The View Server Configuration ADMX (vdm_server.admx) template files contain policy settings related to all Horizon Connection Servers.

The following table describes each policy setting in the Connection Server configuration ADMX template file. The template contains only Computer Configuration settings. All of the settings are in the Computer Configuration > Policies > Administrative Templates > VMware View Server Configuration folder in the Group Policy Management Editor.

Table 1. Horizon Server Configuration Template Settings
Setting Properties
Enumerate Forest Trust Child Domains

Determines if every domain trusted by the domain in which the server resides is enumerated. In order to establish a complete chain of trust, the domains trusted by each trusted domain are also enumerated and the process continues recursively until all trusted domains are discovered. This information is passed to Connection Server in order to ensure that all trusted domains are available to the client on login.

This property is enabled by default. When disabled, only directly trusted domains are enumerated and connection to remote domain controllers does not take place.

Note: In environments with complex domain relationships, such as those that use multiple forest structures with trust between domains in their forests, the process can take a few minutes to complete.
Recursive Enumeration of Trusted Domains

Determines whether every domain trusted by the domain in which the server resides is enumerated. To establish a complete chain of trust, the domains trusted by each trusted domain are also enumerated and the process continues recursively until all trusted domains are discovered. This information is passed to View Connection Server so that all trusted domains are available to the client on login.

This setting is enabled by default. When it is disabled, only directly trusted domains are enumerated and connection to remote domain controllers does not take place.

In environments with complex domain relationships, such as those that use multiple forest structures with trust between domains in their forests, this process can take a few minutes to complete.

Windows Password Authentication Mode

Select the windows password authentication mode.

  • KerberosOnly. Authenticate using Kerberos.
  • KerberosWithFallbackToNTLM. Authenticate using Kerberos, but fallback to using NTLM on failure.
  • Legacy. Authenticate using NTLM, but fallback to using Kerberos on failure. Used to support legacy NT domain controllers.

Default is KerberosOnly.