:::: MENU ::::

Posts Tagged / VMware

  • Sep 07 / 2021
  • 1
Logo
NSX-T, VMware

Load Balancing UAG’s with NSX-T

Unified Access Gateway for end-user computing products and services needs high availability for Workspace ONE and VMware Horizon on-prem deployments. Unified Access Gateway appliances work with standard third-party load balancing solutions that are configured for HTTPS and also has an out-of-the-box High Availability solution. The out-of-the-box HA solution will reduce complexity and lower your TCO but it comes with the following limitations.

  • IPv4 is supported for floating Virtual IP address. IPv6 is not supported. 
  • Only TCP high availability is supported. 
  • UDP high availability is not supported. 
  • With the VMware Horizon use case, only XML API traffic to Horizon Connection Server uses high availability. High availability is not used to distribute load for the protocol (display) traffic such as Blast, PCoIP, RDP. Therefore, the individual IP addresses of Unified Access Gateway nodes must also be accessible to VMware Horizon clients in addition to the Virtual IP address.

To overcome some of the limitations you can use NSX-T Data Center logical load balancer as a load balancing solution in front of the UAG’s.

In this blog post, I would like to show you how to configure a load balancer for UAG’s in NSX-T in front of a Horizon environment.

Continue Reading
  • Feb 11 / 2021
  • 0
DaaS, Horizon, Rundeck, VMware

Replacing the Horizon Version Manager and Horizon Air Link appliances

With the release of Horizon DaaS 9, VMware introduced two new appliances the Horizon Version Manager (HVM) and the Horizon Air Link (HAL). The HVM is the automation appliance, based on Rundeck automation. The HAL is the resource manager for the management appliances. With the release of a new version of Horizon DaaS 9, these two appliances must be replaced if a new version is available. Because VMware is always innovating they are adding new features, scripts, and codebases to every new version it would be advised that if you are in the process of installing a new version of Horizon DaaS to make sure you are using the correct version. Check if an updated version of the HVM and HAL is available at my VMware.

Below I will explain how to replace the appliances and assign it to the Horizon DaaS environment.

Continue Reading
  • Oct 26 / 2020
  • 1
9.0.1, DaaS

Horizon DaaS 9.0.1 upgrade

This week Horizon DaaS 9.0.1 hotfix has been released. With this release, Horizon DaaS is a step closer to aligning with Horizon Cloud 20.2.0. The hotfix is available for download on My VMware. This version includes the following:

  • Enhanced installation functionality, including new automation for domain bind and compute assignment.
  • Support for Horizon Agent Installer (HAI) 20.3.
    • Adds Horizon Agent 7.13 capabilities.
    • Microsoft Teams plug-in support.
  • Security fixes for issues found in Horizon DaaS 9.0.0.
  • Deleting a virtual machine with a canceled pool expansion task failed.
  • Power operations are not supported for utility VMs.
  • Daylight Saving Time issue on Utilization Report.
  • Triple nesting in AD groups is not handled properly.
  • The API desktopmanagersbydatacenter is taking too long to respond.
  • Tenant desktop capacity quota edit failure.
  • Compute resource edit failure.

Full release notes can be found here: Horizon DaaS 9.0.x Release Notes

In this post I will explain how to install this hotfix using the HVM (Horizon Version Manager) appliance.

Continue Reading
  • May 27 / 2020
  • 1
Verify, VMware, Workspace ONE

Adding VMware Verify to VMware Workspace ONE Access

My colleague Arno Meijroos wrote a nice blog on “How to integrate Horizon DaaS 9.0 with Workspace ONE Access“. In extent on his blog, I want to explain how to add Vmware Verify for two-factor authentication (2FA).

VMware Verify

You can use the Verify app to secure login to VMware Workspace ONE and other apps. The Verify app is available for iOS, Android, and Chrome. It uses modern mobile push tokens, where users get a push notification on their mobile device that they can simply accept or deny. When the user’s device does not have cellular reception, such as in airplane mode when traveling, the user can open the Verify app and use a one-time passcode (aka soft token). Also a one-time passcode via SMS is available.

Continue Reading
  • Jun 11 / 2019
  • 0
Horizon, UEM, Uncategorized, VMware

VMware UEM – Unable to browse AD groups in Conditions and Condition Sets

Within VMware UEM you are able to filter out settings based on conditions. These condition can be set directly on the config or by creating a condition set and attach the condition set on the config. Some examples of conditions are Endpoint IP Address, Environment Variables, Group Membership, IP Address and a lot more.

Problem

At a customer we experienced a very strange problem. Once starting the VMware UEM Management console and changing or creating a condition or condition set. We were not able to browse the AD when selecting the condition Group Membership. The browse button was grayed out and we got the following message: Browsing for groups is only available on domain-joined computers. So the strange part is: The machine is domain joined.

Group Membership Condition
Continue Reading
  • May 09 / 2019
  • 0
DaaS, DVS, UAG, VMware, vSphere

Horizon DaaS: Unable to start VMware UAG

The VMware Unified Access Gateway (UAG) is a virtual appliance primarily used to allow secure external access to your organization’s applications. These application can be native windows applications, software as a service (SaaS) applications, and desktops. VMware UAG is typically deployed in a DMZ. For more information see: https://docs.vmware.com/en/Unified-Access-Gateway/index.html

Problem

A while ago a customer had an issue with deploying the VMware Unified Access Gateway. The customer imported the OVA and did the necessary config to deploy the OVA. Once installed the OVA didn’t start and came back with a strange error message:

Cannot initialize property ‘gateway2’. Network ‘DAAS-01_BE’ has no associated network protocol profile.

Continue Reading
Pages:12