The VMware View Agent Configuration ADMX template file (vdm_agent.admx) contains policy settings related to the authentication and environmental components of Horizon Agent.
The ADMX files are available in VMware-Horizon-Extras-Bundle-YYMM-x.x.x-yyyyyyyy.zip, which you can download from the VMware Downloads site at https://my.vmware.com/web/vmware/downloads. Under Desktop & End-User Computing, select the VMware Horizon download, which includes the GPO Bundle containing the ZIP file.
The following tables describe policy settings in the VMware View Agent Configuration ADMX template file. The template contains both Computer Configuration and User Configuration settings. The User Configuration setting overrides the equivalent Computer Configuration setting.
The settings are located in the
folder.Agent Configuration
Agent configuration settings are in the
folder in the Group Policy Management Editor.Filter Microsoft Chart and Smart Art Setting |
Computer | User | Properties |
---|---|---|---|
AllowDirectRDP | X | Determines whether clients other than Horizon Client devices can connect directly to remote desktops with RDP. When this setting is disabled, the agent permits only Horizon-managed connections through Horizon Client. When connecting to a remote desktop from Horizon Client for Mac, do not disable the AllowDirectRDP setting. If this setting is disabled, the connection fails with an Access is denied error. By default, while a user is logged in to a remote desktop session, you can use RDP to connect to the virtual machine. The RDP connection terminates the remote desktop session, and the user's unsaved data and settings might be lost. The user cannot log in to the desktop until the external RDP connection is closed. To avoid this situation, disable the AllowDirectRDP setting.
Important: The Windows Remote Desktop Services service must be running on the guest operating system of each desktop. You can use this setting to prevent users from making direct RDP connections to their desktops.
This setting is enabled by default. |
|
AllowSingleSignon | X | Determines whether single sign-on (SSO) is used to connect users to desktops and applications. When this setting is enabled, users are required to enter their credentials only once, when they log in to the server. When this setting is disabled, users must reauthenticate when the remote connection is made. This setting is enabled by default. |
|
CommandsToRunOnConnect | X | Specifies a list of commands or command scripts to be run when a session is connected for the first time. See Running Commands on Horizon Desktops for more information. |
|
CommandsToRunOnDisconnect | X | Specifies a list of commands or command scripts to be run when a session is disconnected. See Running Commands on Horizon Desktops for more information. |
|
CommandsToRunOnReconnect | X | Specifies a list of commands or command scripts to be run when a session is reconnected after a disconnect. See Running Commands on Horizon Desktops for more information. |
|
ConnectionTicketTimeout | X | Specifies the amount of time in seconds that the Horizon connection ticket is valid. Horizon Client devices use a connection ticket for verification and single sign-on when connecting to the agent. For security reasons, a connection ticket is valid for a limited amount of time. When a user connects to a remote desktop, authentication must take place within the connection ticket timeout period or the session times out. If this setting is not configured, the default timeout period is 900 seconds. |
|
CredentialFilterExceptions | X | Specifies the executable files that are not allowed to load the agent CredentialFilter. Filenames must not include a path or suffix. Use a semicolon to separate multiple filenames. |
|
Disable Time Zone Synchronization | X | X | Determines whether the time zone of the remote desktop is synchronized with the time zone of the connected client. An enabled setting applies only if the Disable time zone forwarding setting of the Horizon Client Configuration policy is not set to disabled. This setting is disabled by default. |
Disconnect Session Time Limit (VDI) | X | Specifies the amount of time after which a disconnected desktop session logs out automatically.
You can also configure the time limit in the Automatically logoff after disconnect desktop pool setting in Horizon Console. If you configure this setting in both places, the group policy setting takes precedence. For example, selecting Never prevents a disconnected session on this machine from ever logging out, regardless of the setting in Horizon Console. |
|
DPI Synchronization | X | X | Adjusts the system-wide DPI setting for the remote session. When this setting is enabled or not configured, the system-wide DPI setting for the remote session is set to match the corresponding DPI setting on the client operating system. When this setting is disabled, the system-wide DPI setting for the remote session is never changed. For a list of the supported guest operating systems, see the "Using DPI Synchronization" topic in the VMware Horizon Client for Windows Installation and Setup Guide document. This setting is enabled by default. |
DPI Synchronization Per Monitor | X | X | Adjusts the DPI setting in multiple monitors during a remote session. When this setting is enabled, the DPI setting in all monitors changes to match the client per-monitor DPI setting during a remote session. If the DPI setting is customized, the customized DPI setting is matched. The Allow Display Scaling option is dimmed in Horizon Client. When this setting is disabled, users must log out and reconnect to the remote desktop to make DPI setting changes take effect in all monitors. For a list of the supported guest operating systems, see the "Using DPI Synchronization" topic in the VMware Horizon Client for Windows Installation and Setup Guide document. This setting is enabled by default. |
Enable Battery State Redirection | X | Determines whether battery state redirection is enabled. This feature is supported with Windows and Linux client systems. When this setting is enabled, information about the Windows or Linux client system's battery is redirected to a Windows remote desktop. The battery icon in the system tray on the remote desktop indicates the battery charge percentage. If the battery charge is less than or equal to 10 percent, a message pops up stating that the battery is low. This setting is enabled by default. |
|
Enable multi-media acceleration | X | Determines whether multimedia redirection (MMR) is enabled on the remote desktop. MMR is a Windows Media Foundation filter that forwards multimedia data from specific codecs on the remote system directly through a TCP socket to the client. The data is decoded directly on the client, where it is played. You can disable MMR if the client has insufficient resources to handle local multimedia decoding. This setting is enabled by default. |
|
Enable Unauthenticated Access | X | Enables or disables the unauthenticated access feature. When this setting is enabled, unauthenticated access users can access published applications from Horizon Client without requiring Active Directory credentials. When this setting is disabled, unauthenticated access users cannot access published applications from Horizon Client without requiring Active Directory credentials. You must reboot the RDS host for this setting to take effect. This setting is enabled by default. |
|
Force MMR to use software overlay | X | MMR tries to use the hardware overlay to play back video for better performance. When working with multiple displays, the hardware overlay exists on only one of the displays, either the primary display or the display where WMP started. If a user drags WMP to another display, the video appears as a black rectangle. Use this option to force MMR to use a software overlay that works on all displays. This setting is enabled by default. |
|
Idle Time Until Disconnect (VDI) | X | Specifies the amount of time after which a remote desktop session disconnects because of user inactivity. If disabled, not configured, or enabled with the Never setting, the remote desktop sessions are never disconnected. If the desktop pool or machine is configured to log out automatically after a disconnect, that setting is honored. |
|
Prewarm Session Time Limit | X | Specifies the amount of time after which a prewarm session logs out automatically. This setting is not configured by default. | |
ShowDiskActivityIcon | X | This setting is not supported in this release. | |
Single sign-on retry timeout | X | Specifies the time, in milliseconds, after which single sign-on is retried. Set the value to 0 to disable single sign-on retry. The default value is 5000 milliseconds. This setting is enabled by default. |
|
Toggle Display Settings Control | X | Determines whether to disable the Settings tab in the Display control panel when a client session uses the PCoIP display protocol. This setting is enabled by default. |
Agent Security
The Agent Security setting is in the
folder in the Group Policy Management Editor.Setting | Computer | User | Properties |
---|---|---|---|
Accept SSL encrypted framework channel | X | Enables the TLS encrypted framework channel. You can specify one of the following options:
This setting is enabled by default. |
Clipboard Redirection
Policy settings for Clipboard Redirection are in the ADMX template file vdm_agent_clipboard.admx. The Clipboard Redirection settings are in the folder in the Group Policy Management Editor.
Setting | Computer | User | Description |
---|---|---|---|
Clipboard memory size on server | X | X | Specifies the server clipboard memory size value in bytes or kilobytes, as selected. If it is not configured, the memory size is in kilobytes. The client also has a value for the clipboard memory size, which is always in kilobytes. After the session is set up, the server sends its clipboard memory size value to the client. The effective clipboard memory size value is the lesser of the client and server clipboard memory size values. A large clipboard memory size can negatively affect performance, depending on your network. VMware recommends that you do not set the clipboard memory size to a value greater than 16 MB.
Note: The maximum clipboard memory size for copy and paste operations is 65,535 KB. Because this limit includes metadata and formatting data, the actual data size must be somewhat less than 65,535 KB. To transfer larger amounts of data, use the client drive redirection feature.
|
Configure clipboard audit | X | X | Specifies whether the clipboard audit feature is enabled on the agent machine. When this setting is enabled, the options are as follows:
When this setting is disabled or not configured, the default value is Disabled in both directions. You can use the Windows event viewer on the agent machine to view the event log. The log name is VMware Horizon RX Audit. To view the event log in a centralized location, you can configure VMware Log Insight or Windows Event Collector.
Note: Only the Windows client supports agent machine to client machine clipboard auditing.
|
Configure clipboard redirection | X | X | Determines the direction in which clipboard redirection is allowed. You can select one of the following values:
Clipboard redirection is implemented as a virtual channel. If virtual channels are disabled, clipboard redirection does not function. This setting applies only to Horizon Agent. When this setting is disabled or not configured, the default value is Enabled client to agent only. |
Configure clipboard redirection formats | X | X | Determines whether a filter is enabled or disabled on the agent machine for each data format.
When the setting is not configured or disabled, the filters for clipboard redirection are disabled for all formats. This setting not configured by default. |
Configure file transfer | X | Configures how the file transfer feature works between the remote desktop and HTML Access. Valid values are as follows. This setting applies only to remote desktops.
When this setting is disabled or not configured, the default value is Enabled file upload only. |
|
Whether block clipboard redirection to client side when client doesn't support audit | X | X | Specifies whether to block clipboard redirection to clients that do not support the clipboard audit feature. When this setting is enabled, you must select one of the following values.
When this setting is disabled or not configured, the default value is Block. You must enable the Configure clipboard audit group policy setting for this setting to take effect. |
Collaboration
Collaboration settings are in the
folder in the Group Policy Management Editor.Setting | Description |
---|---|
Allow control passing to collaborators | When enabled, users can pass input control to other collaborators during collaboration. When disabled, the toggle switch does not appear in the collaboration window. This setting is enabled by default. |
Allow inviting collaborators by e-mail | When enabled, you can send collaboration invitations by using an installed email application. When disabled, you cannot use email to invite collaborators, even if an email application is installed. This setting is enabled by default. |
Allow inviting collaborators by IM | When enabled, you can send collaboration invitations by using an installed Instant Message (IM) application. When disabled, you cannot use IM to invite collaborators, even if an IM application is installed. This setting is enabled by default. |
Include Outlook-formatted URL in clipboard text | When this setting is enabled, a Microsoft Outlook-formatted invitation URL is included in the clipboard invitation text. Enable this setting if you expect end users to paste clipboard invitation text into an email message. This setting is disabled by default. |
Separator used for multiple e-mail addresses in mailto: links | Configures the separator used for multiple email addresses in mailto: links to allow better compatibility with various email clients. When not configured, the default value is a semicolon without a space to separate email addresses. If your default email client does not allow a semicolon as a separator, try other combinations, such as a comma plus one space or semicolon plus one space. |
Server URLs to include in invitation message | Sets the server URLs to include in collaboration invitations. If this setting is not configured, a default URL is used, but it might be incorrect in all but the simplest deployments. |
Turn off collaboration | When enabled, the Session Collaboration feature is turned off. When disabled or not configured, you can control the feature at the farm or desktop pool level. This setting takes effect after you reboot the Horizon Agent machines. |
Maximum number of invited collaborators | Specifies the maximum number of collaborators that you can invite to join a session. The default maximum is 5. The limit is 20. |
Drag and Drop
Policy settings for Drag and Drop are in the ADMX template file vdm_agent_dnd.admx. The Drag and Drop settings are in the folder in the Group Policy Management Editor.
Setting | Description |
---|---|
Configure drag and drop direction | Specifies the direction in which drag and drop is allowed. When enabled, the options are as follows:
When this setting is disabled or not configured, the default value is Enabled client to agent only. This setting applies to the agent only. |
Configure drag and drop formats | Determines which drag and drop direction (Disabled in both directions, Enabled agent to client only, Enabled client to agent only, or Enabled in both directions) is allowed for each data format. When this setting is enabled, the options are as follows:
When this setting is disabled or not configured, the default value for all formats is Enabled in both directions. This setting applies to the agent only. |
Configure drag and drop size threshold | Determines the size limit for dragging common data types other than files and folders. When this setting is enabled, select the unit of the drag data size from the Choose the unit of the drag and drop size drop-down menu. You can select Bytes, Kilobytes, or Megabytes. Select or enter the drag data size in the Drag and drop size threshold text box. The effective data range for each unit is as follows:
When this setting is disabled or not configured, a default threshold of 1 megabyte is set. This setting applies only to the agent. |
Performance Tracker
Setting | Description |
---|---|
Enable Horizon Performance Tracker auto start in remote desktop connection | When enabled, Horizon Performance Tracker starts automatically when a user logs on to a remote desktop connection. To clear this preference GPO setting, select Disable. |
Enable Horizon Performance Tracker auto start in remote application connection | When enabled, Horizon Performance Tracker starts automatically when a user logs on to a remote application connection. To clear this preference GPO setting, select Disable. |
Performance Tracker basic setting | When enabled, you can set the frequency in seconds at which Horizon Performance Tracker collects data. |
Scanner Redirection
Policy settings for Scanner Redirection are in the ADMX template file vdm_agent_scanner.admx. Scanner Redirection settings are in the folder in the Group Policy Management Editor.
Setting | Computer | User | Description |
---|---|---|---|
BandwidthLimit | X | Specifies the maximum allowed bandwidth, in kilobytes per second, for transferring scanned data to a user session. If you specify 0 or no value, the bandwidth is unlimited. |
|
Compression | X | Specifies the image compression rate to use during the image transfer to a remote desktop or published application. You can select one of the following compression modes:
When you enable this setting, the selected compression mode is set for all users affected by this policy. Users can change the Compression option in the VMware Horizon Scanner Redirection Preferences dialog box, overriding the policy setting. When you disable this policy setting or do not configure it, JPEG compression mode is used. |
|
Default Color Mode | When this setting is enabled, you can configure the default color mode: black and white, grayscale, or color. This setting is supported on Windows XP Professional or Windows Server 2003 or later. | ||
Default Duplex | When this setting is enabled, you can configure the default scanning mode: simplex or duplex. In duplex mode, the scanning application must support duplex scanning and request two pages from the scanner. This setting is supported on Windows XP Professional or Windows Server 2003 or later. | ||
Default Scanner | X | X | Provides centralized management of scanner autoselection. You select scanner autoselection options separately for TWAIN and WIA scanners. You can select one of the following autoselection options:
When you enable this setting as a Computer Configuration policy, the setting determines the scanner autoselection mode for all users of the affected computers. Users cannot change the Default Scanner option in the VMware Horizon Scanner Redirection Preferences dialog box. When you enable this setting as a User Configuration policy, the setting determines the scanner autoselection mode for all affected users. However, users can change the Default Scanner option in the VMware Horizon Scanner Redirection Preferences dialog box. When you enable this setting in both Computer Configuration and User Configuration, the scanner autoselection mode in Computer Configuration overrides the corresponding policy setting in User Configuration for all users of the affected computers. When you disable this setting or do not configure it in either policy configuration, the scanner autoselection mode is determined by the corresponding policy setting (either User Configuration or Computer Configuration) or by user selection in the VMware Horizon Scanner Redirection Preferences dialog box. |
Disable functionality | X | Disables the scanner redirection feature. When you enable this setting, scanners cannot be redirected and do not appear in the scanner menu on users' desktops and applications. When you disable this setting or do not configure it, scanner redirection works and scanners appear in the scanner menu. |
|
Force the TWAIN Scanning Properties dialog | X | When this setting is enabled, the TWAIN Scanning Properties dialog box is always displayed, even if a scanning application does not display the scanning dialog box. | |
Hide Webcam | X | X | Prevents webcams from appearing in the scanner selection menu in the VMware Horizon Scanner Redirection Preferences dialog box. By default, webcams can be redirected to desktops and applications. Users can select webcams and use them as virtual scanners to capture images. When you enable this setting as a Computer Configuration policy, webcams are hidden from all users of the affected computers. Users cannot change the Hide Webcam option in the VMware Horizon Scanner Redirection Preferences dialog box. When you enable this setting as a User Configuration policy, webcams are hidden from all affected users. However, users can change the Hide Webcam option in the VMware Horizon Scanner Redirection Preferences dialog box. When you enable this setting in both Computer Configuration and User Configuration, the Hide Webcam setting in Computer Configuration overrides the corresponding policy setting in User Configuration for all users of the affected computers. When you disable this setting or do not configure it in either policy configuration, the Hide Webcam setting is determined by the corresponding policy setting (either User Configuration or Computer Configuration) or by user selection in the VMware Horizon Scanner Redirection Preferences dialog box. |
Lock config | X | Locks the scanner redirection user interface and prevents users from changing configuration options on their desktops and applications. When you enable this setting, users cannot configure the options that are available from the tray menu on their desktops and applications. Users can display the VMware Horizon Scanner Redirection Preferences dialog box, but the options are inactive and cannot be changed. When you disable this setting or do not configure it, users can configure the options in the VMware Horizon Scanner Redirection Preferences dialog box. |
|
TWAIN Scanner Properties dialog location | X | Specifies where the TWAIN Scanning Properties dialog box appears. You can select one of the following options:
|
Serial COM
Setting | Computer | User | Description |
---|---|---|---|
PortSettings1 PortSettings2 PortSettings3 PortSettings4 PortSettings5 |
X | X | The port settings determine the mapping between the COM port on the client system and the redirected COM port on the remote desktop and determines other settings that affect the redirected COM port. You configure each redirected COM port individually. Five port settings policy settings are available, allowing up to five COM ports to be mapped from the client to the remote desktop. Select one port settings policy setting for each COM port that you intend to configure. When you enable the port settings policy setting, you can configure the following items that affect the redirected COM port:
When you enable the port settings policy setting for a particular COM port, users can connect and disconnect the redirected port, but users cannot configure properties of the port on the remote desktop. For example, users cannot set the port to be redirected automatically when they log on to the remote desktop, and they cannot ignore the DSR signal. These properties are controlled by the group policy setting.
Note: A redirected COM port is connected and active only if the physical COM port is connected locally to the client system. If you map a COM port that does not exist on the client, the redirected port appears as inactive and not available in the tool tray menu on the remote desktop.
When the port settings policy setting is disabled or not configured, the redirected COM port uses the settings that users configure on the remote desktop. The Serial COM Redirection for VMware Horizon menu options are active and available to users. These settings are in the folder in the Group Policy Management Editor. |
Bandwidth limit | X | Sets a limit on the data transfer speed, in kilobytes per second, between the redirected serial port and client systems. When you enable this setting, you can set a value in the Bandwidth limit (in kilobytes per second) box that determines the maximum data transfer speed between the redirected serial port and the client. A value of 0 disables the bandwidth limit. When this setting is disabled, no bandwidth limit is set. When this setting is not configured, local program settings on the remote desktop determine whether a bandwidth limit is set. This setting is in the folder in the Group Policy Management Editor. |
|
COM Port Isolation Mode | X | Specifies the isolation mode for COM ports. When you enable this setting, you can select one of the following isolation modes:
If this setting is not configured, serial port redirection operates in Full Isolation mode. |
|
Connect all ports automatically | X | When you enable this setting, all COM ports are connected automatically, even if no individual group policy settings are enabled. If individual group policy settings are configured for specific ports, the individual group policy settings are used. If this setting is disabled or not configured, the auto-connect functionality is determined by the individual port group policy settings or the local program settings. This setting is not configured by default. |
|
Disable functionality | X | Disables the serial port redirection feature. When you enable this setting, COM ports are not redirected to the remote desktop. The serial port tool tray icon on the remote desktop is not displayed. When this setting is disabled, serial port redirection works, the serial port tool tray icon is displayed, and COM ports appear in the Serial COM Redirection for VMware Horizon menu. When this setting is not configured, settings that are local to the remote desktop determine whether serial port redirection is disabled or enabled. This setting is in the folder in the Group Policy Management Editor. |
|
Local settings priority | X | X | Gives priority to the settings that are configured on the remote desktop. When you enable this policy, the serial port redirection settings that a user configures on the remote desktop take precedence over the group policy settings. A group policy setting takes effect only if a setting is not configured on the remote desktop. When this setting is disabled or not configured, group policy settings take precedence over the settings that are configured on the remote desktop. This setting is in the folder in the Group Policy Management Editor. |
Lock configuration | X | X | Locks the serial port redirection user interface and prevents users from changing configuration options on the remote desktop. When you enable this setting, users cannot configure the options that are available from the tool tray menu on their desktops. Users can display the Serial COM Redirection for VMware Horizon menu, but the options are inactive and cannot be changed. When this setting is disabled, users can configure the options in the Serial COM Redirection for VMware Horizon menu. When this setting is not configured, local program settings on the remote desktop determine whether users can configure the COM port redirection settings. This setting is in the folder in the Group Policy Management Editor. |
Smart Card Redirection Settings
Smart card redirection settings are in the
folder in the Group Policy Management Editor.Setting | Computer | User | Properties |
---|---|---|---|
Allow applications access to Local Smart Card readers | X | If enabled, applications can access all local smart card readers even when the smart card redirection feature is installed. When enabled, the desktop is monitored for the presence of a local reader and when detected, the smart card redirection switches off, allowing access to the local readers. The redirection remains off until the next time the user connects to the session. When local access is enabled, applications can no longer access remote readers present on the client. This setting does not apply to RDP or to RDS hosts when the Remote Desktop Services role is enabled. This setting is disabled by default. |
|
Local Reader Name | X | Specifies the name of a local reader to monitor to enable local access. By default, the reader must have a card inserted to enable local access. You can disable this requirement by using the Require an inserted Smart Card setting. This setting is enabled by default. |
|
Require an inserted Smart Card | X | If enabled, local reader access is enabled if the local reader has a card inserted. If disabled, local access is enabled as long as a local reader is detected. This setting is enabled by default. |
True SSO Configuration Settings
True SSO configuration settings are in the
folder in the Group Policy Management Editor. See the Horizon Administration document.Unity Touch and Hosted Apps Settings
Unity Touch and Hosted Apps settings are in the
folder in the Group Policy Management Editor.Setting | Computer | User | Properties |
---|---|---|---|
Send updates for empty or offscreen windows | X | Specifies whether the client receives updates about empty or offscreen windows. When this setting is disabled, information about windows that are smaller than 2x2 pixels, or that are located offscreen, are not sent to the client. This setting is disabled by default. |
|
Enable UWP support on RDSH platforms | X | When enabled, Universal Windows Platform (UWP) applications can run on Windows 10 virtual desktop (WVD) hosts on Horizon Cloud Service on Azure. When disabled, the application status shows as unavailable in Horizon Agent and the user cannot access the application. Restart the agent VM for this setting to take effect. This setting is disabled by default. |
|
Enable Unity Touch | X | Determines whether the Unity Touch functionality is enabled on the remote desktop. Unity Touch supports the delivery of published applications in Horizon Client and allows mobile device users to access applications in the Unity Touch sidebar. This setting is enabled by default. |
|
Enable system tray redirection for Hosted Apps | X | Determines whether system tray redirection is enabled while a user is running published applications. This setting is enabled by default. |
|
Enable user profile customization for Hosted Apps | X | X | Specifies whether to customize the user profile when published applications are used. If this setting is enabled, a user profile is generated, the Windows theme is customized, and startup applications are registered. This setting is disabled by default. |
Only launch new instances of Hosted Apps if arguments are different | X | This policy controls the behavior when a published application starts, but an existing instance of the application is already running inside a disconnected protocol session. When disabled, the existing instance of the application activates. When enabled, the inside existing instance of the application activates only if the command-line parameters match. This setting is disabled by default. |
|
Limit usage of Windows hooks | X | Disables most hooks when published applications or Unity Touch are used. This setting is intended for applications that have compatibility issues when OS-level hooks are set. For example, enabling this setting disables the use of most Windows active accessibility and in-process hooks. This setting is disabled by default, which means that all preferred hooks are used. |
|
Unity Filter rule list | X | Specifies filter rules for unity windows when using published applications. Horizon Agent uses these rules to support custom applications. For information about creating filter rules, see Managing Special Unity Windows. This setting is not configured by default. |
View Agent Direct-Connection Configuration
Policy settings for View Agent Direct-Connection Configuration are in the ADMX template file vdm_agent_direct_connection.admx. View Agent Direct-Connection configuration settings are in the folder in the Group Policy Management Editor. See the View Agent Direct-Connection Plug-In Administration document.
Real-Time Audio-Video Configuration
Policy settings for Real-Time Audio-Video Configuration are in the ADMX template file vdm_agent_rtav.admx. RTAV configuration settings are in the folder in the Group Policy Management Editor. See Real-Time Audio-Video Group Policy Settings.
USB Configuration
USB Configuration settings are in the Using Policies to Control USB Redirection .
folder in the Group Policy Management Editor. SeeVMware AppTap Configuration
The VMware AppTap configuration setting is in the
folder in the Group Policy Management Editor.Setting | Computer | User | Properties |
---|---|---|---|
Processes to ignore when detecting empty application sessions | X | Specifies the list of processes to ignore when detecting empty application sessions. You can specify either a process filename or a full path. Values are not case-sensitive . Do not use environment variables in paths. UNC network paths are allowed, example: \\vmware\temp\app.exe. This setting is not configured by default. |
Client Drive Redirection
Policy settings for Client Drive Redirection are in the ADMX template file vdm_agent_cdr.admx. Client Drive Redirection settings are in the folder in the Group Policy Management Editor. See Client Drive Redirection Policy Settings.
VMware HTML5 Features
VMware HTML5 features consist of Browser Redirection, Geolocation Redirection, HTML5 Multimedia Redirection, and WebRTC Redirection. Policy settings for these features are in the VMware HTML5 Feature Policy Settings.
folder in the Group Policy Management Editor. SeeVMware Integrated Printing
Policy settings for VMware Integrated Printing are in the ADMX template file printerRedirection.admx. VMware Integrated Printing settings are in the folder in the Group Policy Management Editor. See VMware Integrated Printing Policy Settings.
VMware Virtualization Pack for Skype for Business
VMware Virtualization Pack for Skype for Business settings are in the VMware Virtualization Pack for Skype for Business Policy Settings.
folder in the Group Policy Management Editor. SeeWatermark Configuration
The watermark configuration setting is in the User Configuration folder, located in folder in the Group Policy Management Editor.
Setting | Computer | User | Properties |
---|---|---|---|
Watermark Configuration | X | Enable this setting to configure a watermark to appear on your virtual desktop. Enter information you want to display as the watermark in Text. Options are: %ViewClient_IP_Address% %ViewClient_Broker_UserName% %ViewClient_Broker_DomainName% %COMPUTERNAME% %USERDOMAIN% %USERNAME% %ViewClient_ConnectTime% The character limit is 256 characters and 1024 characters after expansion.
Image Layout: the watermark layout on the screen, which is divided into nine squares:
Text Rotation: a specific angle for the watermark text. Opacity: the transparency level of the text. The range is 0 through 255. The default value is 255. Margin: the space around the watermark for the Tile layout. If the watermark is scaled, the margin is also scaled. This setting is not configured by default. |