davebaker87's Posts

To add more to this -   We have been able to successfully launch an app via RDSH to an external user but the reliability is intermittent. What seems to happen is that Pre-launch will commence short... See more...
To add more to this -   We have been able to successfully launch an app via RDSH to an external user but the reliability is intermittent. What seems to happen is that Pre-launch will commence shortly after authenticating with the connection server, then , if no pre-existing pre-launch session exists, it will try to create a new one. After exactly 1 minute, the 'new' session then expires. Attached image from our horizon logs:       UKDN.\S0088161test2 Info 04/09/2020, 2:39 PM Broker Get launch items timing profile for \S0088161test2 on XHZWIN0402, duration: 32 UKDN\s0088161test2 Info 04/09/2020, 2:34 PM Broker null application launch timing profile for UKDN\s0088161test2, duration: 124337 UKDN\s0088161test2 Audit failure 04/09/2020, 2:33 PM Broker Unable to launch from Pool a-uat-muapp-f1 for user UKDN\s0088161test2: There were no machines available that reported protocol [BLAST] as ready UKDN\s0088161test2 Warning 04/09/2020, 2:33 PM Agent The pending session on machine AS12UATMuApp101 for user UKDN\s0088161test2 has expired UKDN\s0088161test2 Info 04/09/2020, 2:32 PM Broker User UKDN\s0088161test2 requested Pool a-uat-muapp-f1, allocated machine AS12UATMuApp101 UKDN\s0088161test2 Info 04/09/2020, 2:32 PM Broker User UKDN\s0088161test2 requested Application a-uat-muapp01-goal_b1 UKDN\s0088161test2 Info 04/09/2020, 2:32 PM Agent The agent running on machine AS12UATMuApp101 has accepted an allocated session for user UKDN\s0088161test2 UKDN\s0088161test2 Warning 04/09/2020, 2:30 PM Agent The pending session on machine AS12UATMuApp101 for user UKDN\s0088161test2 has expired UKDN\s0088161test2 Info 04/09/2020, 2:29 PM Broker User UKDN\s0088161test2 requested Pool a-uat-muapp-f1, allocated machine AS12UATMuApp101 UKDN\s0088161test2 Info 04/09/2020, 2:29 PM Broker User UKDN\s0088161test2 requested Application a-uat-muapp01-goal_b1 UKDN\s0088161test2 Info 04/09/2020, 2:29 PM Agent The agent running on machine AS12UATMuApp101 has accepted an allocated session for user UKDN\s0088161test2 UKDN\s0088161test2 Warning 04/09/2020, 2:28 PM Agent The pending session on machine AS12UATMuApp101 for user UKDN\s0088161test2 has expired UKDN\s0088161test2 Info 04/09/2020, 2:27 PM Broker User UKDN\s0088161test2 requested Pool a-uat-muapp-f1, allocated machine AS12UATMuApp101 UKDN\s0088161test2 Info 04/09/2020, 2:27 PM Broker User UKDN\s0088161test2 requested an application session from Pool a-uat-muapp-f1, pre-launch true I changed the pre-launch session timeout to 'Never' and tried to log in again and the audit failure at 2:33pm suggested no machines available, so would this suggest a licensing issue? Previosuly we've never seen this error because we didn't tweak pool settings. Any guidance or troubleshooting ideas would be appreciated,   Dave
Hey - we have the same problem but with connections (from internet) via UAG's into our RDSH farm. The screen is black (app doesn't launch) and log files show 'No shared memory channel. Horizon cl... See more...
Hey - we have the same problem but with connections (from internet) via UAG's into our RDSH farm. The screen is black (app doesn't launch) and log files show 'No shared memory channel. Horizon client service may be down.' and numerous 'RPC server unavailable' errors. Could you expand on your previous post a bit please? What type of logging were you referring to? Cheers! Dave
Hi all, We have an RDS farm to allow some external staff to connect in, via a UAG to a few apps. For some reason the service stopped working, and now when we try to connect inbound from the in... See more...
Hi all, We have an RDS farm to allow some external staff to connect in, via a UAG to a few apps. For some reason the service stopped working, and now when we try to connect inbound from the internet, users see a black screen and the request times out. Connecting from the LAN it works fine. The UAG seems fine (no authentication issue and desktop list populates in the horizon client). The error logs on the client machine (from appdata and \VDM folder) show a mix of errors as below (grouped). We've tried using different protocol (in its working state PCoIP was the display protocol on the host), recovering the farm, restarting services, upgrading vmware tools etc to no avail. Any suggestions on these? A google suggests that there's an AD issue looking up the computer account, and yes, I've read the vmware KB https://kb.vmware.com/s/article/2083784 - any other ideas!!?? 2020-04-07T14:15:52.958+00:00 ERROR (453C) [WinCDK] PartnerAppMgr::ChannelAddRef : No shared memory channel. Horizon client service may be down. 2020-04-07T14:15:34.064+00:00 ERROR (453C) [WinCDK] USBDevices::FreeEnumData : CdkViewUsb failed to free enumeration. The reason is 'ViewUsbStatus_BadHandle'. The broker is 'smartext.uk.thalesgroup.com'. The desktop is 'CalculatorTest'. 2020-04-07T14:15:52.201+00:00 ERROR (453C) [libcdk] CdkClientInfo_GetMachineDistinguishedName: GetComputerObjectNameW failed with code: 0x00000547. 2020-04-07T14:15:52.201+00:00 ERROR (453C) [libcdk] CdkClientInfo_GetLoggedOnFQDN: GetUserNameEx failed with code: 0x00000534. 020-04-07T14:15:10.956+01:00 ERROR (4C54-9B38) <NodeManagerWatcher> [vmware-remotemks] Failed to initiate shared memory over RPC, server initiate failed.  1722 (The RPC server is unavailable.) 2020-04-07T14:15:10.956+01:00 WARN  (4C54-9B38) <NodeManagerWatcher> [vmware-remotemks] CORE::SharedMemChannel::Connect(): Channel (null) (0x0000000000000000): SharedMem Connect to SessionClient FAILED: RPC initiated sharedmem connect failed, reason=hostUnreachable 2020-04-07T14:15:11.456+01:00 ERROR (4C54-99A4) <39332> [vmware-remotemks] HccChannelPlugin::ChannelAddRef: No shared memory channel. Horizon client service may be down. 2020-04-07T14:15:11.456+01:00 ERROR (4C54-99A4) <39332> [vmware-remotemks] HccChannelPlugin::GetControllerMessageQueues: ChannelAddRef failed! 2020-04-07T14:15:11.956+01:00 ERROR (4C54-99A4) <39332> [vmware-remotemks] HccChannelPlugin::ChannelAddRef: No shared memory channel. Horizon client service may be down. 2020-04-07T14:15:11.956+01:00 ERROR (4C54-99A4) <39332> [vmware-remotemks] HccChannelPlugin::SendToAllControllers: ChannelAddRef failed! 2020-04-07T14:13:02.362+01:00 ERROR (7348-6F1C) <28444> [vmware-remotemks] HccChannelPlugin::ChannelAddRef: No shared memory channel. Horizon client service may be down. 2020-04-07T14:13:02.362+01:00 ERROR (7348-6F1C) <28444> [vmware-remotemks] HccChannelPlugin::GetControllerMessageQueues: ChannelAddRef failed! 2020-04-07T14:13:02.862+01:00 ERROR (7348-6F1C) <28444> [vmware-remotemks] HccChannelPlugin::ChannelAddRef: No shared memory channel. Horizon client service may be down.
So, it transpires that the user account I was testing with had a UEM issue 'Failed to load flexengine.dll' at logon. Not sure on root cause, but after creating a new test account - everything wor... See more...
So, it transpires that the user account I was testing with had a UEM issue 'Failed to load flexengine.dll' at logon. Not sure on root cause, but after creating a new test account - everything worked as expected. Script runs, priv elevation works and voila! Thanks a lot for your time and help and pointing out the log entries to be aware of. Good to know that it IS possible to change computer settings! Stay safe
Hi DEMDev, If I click the .exe in it's share (from the desktop) it runs, but cmd window errors with below: "Error: Requested registry access is now allowed" The UEM Logs are applying the p... See more...
Hi DEMDev, If I click the .exe in it's share (from the desktop) it runs, but cmd window errors with below: "Error: Requested registry access is now allowed" The UEM Logs are applying the priv settings, so coupled with the above, it looks to me like UAC or some other GPO is preventing write access to HKLM. However, if I run regedit as administator, I can amend keys, so surely this is the same level of access that Priv Elevation uses? Unless the problem now points at something like the UEM service account (or whatever account/context the Privlege Elevation tool uses to elevate things) doesn't have local-admin rights on the local machine? 2020-03-26 10:05:48.217 [INFO ] Collected path-based privilege elevation settings to apply for elevated applications ('Excel DDE Fix.xml') 2020-03-26 10:05:48.233 [INFO ] Applied privilege elevation settings I'm wondering if I need to us something like Appvols to run the script instead (how, I'm not sure...any idaes?) I know this is faux pas, but Liquidware Profile Unity can do this kind of thing without any problem, it just runs scripts as SYSTEM context and you can configure the life out of everything! Would really help if VMware took a leaf from their book... Thanks for getting back!
I know UEM can only HKCU hive but I had hoped that the following would work: 1. Created a PS script that changes and deletes a couple of HKLM\Software\Classes keys and converted it to .EXE usi... See more...
I know UEM can only HKCU hive but I had hoped that the following would work: 1. Created a PS script that changes and deletes a couple of HKLM\Software\Classes keys and converted it to .EXE using PS2EXE. 2. Put the .exe in a fileshare and set Privilege Elevation (path based) to elevate the .exe 3. I also used privilege elevation to elevate C:\windows\regedit.exe 4. Created a shortcut in the Startup folder pointing to the .exe so it runs at logon. Of course it failed, and the error was 'Registry area cannot be written to' or something along those lines. Presumably this is UAC on the desktop, or UEM is executing the script, but not even priv elevation doesn't let it write to HKLM. Has anybody got a way around this? I really need these HKLM keys to be added at startup otherwise we're changing a master image for 500+ people. Please help or put me out of my misery. Dave
Thanks - we were advised to wait until march 5.4 client release, despite the request for hotfix. It's not as time sensitive as it was - so we'll just wait for a huge bug finders bounty to deposit... See more...
Thanks - we were advised to wait until march 5.4 client release, despite the request for hotfix. It's not as time sensitive as it was - so we'll just wait for a huge bug finders bounty to deposit into my cayman's account! Thanks for your help
Hey, I'm trying to package VNC clients using AppVolumes - but the local system services are not captured. Is this by design, or is it possible to edit the snapvol.cfg file to capture these? I ... See more...
Hey, I'm trying to package VNC clients using AppVolumes - but the local system services are not captured. Is this by design, or is it possible to edit the snapvol.cfg file to capture these? I need to be able to layer a VNC-style client onto non-persistent desktops, and we don't want the server component to be installed into the master image, which is proving quite a challenge.. Any ideas? Thanks Dave
Senior tech's identified that, within the PAC file, the URL for our proxy server was not being interpreted to include https:// in the address string. Although the entry in the PAC used an FQDN.  ... See more...
Senior tech's identified that, within the PAC file, the URL for our proxy server was not being interpreted to include https:// in the address string. Although the entry in the PAC used an FQDN.  We were provided with a sandbox version of the client, which worked, and are hoping a patch or remedial fix will be provided. Thanks for the support. But I won't gives thanks for the headaches it caused getting to this point...
Hi We've submitted client level logs and PAC files to support. Below is their initial diagnosis. We will provide more logs today. From a client with PAC file configured (fails): 2020-02-14T... See more...
Hi We've submitted client level logs and PAC files to support. Below is their initial diagnosis. We will provide more logs today. From a client with PAC file configured (fails): 2020-02-14T13:37:58.244+00:00 INFO (5E64) [libcdk] CdkProxy_GetProxyForAutoSettings: Call WinHttpGetProxyForUrl for external.uag.com. 2020-02-14T13:37:58.245+00:00 INFO (5E64) [libcdk] CdkProxy_GetProxyForAutoSettings: Failed to get WinHTTP proxy info with error 0x00002ee6. 2020-02-14T13:37:58.245+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 23: error=11001. 2020-02-14T13:37:58.245+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 2: error=11001. 2020-02-14T13:37:58.277+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 0: error=11001. 2020-02-14T13:37:58.277+00:00 ERROR (5E64) [WinCDK] PCoIPWindow::CreateRemoteWindow : The type of address external.UAG.com is unknown, could be invalid. 2020-02-14T13:37:58.277+00:00 DEBUG (5E64) [WinCDK] DesktopWindow::Connect : Creating remote window failed.  Posting generic error message. With manual proxy configured (successfuk) 2020-02-14T13:25:55.385+00:00 INFO (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Launching RemoteMKS with BLAST protocol, launchitem is: 'PSmartDesktop' ('cn=1a696234-f7f7-4510-9d65-0602549b58a9,ou=entitlements,dc=vdiglobal,dc=vmware,dc=int') 2020-02-14T13:25:55.388+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForAutoSettings: external.uAG.Com 2020-02-14T13:25:55.390+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForAutoSettings: Failed to get WinHTTP proxy info with error 0x00002ee6. The following business is to handle the static proxy. 2020-02-14T13:25:55.390+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForUrl: Evaluate a semicolon-delimited proxy bypass list for external.UAG.com. 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveProxyName: The proxy name is : '10.33.241.200:8080'. 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveHttpsProxy: Find proxy: '10.33.241.200:8080' 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveHttpsProxy: Get Https proxy '10.33.241.200:8080' and use the same proxy forall protocols. 2020-02-14T13:25:55.391+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForUrl: Found windows proxy string: '10.33.241.200:8080'. 2020-02-14T13:25:55.391+00:00 INFO (2064) [libcdk] CdkProxy_HandleFailover: Will go through failover proxy chain: '10.33.241.200:8080'. 2020-02-14T13:25:55.391+00:00 DEBUG (2064) [libcdk] CdkDnsLookup_ResolveAddress: Server name 10.33.241.200 is resolved as 10.33.241.200 for IPv4. 2020-02-14T13:25:55.391+00:00 DEBUG (2064) [libcdk] Starting peer reachability check: CdkConnection_CheckPeerReachabilityImpl: host ip list : 10.33.241.200, tcp port 8080, udp port 0, tcp connect count 1, udp send count 0 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : udpProxyLib: VTHREAD 38480 "vthread-38480" 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCreateTestData: Hostlist = 10.33.241.200, v4 address count = 1, v6 address count = 0 2020-02-14T13:25:55.391+00:00 ERROR (2064) [libcdk] CdkConnection_CheckPeerReachabilityImpl: peer reachability check returns 1 with error 0. 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCreateTestConnectionData: Create test data for hostAddress = 10.33.241.200 with connection Type = 0 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCheckTCPPeerReachabilityImpl: Request to test TCP peer reachability to 10.33.241.200:8080 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : udpProxyLib: SOCKET creating new IPv4 socket, connecting to 10.33.241.200:8080 (10.33.241.200) 2020-02-14T13:25:55.418+00:00 DEBUG (97A0) [WinCDK] UdpProxyLogger : UDPProxyPeerTestConnectCallback: Peer reachability response for successful connect for 10.33.241.200:8080, connection type = 0 2020-02-14T13:25:55.418+00:00 DEBUG (97A0) [libcdk] CdkConnection_CheckPeerReachabilityCb: TCP reachable for 10.33.241.200:8080. 2020-02-14T13:25:55.491+00:00 INFO (2064) [libcdk] CdkProxy_HandleFailover: Will use proxy '10.33.241.200:8080'. 2020-02-14T13:25:55.491+00:00 INFO (2064) [WinCDK] PCoIPWindow::GetSystemProxyForBlastConnection : The proxy '10.33.241.200:8080' is applied to the blast external.Uag.com'. 2020-02-14T13:25:55.491+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 23: error=11001. 2020-02-14T13:25:55.491+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 2: error=11001. 2020-02-14T13:25:55.520+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 0: error=11001. 2020-02-14T13:25:55.520+00:00 ERROR (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : The type of address external.UAG.com is unknown, could be invalid. 2020-02-14T13:25:55.520+00:00 WARN (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Use FQDN 'external.uag.com' to try the Blast connection. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] FolderRedirectionManager::InitAutoRedirect : Init folder auto redirect settings. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] FolderRedirectionManager::SubscribeCDRCapabilityChange : Init folder redirection capablity tests. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] GeolocationRedirectionManager::InitPermRequest : Init geolocation permission request settings. 2020-02-14T13:25:55.545+00:00 DEBUG (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Get unity mgr: 06ACBC88. We are going to try adding the IP address of our external.uag.com into the PAC file instead. A second test will be to use the A record address, currently external.uag.com is a cname. more to follow - Any ideas?
This has been fixed by VMWare and plans to be included in the 5.4 client release in March 2020. Senior tech's identified that, within the PAC file, the URL for our proxy server was not being i... See more...
This has been fixed by VMWare and plans to be included in the 5.4 client release in March 2020. Senior tech's identified that, within the PAC file, the URL for our proxy server was not being interpreted to include https:// in the address string. Although the entry in the PAC used an FQDN.  We were provided with a sandbox version of the client, which worked, and are hoping a patch or remedial fix will be provided. Thanks for the support. But I won't gives thanks for the headaches it caused getting to this point...
Hi We've submitted client level logs and PAC files to support. Below is their initial diagnosis. We will provide more logs today. From a client with PAC file configured (fails): 2020-02-14T1... See more...
Hi We've submitted client level logs and PAC files to support. Below is their initial diagnosis. We will provide more logs today. From a client with PAC file configured (fails): 2020-02-14T13:37:58.244+00:00 INFO (5E64) [libcdk] CdkProxy_GetProxyForAutoSettings: Call WinHttpGetProxyForUrl for external.uag.com. 2020-02-14T13:37:58.245+00:00 INFO (5E64) [libcdk] CdkProxy_GetProxyForAutoSettings: Failed to get WinHTTP proxy info with error 0x00002ee6. 2020-02-14T13:37:58.245+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 23: error=11001. 2020-02-14T13:37:58.245+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 2: error=11001. 2020-02-14T13:37:58.277+00:00 DEBUG (5E64) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 0: error=11001. 2020-02-14T13:37:58.277+00:00 ERROR (5E64) [WinCDK] PCoIPWindow::CreateRemoteWindow : The type of address external.UAG.com is unknown, could be invalid. 2020-02-14T13:37:58.277+00:00 DEBUG (5E64) [WinCDK] DesktopWindow::Connect : Creating remote window failed.  Posting generic error message. With manual proxy configured (successfuk) 2020-02-14T13:25:55.385+00:00 INFO (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Launching RemoteMKS with BLAST protocol, launchitem is: 'PSmartDesktop' ('cn=1a696234-f7f7-4510-9d65-0602549b58a9,ou=entitlements,dc=vdiglobal,dc=vmware,dc=int') 2020-02-14T13:25:55.388+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForAutoSettings: external.uAG.Com 2020-02-14T13:25:55.390+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForAutoSettings: Failed to get WinHTTP proxy info with error 0x00002ee6. The following business is to handle the static proxy. 2020-02-14T13:25:55.390+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForUrl: Evaluate a semicolon-delimited proxy bypass list for external.UAG.com. 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveProxyName: The proxy name is : '10.33.241.200:8080'. 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveHttpsProxy: Find proxy: '10.33.241.200:8080' 2020-02-14T13:25:55.390+00:00 DEBUG (2064) [libcdk] CdkProxy_RetrieveHttpsProxy: Get Https proxy '10.33.241.200:8080' and use the same proxy forall protocols. 2020-02-14T13:25:55.391+00:00 INFO (2064) [libcdk] CdkProxy_GetProxyForUrl: Found windows proxy string: '10.33.241.200:8080'. 2020-02-14T13:25:55.391+00:00 INFO (2064) [libcdk] CdkProxy_HandleFailover: Will go through failover proxy chain: '10.33.241.200:8080'. 2020-02-14T13:25:55.391+00:00 DEBUG (2064) [libcdk] CdkDnsLookup_ResolveAddress: Server name 10.33.241.200 is resolved as 10.33.241.200 for IPv4. 2020-02-14T13:25:55.391+00:00 DEBUG (2064) [libcdk] Starting peer reachability check: CdkConnection_CheckPeerReachabilityImpl: host ip list : 10.33.241.200, tcp port 8080, udp port 0, tcp connect count 1, udp send count 0 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : udpProxyLib: VTHREAD 38480 "vthread-38480" 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCreateTestData: Hostlist = 10.33.241.200, v4 address count = 1, v6 address count = 0 2020-02-14T13:25:55.391+00:00 ERROR (2064) [libcdk] CdkConnection_CheckPeerReachabilityImpl: peer reachability check returns 1 with error 0. 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCreateTestConnectionData: Create test data for hostAddress = 10.33.241.200 with connection Type = 0 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : UDPProxyCheckTCPPeerReachabilityImpl: Request to test TCP peer reachability to 10.33.241.200:8080 2020-02-14T13:25:55.391+00:00 DEBUG (9650) [WinCDK] UdpProxyLogger : udpProxyLib: SOCKET creating new IPv4 socket, connecting to 10.33.241.200:8080 (10.33.241.200) 2020-02-14T13:25:55.418+00:00 DEBUG (97A0) [WinCDK] UdpProxyLogger : UDPProxyPeerTestConnectCallback: Peer reachability response for successful connect for 10.33.241.200:8080, connection type = 0 2020-02-14T13:25:55.418+00:00 DEBUG (97A0) [libcdk] CdkConnection_CheckPeerReachabilityCb: TCP reachable for 10.33.241.200:8080. 2020-02-14T13:25:55.491+00:00 INFO (2064) [libcdk] CdkProxy_HandleFailover: Will use proxy '10.33.241.200:8080'. 2020-02-14T13:25:55.491+00:00 INFO (2064) [WinCDK] PCoIPWindow::GetSystemProxyForBlastConnection : The proxy '10.33.241.200:8080' is applied to the blast external.Uag.com'. 2020-02-14T13:25:55.491+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 23: error=11001. 2020-02-14T13:25:55.491+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 2: error=11001. 2020-02-14T13:25:55.520+00:00 DEBUG (2064) [libcdk] CdkUtil_StringToAddress: Failed to get addr info with family 0: error=11001. 2020-02-14T13:25:55.520+00:00 ERROR (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : The type of address external.UAG.com is unknown, could be invalid. 2020-02-14T13:25:55.520+00:00 WARN (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Use FQDN 'external.uag.com' to try the Blast connection. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] FolderRedirectionManager::InitAutoRedirect : Init folder auto redirect settings. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] FolderRedirectionManager::SubscribeCDRCapabilityChange : Init folder redirection capablity tests. 2020-02-14T13:25:55.545+00:00 INFO (2064) [WinCDK] GeolocationRedirectionManager::InitPermRequest : Init geolocation permission request settings. 2020-02-14T13:25:55.545+00:00 DEBUG (2064) [WinCDK] PCoIPWindow::CreateRemoteWindow : Get unity mgr: 06ACBC88. We are going to try adding the IP address of our external.uag.com into the PAC file instead. A second test will be to use the A record address, currently external.uag.com is a cname. more to follow - Any ideas?
Hi, I've provided logs to your customer support team. We also ran trace logs, connected with a pac enabled vs disabled (manual proxy configured) and logs were identical. I'll provide excerpts ... See more...
Hi, I've provided logs to your customer support team. We also ran trace logs, connected with a pac enabled vs disabled (manual proxy configured) and logs were identical. I'll provide excerpts on this thread early next week.
Hi - did you get an answer on this? I've got same issue w/ Horizon client 5.3 running with a PAC file. It simply doesn't work. By explicilty configuring a system proxy, it does work.
*should say lshost, not 'lost'
Howdy I'm working with a client that runs win 10 with a PAC file. Contained within the PAC there is some redirection commands similar to below : If (dns domainls (lost, "vmwareuaggateway.co... See more...
Howdy I'm working with a client that runs win 10 with a PAC file. Contained within the PAC there is some redirection commands similar to below : If (dns domainls (lost, "vmwareuaggateway.com") Return "PROXY some proxy server.com:8080) Traffic destined for our UAG gateway is redirected via an second proxy. We know the traffic is routing correctly.  However, when we connect using Horizon Client with blast settings enabled for 'use system proxy" and the PAC file enabled in Windows Proxy settings , the connection fails. If we explicitly configure a system proxy  with the IP of' someproxyserver.Com;8080 in Windows proxy settings, and then disable using a pac file, the connection works. We're beginning to think the Horizon Client 5.3 can't handle PAC files Or it can't handle redirection taking place within a pac file (ala my first paragraph). Does anyone have suggestions for this? Does it warrant a ticket with vmware? Any pac file we try to use simply doesn't work. Thanks
Thankyou - that's about 3/4's of what I need, would it be great if UEM had an option to 'Retire and remove backups' so it's possible to make tweaks to app templates without having to retire it in... See more...
Thankyou - that's about 3/4's of what I need, would it be great if UEM had an option to 'Retire and remove backups' so it's possible to make tweaks to app templates without having to retire it indefinitely. A bit like how the versioning in appvols 4.0 works I guess. Anyhow, thanks for the pointer.
I'm trying to remove (permanently) a number of .zip settings archives (Windows Settings) using Profile Cleanup - but the cleanup tool doesn't actually delete the .zip archives (and doesn't seem v... See more...
I'm trying to remove (permanently) a number of .zip settings archives (Windows Settings) using Profile Cleanup - but the cleanup tool doesn't actually delete the .zip archives (and doesn't seem very useful for a non-persistent environment) Example, at log off, UEM exports the settings as part of the normal log off process (the same settings I actually want to delete and not retain) 2020-01-20 12:38:57.431 [DEBUG] ExportRegistry: Exporting tree 'HKCU\Software\Microsoft\Windows\CurrentVersion\CloudStore' 2020-01-20 12:38:57.453 [DEBUG] ExportRegistry: Exporting value 'HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\EnableAutoTray' 2020-01-20 12:38:57.453 [DEBUG] ExportRegistry::ExportValue: Value 'EnableAutoTray' of key 'HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer' does not exist 2020-01-20 12:38:57.453 [DEBUG] ExportRegistry: Exporting value 'HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SlowContextMenuEntries' And then Profile Cleanup removes them from the machine - which is pointless if you're on a non-persistent VDI because you don't need the settings to be removed. 2020-01-20 12:38:59.827 [DEBUG] Profile cleanup: Removing registry tree 'HKCU\Software\Microsoft\Windows\CurrentVersion\CloudStore' 2020-01-20 12:38:59.855 [DEBUG] Profile cleanup: Removing registry value 'HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\EnableAutoTray' 2020-01-20 12:38:59.855 [WARN ] Profile cleanup: Registry value 'HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\EnableAutoTray' not found What I actually want is the Windows 10 Start Menu.zip to be deleted from from the \archives dir so the settings are completely gone. Is it me or is this a pretty dumb feature that doesn't do what is advertised... Any suggestions?
I put this to the floor of technical wizardry for advice... My client has 60+ dashboard/kiosk desktops within their LAN that currently use a combination of: - Horizon View auto-logon into a p... See more...
I put this to the floor of technical wizardry for advice... My client has 60+ dashboard/kiosk desktops within their LAN that currently use a combination of: - Horizon View auto-logon into a persistent VM - The persistent VM has the SCCM agent installed on it, and whatever drivers/kiosk specific software locally installed. - Said machines are managed for the CMRC viewer tool, this allows a unsolicited connection to the desktop via it's hostname so they can be remotely managed. - Users who manage/own a dashboard write down the hostname of their machine, which has never changed! We're introducing instant clone, non persistent machines on H7. This will all operate from within the LAN, so no connections from unknown networks. Thus far the technical challenges have been: - Find a way to display the IP/hostname of the instant-clone so the 'owner' knows how to connect to their kiosk - SOLVED: BGInfo to display the Hostname or IP (just about acceptable with our security team...) Problem: Find a tool that allows unsolicited remote access to the desktop - I'm very much open to ideas on this and there's a number of security considerations that (ideally) need to be met:      1. The tool should run at anything better than DES encryption to secure the connections. Ideally AES.      2. The tool (ideally) should run without needing to be locally installed (this avoids us needing to manage multiple desktop images). For example, TightVNC Server component must be locally installed, which adds burden on our service teams. Most VNC tools I've seen need to register system services and add windows firewall rules, but if we could layer in the 'server' tool that would be perfect.      3. If there was a method to create a one-time access code for the 'owner' to reach their kiosk, this would help avoid situation where Joe Bloggs mis-typed his hostname and connected to John Smith's dashboard - infosec nightmares!      4. Ideally,  there's some logging or audit of who connected to which desktop, and from what source. My PoC has been using TightVNC but this is freeware and is clunks/dated/but great for free. Has anyone had a similar challenge to this, what were your ways around this? Any recommendations would be greatly appreciated. I've wrestled with trying to get Windows Remote Assistance to auto-accept invites from remote connections (unsolicited connections) - but it seems there is no magic reg-key that we can enable to allow this.
*I've also tried setting the application pool display protocol to RDP. No joy!