VMware Horizon Community
CarloJabon
Contributor
Contributor

VMware Horizon View UAG Access Lists

Hi,

Good day, this is my first time here in VMware community and hope you guys are doing well, by the way we have an ongoing VMware Horizon project, one of the requirements is how we can allow only certain computer connecting to UAG from the internet using MAC Address filtering. as we want to limit UAG access for security purposes.

Thank you in advance.

Regards,

Giancarlo Jabon

 

0 Kudos
2 Replies
SurajRoy
Enthusiast
Enthusiast

I dont think UAG has the capability ( currently) to define Access List based on Mac Address.

However, you can check the Connection Server Restriction Feature.

Refer to https://docs.vmware.com/en/VMware-Horizon-7/7.13/horizon-cloud-pod-architecture/GUID-61B2727E-DFFC-4...

NOTE: You can implement the above without Cloud Pod as well.

Create separate Pool for internal and external users.

Set Connection Server Restriction on the External Pool and define 1 specific CS for external use.

Point the UAG to External Connection server..

0 Kudos
sjesse
Leadership
Leadership

You would do this outside of horizon, we use sourced based routing of the load balancer, so certain ip ranges go to a pair of uags. You could probably do rules based off mac address in some firewalls, but that process isn't the best, that only works for devices that are connected directly to a switch.

0 Kudos