markbenson
VMware Employee
VMware Employee

Hi,

The recommendation in all cases is to use different View Connection Servers for internal vs remote access users. There's a good diagram showing this on page 81 here Horizon 6 with View - Architecture and Planning Guide

The other advantage of using separate View Connection Servers this way is that you can ensure that only remote users have their PCoIP sessions directed via the PCoIP Secure Gateway and so internal users can do PCoIP direct between client and virtual desktop. This makes for a better user experience for internal users.

There is an article here VMware Article on RADIUS Authentication setup with View that also describes this setup and says about the ability to have RADIUS authentication for remote users but just AD password authentication for internal users. This setup also allows for different desktop and application entitlements depending on whether the user is internal or remote. You may not have this requirement, but it is fully supported in the product.

There are limitations with just using a source IP address approach. There is nothing to fix here and there are currently no plans to change this recommendation.

Mark