VMware Horizon Community
Kavinrajhensdp
Contributor
Contributor

vdi not get connecting on internet

Hello,

  Currently now i am in testing the VDI for my remote users. i have created maual pool and added the users.

When i connect to VDI useing RDP or PCoIP with VPN or Over LAN no issue and i finding letancy on video and alos audio issue.

Data ceter end i have 100/100Mbps Fibre connection

User end minimum 1Mbps broad band, after connection VPN only i am able to get the VDI connection. if i do direct connection i am getting

error message "the connection to the remote computer ended" if i select RDP protocal no issue it is working again letancy on video and alos audio issue.

How to fix this issue

and i am not able to install the Private SSL Certificate, i have Godaddy SSL cetrificate. i have created CSR and generated SSL Certificate.

But i am not able to import to VMView manager server.

Currently i have 2 issue on is i am not able to connect VDI without VPN connection and second i want to know how to import the SSL certificate into VMView manager server

Reply
0 Kudos
13 Replies
Jeremyyy
Contributor
Contributor

Use the view security server... I have zero issues with it.

Maybe go into more detail on your setup.

3x Dell r610s w/196gb ram ESXi 5.1.0 1021289 View 5.1.2 EQL PS4100E/PS6100X Raid6 45tb iSCSI w/ jumbo ProCurve Switches
Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

are u saying to use VMware vShield Endpoint 5.0.2

Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

Hi I have installed the VMview security server and did the steps but i am getting same issue.

From My firewall i have enabled on 443 NAT WAN to LAN (LAN is View Secruity server)

Could please help me what have to be checked

From this URL:- http://www.vtexan.com/2011/12/07/using-vmware-view-5-security-server-with-dynamic-ips/

till above the step Setting up No-IP DDNS in your environment. 

Reply
0 Kudos
mougT
Enthusiast
Enthusiast

When connecting with PCoIP, you also need TCP/UDP port 4172 open to your security server.

Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

Hi already the port has been openned

Reply
0 Kudos
mougT
Enthusiast
Enthusiast

You have opened UDP also? This seems like a firewall issue. RDP is tunneled over port 443, but PCoIP also needs UDP 4172. That is usually why people get RDP to work, but not PCoIP... Check your firewall logs and VDI logs (C:\ProgramData\VMware\VDM\logs) for any clues.

Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

Hi I have enabled WAN to LAN i have enabled any services allow, but i am getting same error over the internet and but over VPN i am able to connect using PCoIP.

Kindly suggest how to find the issue.  I have Sonicwall NSA3500

Reply
0 Kudos
mougT
Enthusiast
Enthusiast

On your Sonicwall, you should be able to see dropped packet in your Log > View page. You can type your security server IP in the "Destination" field to filter your log.

Remember that you need corresponding NAT rules to your firewall rules (TCP 443, TCP/UDP 4172) f you are not doing a 1 to 1 NAT.

Also check your PCoIP logs as mentioned before

Reply
0 Kudos
markbenson
VMware Employee
VMware Employee

Check all 3 steps here - http://communities.vmware.com/docs/DOC-14974 That fixes it for most people.

The firewall rules is just one of the 3 steps. The others are needed too.

Mark

Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

In Sonicwall i checked the Port is has been NAT and also i have changed rule to Any service allow and still on PCoIP protocol i am getting black screen and time out. Kindly help

telnet i checked following port has been open

443

4172 TCP and UDP

Reply
0 Kudos
markbenson
VMware Employee
VMware Employee

What about the other two settings? Check all 3. If it still doesn't work, go through the video. It walks through an example to support remote access. That will get you up and running.

Mark.

Reply
0 Kudos
Kavinrajhensdp
Contributor
Contributor

Yes all 3 and working Could please share me the Video link

Reply
0 Kudos
markbenson
VMware Employee
VMware Employee

The video is at the bottom of the above link.

Mark

Reply
0 Kudos