If you use a Unified Access Gateway appliance, you must install a CA-signed certificate that has a Subject Alternative Name (SAN) configured.

If you use a CA-signed certificate that does not have a SAN configured, or a self-signed certificate, users receive a "Your connection is not private" error and cannot connect with HTML Access.

Note: If you use a Connection Server instance, users can still connect by clicking the Proceed to ip-address (unsafe) link.

For information about installing and configuring certificates, see the Horizon Installation and Upgrade document. For information about configuring HTML Access agents to use TLS certificates, see Configure HTML Access Agents to Use New TLS Certificates.