification appears in the primary session desktop.
What to do next
Manage the remote desktop session in the VMware Horizon Collaboration dialog box. See Manage
a Shared Remote Desktop Session.
A Horizon administrator can prevent the hand off of control to a session collaborator. For
Windows remote desktops, see the Allow control passing to collaborators group policy setting
in the Configuring Remote Desktop Features in Horizon document. For Linux remote desktops,
see the collaboration.enableControlPassing parameter in the Setting Up Linux Desktops in
Horizon document.
Prerequisites
Start a collaborative session. See Invite a User to Join a Remote Desktop Session.
Procedure
1 In the remote desktop, click the VMware Horizon Collaboration icon in the system tray.
The names of all session collaborators appear in the Name column and their status appears in
the Status column.
2 Use the VMware Horizon Session Collaboration dashboard to manage the collaborative
session.
Option Action
Hand off control to a session After the session collaborator joins the session, toggle the switch in the
collaborator Control column to On.
To resume control of the session, double-click or press any key. The session
collaborator can also give back control by toggling the switch in the Control
column to Off, or by clicking the Give Back Control button.
End the collaborative session Click End Collaboration. All active collaborators are disconnected.
In Windows remote desktops, you can also end the collaborative session by
clicking the Stop button next to the VMware Horizon Session Collaboration
icon. The Stop button is not available in Linux remote desktops.
This procedure describes how to join a remote desktop session from a collaboration invitation.
Note In a Cloud Pod Architecture environment, you cannot join a collaborative session by logging
in to the server unless you log in to the session owner's pod.
When you join a remote desktop session with the Session Collaboration feature, you cannot use
the following features in the remote desktop session.
n USB redirection
n Multimedia redirection
n Clipboard redirection
You also cannot change the remote desktop resolution in the remote desktop session.
Prerequisites
To join a remote desktop session with the Session Collaboration feature, you must have Horizon
Client for Windows, Mac, or Linux installed on the client system, or you must use HTML Access.
Procedure
After you are successfully authenticated, the collaborative session begins and you can see the
session owner's remote desktop. If the session owner transfers mouse and keyboard control to
you, you can use the remote desktop.
3 To return mouse and keyboard control to the session owner, click the VMware Horizon
Collaboration icon in the system tray and toggle the switch in the Control column to Off,
or click the Give Back Control button.
For example, if you open a published application in multi-session mode on client A, and then open
the same published application on client B, the published application remains open on client A and
a new session of the published application opens on client B. By comparison, when multi-session
mode is disabled (single-session mode), the published application session on client A disconnects
and reconnects on client B.
n Multi-session mode does not work for applications that do not support multiple instances, such
as Skype for Business.
n If the application session is disconnected while you are using a published application in multi-
session mode, you are logged off automatically and any unsaved data is lost.
Prerequisites
A Horizon administrator must enable multi-session mode for the application pool. Users cannot
modify the multi-session mode for a published application unless a Horizon administrator allows it.
See Setting Up Published Desktops and Applications in Horizon. This feature requires Horizon 7
version 7.7 or later.
Procedure
1 Connect to a server.
2 Click the Settings button (gear icon) in the upper-right corner of the desktop and application
selector window and select Multi-Launch.
3 Select the published applications that you want to use in multi-session mode and click OK.
If a Horizon administrator has enforced multi-session mode for a published application, you
cannot change this setting.
The Seamless Window feature is enabled by default and available for all supported Linux systems.
A Horizon administrator can use the RDS Profiles group policy setting called Set Remote Desktop
Services User Home Directory to specify where documents are saved. For more information, see
the Configuring Remote Desktop Features in Horizon document.
For information about the types of remote desktops that support VMware Integrated Printing, see
Feature Support for Linux Clients.
Prerequisites
To use VMware Integrated Printing, a Horizon administrator must install the VMware Integrated
Printing feature in the remote desktop. This task involves enabling the VMware Integrated
Printing option in the Horizon Agent installer. For information about installing Horizon Agent,
see the Setting Up Virtual Desktops in Horizon or Setting Up Published Desktops and Applications
in Horizon document. For information about configuring the VMware Integrated Printing feature,
see the Configuring Remote Desktop Features in Horizon document.
To determine whether the VMware Integrated Printing feature is installed in a remote desktop,
verify that the C:\Program Files\Common Files\VMware\Remote Experience\x64\vmware-
print-redir-server.exe and C:\Program Files\Common Files\VMware\Remote
Experience\x64\vmware-print-redir-service.exe files exist in the remote desktop file
system.
Procedure
1 In the Windows remote desktop, go to Control Panel > Hardware and Sound > Devices and
Printers.
2 In the Devices and Printers window, right-click the virtual printer and select Printer properties
from the context menu.
4 In the Printing Preferences dialog box, select the different tabs and specify which settings to
use.
You can use either the USB redirection feature or the VMware Integrated Printing feature to print
to a USB printer from a remote desktop. Redirected USB printers and virtual printers can work
together without conflict.
When you use the USB redirection feature to redirect a USB printer, the USB printer is no longer
logically attached to the physical USB port on the local client system and it does not appear in the
list of local printers on the local client system. You can print to the USB printer from the remote
desktop, but you can no longer print to the USB printer from the local client system.
To use the VMware Integrated Printing feature, the feature must be enabled when you install
Horizon Agent. For installation information, see the Setting Up Virtual Desktops in Horizon or
Setting Up Published Desktops and Applications in Horizon document.
For more information, see Set Printing Preferences for the VMware Integrated Printing Feature.
Copying and pasting from the client system (where Horizon Client is installed) to a remote desktop
or published application, and conversely, is the same as copying and pasting between applications
on the same system. For example, you can press Ctrl+C to copy text and press Ctrl+V to paste
text.
This feature is available if you use the VMware Blast or PCoIP display protocol.
A Horizon administrator can configure the ability to copy and paste by using group policy
settings that pertain to Horizon Agent for remote desktops and published applications. For more
information, see the Configuring Remote Desktop Features in Horizon document.
You can copy text from Horizon Client to a remote desktop or published application, or the
reverse, but the pasted text is plain text.
You cannot copy and paste graphics. You also cannot copy and paste files between a remote
desktop and the file system on the client computer.
When a PCoIP or VMware Blast session is established, the server sends its clipboard memory size
to the client. The effective clipboard memory size is the lesser of the server and client clipboard
memory size values.
To set the client clipboard memory size, add the following parameter to any one of three
configuration files: ~/.vmware/config, /usr/lib/vmware/config, or /etc/vmware/config.
mksvchan.clipboardSize=value
value is the client clipboard memory size in kilobytes (KB). If you specify 0 or do not specify a
value, the default client clipboard memory size is 8192 KB (8 MB).
Horizon Client looks for the clipboard memory size in the configuration files in the following order
and stops as soon as a non-zero value is found.
1 /usr/lib/vmware/config
2 /etc/vmware/config
3 ~/.vmware/config
A large clipboard memory size can negatively affect performance, depending on your network.
VMware recommends that you do not set the clipboard memory size to a value greater than 16
MB.
To transfer larger amounts of data, use the client drive redirection feature.
To enable the clipboard audit feature, you must configure the Configure clipboard audit group
policy setting.
You can optionally configure the Whether block clipboard redirection to client side when client
doesn't support audit group policy setting to specify whether to block clipboard redirection to
clients that do not support the clipboard audit feature.
For more information about the group policy settings for clipboard redirection, see the
Configuring Remote Desktop Features in Horizon document.
This feature requires Horizon Agent 7.7 or later on the agent machine.
The event log where information about copy and paste activity is recorded is named VMware
Horizon RX Audit. To view the event log on the agent machine, use the Windows event viewer.
To view the event log from a centralized location, configure VMware Log Insight or Windows
Event Collector. For information about Log Insight, go to https://docs.vmware.com/en/vRealize-
Log-Insight/index.html. For information about Windows Event Collector, see the Microsoft
documentation.
For example, you can restrict the types of USB devices that Horizon Client makes available for
redirection, make prevent certain USB devices from being forwarded from a client computer, and
specify whether Horizon Client should split composite USB devices into separate components for
redirection.
For more information about VMware thin-client and zero-client partners, see the VMware
Compatibility Guide. To use the USB components available for third-party vendors, certain files
must be installed in certain locations, and certain processes must be configured to start before
Horizon Client is launched. These details are beyond the scope of this document.
For Horizon Client, the USB redirection feature requires the VMware Blast or PCoIP display
protocol.
To specify the USBD log level, add the following parameter in one of the configuration files.
view-usbd.logLevel = "value"
n trace
n info
n debug
n error
The configuration files are in the following locations and processed in the order listed:
1 /usr/lib/vmware/config
2 /etc/vmware/config
3 ~/.vmware/config
For troubleshooting purposes, you can increase the amount of information sent to USB-specific
logs by using the following commands:
# sudo /usr/lib/vmware/view/usb/vmware-usbarbitrator -h
Use the following syntax to set USB configuration properties in the configuration files.
viewusb.property1 = "value1"
With USB configuration properties, you can control whether certain types of devices are
redirected. Filtering properties are also available to enable you to include or exclude certain types
of devices. Properties for splitting composite devices are also provided.
Some property values require the VID (vendor ID) and PID (product ID) for a USB device. To
find the VID and PID, you can search on the Internet for the product name combined with vid
and pid. Alternatively, you can look in the /tmp/vmware-<current_user>/vmware-view-usbd-
*.log file after you plug in the USB device to the local system when Horizon Client is running.
To set the location of this file, use the view-usbd.log.fileName property in the /etc/vmware/
config file, for example:
view-usbd.log.fileName = "/tmp/usbd.log"
Important When redirecting audio devices, make sure that the kernel version of your Ubuntu
system is 3.2.0-27.43 or later. If you cannot upgrade to this kernel version, you can alternatively
disable host access to the audio device. For example, you can add the line "blacklist snd-
usb-audio" at the end of the /etc/modprobe.d/blacklist.conf file. If your system does not
meet either of these requirements, the client system might crash when Horizon Client attempts to
redirect the audio device. By default, audio devices are redirected.
Allow Auto Device Splitting Allow the automatic splitting of composite USB devices.
Property: The default value is undefined, which equates to false.
viewusb.AllowAutoDeviceSplitting
Exclude Vid/Pid Device From Split Excludes a composite USB device specified by vendor and product IDs from
Property: splitting. The format of the setting is vid-xxx1_pid-yyy1[;vid-xxx2_pid-
viewusb.SplitExcludeVidPid yyy2]...
You must specify ID numbers in hexadecimal. You can use the wildcard
character (*) in place of individual digits in an ID.
For example: vid-0781_pid-55**
The default value is undefined.
Split Vid/Pid Device Treats the components of a composite USB device specified by vendor and
Property: product IDs as separate devices. The format of the setting is
viewusb.SplitVidPid vid-xxxx_pid-yyyy([exintf:zz[;exintf:ww ]])[;...]
You can use the exintf keyword to exclude components from redirection
by specifying their interface number. You must specify ID numbers in
hexadecimal, and interface numbers in decimal including any leading zero.
You can use the wildcard character (*) in place of individual digits in an ID.
For example: vid-0781_pid-554c(exintf:01;exintf:02)
Allow HID Allows input devices other than keyboards or mice to be redirected.
Property: The default value is undefined, which equates to true.
viewusb.AllowHID
Allow HIDBootable Allows input devices other than keyboards or mice that are available at boot
Property: time (also known as hid-bootable devices) to be redirected.
viewusb.AllowHIDBootable The default value is undefined, which equates to true.
Allow Device Descriptor Failsafe Allows devices to be redirected even if the Horizon Client fails to get the
Property: config/device descriptors.
viewusb.AllowDevDescFailsafe To allow a device even if it fails the config/desc, include it in the Include
filters, such IncludeVidPid or IncludePath.
The default value is undefined, which equates to false.
Allow Keyboard and Mouse Devices Allows keyboards with integrated pointing devices (such as a mouse,
Property: trackball, or touch pad) to be redirected.
viewusb.AllowKeyboardMouse The default value is undefined, which equates to false.
Disable Remote Configuration Disables the use of Horizon Agent settings when performing USB device
Download filtering.
Property: The default value is undefined, which equates to false.
viewusb.DisableRemoteConfig
Exclude All Devices Excludes all USB devices from being redirected. If set to true, you can
Property: use other policy settings to allow specific devices or families of devices to
viewusb.ExcludeAllDevices be redirected. If set to false, you can use other policy settings to prevent
specific devices or families of devices from being redirected.
If you set the value of Exclude All Devices to true on Horizon Agent,
and this setting is passed to Horizon Client, the Horizon Agent setting
overrides the Horizon Client setting.
The default value is undefined, which equates to false.
Exclude Device Family Excludes families of devices from being redirected. The format of the setting
Property: is family_name_1[;family_name_2]...
viewusb.ExcludeFamily For example: bluetooth;smart-card
If you have enabled automatic device splitting, Horizon examines the device
family of each interface of a composite USB device to decide which interfaces
should be excluded. If you have disabled automatic device splitting, Horizon
examines the device family of the whole composite USB device.
The default value is undefined.
Exclude Vid/Pid Device Excludes devices with specified vendor and product IDs from being
Property: redirected. The format of the setting is vid-xxx1_pid-yyy2[;vid-xxx2_pid-
viewusb.ExcludeVidPid yyy2]...
You must specify ID numbers in hexadecimal. You can use the wildcard
character (*) in place of individual digits in an ID.
For example: vid-0781_pid-****;vid-0561_pid-554c
The default value is undefined.
Exclude Path Exclude devices at specified hub or port paths from being redirected. The
Property: format of the setting is bus-x1[/y1]..._port-z1[;bus-x2[/y2]..._port-z2]...
viewusb.ExcludePath You must specify bus and port numbers in hexadecimal. You cannot use the
wildcard character in paths.
For example: bus-1/2/3_port-02;bus-1/1/1/4_port-ff
The default value is undefined.
Include Device Family Includes families of devices that can be redirected. The format of the setting
Property: is family_name_1[;family_name_2]...
viewusb.IncludeFamily For example: storage
The default value is undefined.
Include Path Include devices at a specified hub or port paths that can be redirected. The
Property: format of the setting is bus-x1[/y1]..._port-z1[;bus-x2[/y2]..._port-z2]...
viewusb.IncludePath You must specify bus and port numbers in hexadecimal. You cannot use the
wildcard character in paths.
For example: bus-1/2_port-02;bus-1/7/1/4_port-0f
The default value is undefined.
Include Vid/Pid Device Includes devices with specified vendor and product IDs that can be
Property: redirected. The format of the setting is vid-xxx1_pid-yyy2[;vid-xxx2_pid-
viewusb.IncludeVidPid yyy2]...
You must specify ID numbers in hexadecimal. You can use the wildcard
character (*) in place of individual digits in an ID.
For example: vid-0561_pid-554c
The default value is undefined.
Exclude Automatic Forwarding of Exclude families of devices from being forwarded automatically. The format
Device Families of the setting is family_name_1[;family_name_2]...
Property: For example: storage
viewusb.ExAutoRedirectFamily The default value is undefined.
Exclude Automatic Forwarding of Excludes devices with specified vendor and product IDs from being
Vid/Pid Device forwarded automatically. The format of the setting is vid-xxx1_pid-
Property: yyy2[;vid-xxx2_pid-yyy2]...
viewusb.ExAutoRedirectVidPid You must specify ID numbers in hexadecimal. You can use the wildcard
character (*) in place of individual digits in an ID.
For example: vid-0561_pid-554c
The default value is undefined.
viewusb.IncludeFamily = "mouse"
viewusb.ExcludeVidPid = "Vid-0461_Pid-0010;Vid-0461_Pid-4d20"
The first property in this example tells Horizon Client to allow mouse devices to be redirected
to a Horizon desktop. The second property overrides the first and tells Horizon Client to keep
two specific mouse devices local and not redirect them.
n Turn on automatic device splitting, but exclude one particular device from splitting. For
another particular device, keep one of its components local and redirect the other components
to the remote desktop:
viewusb.AllowAutoDeviceSplitting = "True"
viewusb.SplitExcludeVidPid = "Vid-03f0_Pid-2a12"
viewusb.SplitVidPid = "Vid-0911_Pid-149a(exintf:03)"
viewusb.IncludeVidPid = "Vid-0911_Pid-149a"
Composite USB devices consist of a combination of two or more devices, such as a video input
device and a storage device. The first property in this example turns on automatic splitting
of composite devices. The second property excludes the specified composite USB device
(Vid-03f0_Pid-2a12) from splitting.
The third line tells Horizon Client to treat the components of a different composite device
(Vid-0911_Pid-149a) as separate devices but to exclude the following component from
being redirected: the component whose interface number is 03. This component is kept local.
Because this composite device includes a component that is ordinarily excluded by default,
such as a mouse or keyboard, the fourth line is necessary so that the other components of the
composite device Vid-0911_Pid-149a can be redirected to the Horizon desktop.
The first three properties are splitting properties. The last property is a filtering property.
Filtering properties are processed before splitting properties.
hid-bootable Human interface devices that are available at startup time, excluding keyboards and pointing
devices.
storage Mass storage devices such as flash drives and external hard disk drives.
You can restart a remote desktop only if a Horizon administrator has enabled the restart feature
for the remote desktop and the remote desktop is powered on. You can restart only one remote
desktop at a time.
For information about enabling the desktop restart feature, see the Setting Up Virtual Desktops in
Horizon or Setting Up Published Desktops and Applications in Horizon document.
Procedure
Option Action
Restart a remote desktop from Select Connection > Restart Desktop from the menu bar.
within the desktop
Results
The operating system in the remote desktop restarts and the client disconnects and logs off from
the remote desktop.
What to do next
Wait an appropriate amount of time for the system to restart before you attempt to reconnect to
the remote desktop.
If restarting the remote desktop does not solve the problem, you might need to reset the remote
desktop. See Reset Remote Desktops or Published Applications.
Resetting a remote desktop is the same as pressing the Reset button on a physical PC to force the
PC to restart. Any files that are open on the remote desktop are closed and are not saved.
You can reset a remote desktop only if a Horizon administrator has enabled the reset feature
for the remote desktop and the remote desktop is powered on. You can reset only one remote
desktop at a time.
For information about enabling the desktop reset feature, see the Setting Up Virtual Desktops in
Horizon or Setting Up Published Desktops and Applications in Horizon document.
Procedure
Option Action
Reset a remote desktop from within Select Connection > Reset from the menu bar.
the desktop
You can also use uniform resource identifiers (URIs) to reset a remote desktop or application.
See Using URIs to Configure Horizon Client for information on the syntax and examples.
Results
When you reset a remote desktop, the operating system in the remote desktop restarts and the
client disconnects and logs off from the remote desktop. When you reset published applications,
the published applications quit.
What to do next
Wait an appropriate amount of time for system to restart before attempting to reconnect to the
remote desktop or published application.
Prerequisites
Verify that you have root access on the Linux client system.
Procedure
u In a Terminal window, change to the directory that contains the installer file, and run the
installer command with the -u option.
Option Command
In the installer filename, YYMM represents the marketing version number, x.x.x represents the
internal version number, and yyyyyyy represents the build number. arch represents the CPU
instruction set architecture.
Note If you are uninstalling version 5.5 or earlier of Horizon Client, the installer filename does
not contain the marketing version number YYMM.
Using the VMWARE_KEEP_CONFIG=yes setting means retain the configuration settings when the
client is uninstalled. If this environment variable is not set, you are prompted to specify
whether to save the configuration settings.
What to do next
You can reinstall the client or install a new version. See Install or Upgrade Horizon Client for Linux
from VMware Product Downloads.
Most Linux-based thin clients typically store Horizon Client logs in one or more of the following
locations:
n /tmp/vmware-<user>
n /tmp/teradici-<user>
n /tmp/vmware-root
The log collection script compiles the client logs into a package file named horizon-log.tar.gz
by default.
Procedure
1 Ensure that you have "execute" permission to the log collection script on the Linux client
system. In the command-line terminal, run the following command:
sudo /usr/bin/vmware-view-log-collector
By default, the script finds the latest log files generated by Horizon Client and compiles them
into a package file named horizon-log.tar.gz, located in the folder from which you ran the
script.
To customize the name and location of the package file, you can run a command that
resembles one of the following examples:
n The first example compiles client logs into a package file named abc.tar.gz in the folder
from which you ran the script.
n The second example compiles client logs into a package file named abc.tar.gz in the /
home/user/Downloads/ folder.
Problem
When you are connected to a remote desktop or published application, no characters appear
when you type. Another symptom might be that a single key keeps repeating itself.
Cause
Some security software, such as Norton 360 Total Security, includes a feature that detects
keystroke logging software and blocks keystroke logging. This security feature is meant to
protect the system against spyware that steals passwords and credit card numbers. This security
software might block Horizon Client from sending keystrokes to the remote desktop or published
application.
Solution
u On the client system, turn off the keystroke logging detection feature of your antivirus or
security software.
Problem
n When you try to connect to the server directly through Horizon Client, Horizon Client redirects
you to the Workspace ONE portal.
n When you open a remote desktop or published application through a URI or command, the
request redirects you to the Workspace ONE portal for authentication.
n After you open a remote desktop or published application through Workspace ONE and
Horizon Client starts, you cannot see or open other entitled remote desktops or published
applications in Horizon Client.
Cause
A Horizon administrator can enable Workspace ONE mode on a Connection Server instance. This
behavior is normal when Workspace ONE mode is enabled on a Connection Server instance.
Solution
Use Workspace ONE to connect to a Workspace ONE enabled server and access your remote
desktops and published applications.