VMware Horizon Community
Claudiocaf
Enthusiast
Enthusiast
Jump to solution

Issue connecting with Blast after upgrade to View 6.1.1 ("Your desktop may have an untrusted security certificate")

Hello guys,

We are facing a very strange issue with Blast after the upgrade to View 6.1.1. Let me show you the scenario:

We have two Security servers (paired with two Connection servers).

On both Security servers (and on the Connection servers) the default self-signed certificate is used.

Secure Tunnel, PCoIP Secure Gateway and Blast Secure Gateway are enabled.

Users access from internet through Netscaler that load balance the traffic and presents a trusted signed certificate.

For now I will not go in deep in the Netscaler configuration, as it was working fine.

We were on Horizon View 5.2 and everything was working so good!!!...

After the upgrade to View 6.1.1, we are unable to connect using the web browser! We can login and select the desktop, but as soon as the connection to the desktop is launched we receive the below error message:

"Your desktop has been disconnected.

Attempting to reconnect to desktop...

Your desktop may have an untrusted security certificate. Click here to accept the security certificate, then try connecting to your desktop again."

error.png

If we click the link, we are redirected to something like https://Blast_External_URL:8443/r/F386565D-‌D068-4AC1-BFD3-3A903CBEB235/certAccept.html, receiving a blank page with the following text:

"Failed to resolve proxying route for request"

Just before the upgrade we were able to use HTML protocol!!! We made no changes at all, so I really think this is related to some changes introduced with the new version of Horizon View, but cannot find out what is causing the issue.

No problems connecting with the Horizon View Client (PCoIP and RDP).

If in the Blast Secure Gateway External URL we insert the Security Server hostname instead of the External URL (Netscaler), we are able to connect but of course only from inside our LAN.

Anyone have any thoughts?

Thank you.

0 Kudos
1 Solution

Accepted Solutions
Claudiocaf
Enthusiast
Enthusiast
Jump to solution

Hi Calyps0Craig,

yes I found a solution to this. In our case the issue was solved changing the Netscaler configuration.

In the past we were using SSL Offload and all protocols were working. It seems that with new View version SSL Offload is not working anymore.

Changing Virtual Server and Service on ports 443 and 8443 from SSL to SSL_BRIDGE solved our problem.

Hope this will help you.

Best Regards,

Claudio

View solution in original post

0 Kudos
3 Replies
dwigz
Enthusiast
Enthusiast
Jump to solution

When you uninstalled\re-installed the agent did it create a new blast certificate on the desktop or set the certificate thumb print in the registry?  I have a link below to the PDF

https://www.vmware.com/pdf/horizon-view/horizon-html-access-3x-document.pdf

0 Kudos
Calyps0Craig
Enthusiast
Enthusiast
Jump to solution

Hi ClaudiocafClaudiocaf, did you get a resolution to this problem? We are seeing the same after upgrading to 6.1.

Cheers

Craig

0 Kudos
Claudiocaf
Enthusiast
Enthusiast
Jump to solution

Hi Calyps0Craig,

yes I found a solution to this. In our case the issue was solved changing the Netscaler configuration.

In the past we were using SSL Offload and all protocols were working. It seems that with new View version SSL Offload is not working anymore.

Changing Virtual Server and Service on ports 443 and 8443 from SSL to SSL_BRIDGE solved our problem.

Hope this will help you.

Best Regards,

Claudio

0 Kudos