<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NGINX Loadbalancer to Horizon Connection Server does not work in Horizon Desktops and Apps</title>
    <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994673#M100149</link>
    <description>&lt;DIV&gt;apt -y install nginx-full&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;systemctl enable nginx&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;rm -f /etc/nginx/sites-enabled/default&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'user www-data;&lt;/DIV&gt;&lt;DIV&gt;worker_processes auto;&lt;/DIV&gt;&lt;DIV&gt;pid /run/nginx.pid;&lt;/DIV&gt;&lt;DIV&gt;include /etc/nginx/modules-enabled/*.conf;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;events {&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;worker_connections 1000;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;http {&lt;/DIV&gt;&lt;DIV&gt;sendfile on;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;tcp_nopush on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;tcp_nodelay on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;keepalive_timeout 30;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;types_hash_max_size 2048;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;include /etc/nginx/mime.types;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;default_type application/octet-stream;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;access_log /var/log/nginx/access.log;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;error_log /var/log/nginx/error.log;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_disable "msie6";&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_vary on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_proxied any;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_comp_level 6;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_buffers 16 8k;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_http_version 1.1;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_types text/plain text/css application/json application/javascript text/xml application/xml application/xml+rss text/javascript;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;}' &amp;gt; /etc/nginx/nginx.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'ssl on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_certificate /etc/nginx/ssl/nginx.crt;&lt;/DIV&gt;&lt;DIV&gt;ssl_certificate_key /etc/nginx/ssl/nginx.key;&lt;/DIV&gt;&lt;DIV&gt;ssl_dhparam /etc/nginx/ssl/dhparams.pem;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_timeout 1d;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_cache shared:SSL:50m;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_tickets off;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_protocols TLSv1.2;&lt;/DIV&gt;&lt;DIV&gt;ssl_ciphers ECDHE-RSA-AES256-GCM-SHA512:DHE-RSA-AES256-GCM-SHA512:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384;&lt;/DIV&gt;&lt;DIV&gt;ssl_ecdh_curve secp384r1;&lt;/DIV&gt;&lt;DIV&gt;ssl_prefer_server_ciphers on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling on;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling_verify on;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling_file /etc/nginx/ssl/nginx-staple.crt;&lt;/DIV&gt;&lt;DIV&gt;resolver 10.10.10.8 valid=300s;&lt;/DIV&gt;&lt;DIV&gt;resolver_timeout 5s;' &amp;gt; /etc/nginx/conf.d/ssl.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;add_header Accept "*";&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Allow-Origin "*";&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Allow-Methods "GET, POST, PUT" always;&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Expose-Headers "Authorization" always;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;add_header X-Content-Type-Options nosniff;&lt;/DIV&gt;&lt;DIV&gt;add_header X-Frame-Options SAMEORIGIN;&lt;/DIV&gt;&lt;DIV&gt;add_header X-XSS-Protection "1; mode=block";&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;proxy_cookie_path / "/; HTTPOnly; Secure";' &amp;gt; /etc/nginx/conf.d/hsts.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'upstream uags {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; ip_hash;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server 10.10.10.101:443;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server 10.10.10.102:443;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;server {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; listen 80;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server_name horizon.local;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; return 301 https://$server_name$request_uri;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;proxy_cache_path /var/cache/nginx levels=1:2 keys_zone=uag_cache:10m max_size=3g inactive=120m use_temp_path=off;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;server {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; listen 443 ssl;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server_name horizon.local;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; access_log /var/log/nginx/cloud-access.log;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; error_log /var/log/nginx/cloud-errors.log;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; location ~ / {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; client_max_body_size 50M;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header Connection "";&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header Host $http_host;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Real-IP $remote_addr;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Forwarded-Proto $scheme;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Frame-Options SAMEORIGIN;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_buffers 256 16k;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_buffer_size 16k;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_read_timeout 600s;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache uag_cache;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_revalidate on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_min_uses 2;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_use_stale timeout;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_lock on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_http_version 1.1;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_pass &lt;A href="https://uags" target="_blank"&gt;https://uags&lt;/A&gt;;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; }&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; include /etc/nginx/conf.d/ssl.conf;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;include /etc/nginx/conf.d/hsts.conf;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;}' &amp;gt; /etc/nginx/sites-available/lb&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ln -s /etc/nginx/sites-available/lb -t /etc/nginx/sites-enabled/&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;systemctl restart nginx&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 08 Nov 2023 12:49:08 GMT</pubDate>
    <dc:creator>ertgrhyuetd</dc:creator>
    <dc:date>2023-11-08T12:49:08Z</dc:date>
    <item>
      <title>NGINX Loadbalancer to Horizon Connection Server does not work</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994602#M100147</link>
      <description>&lt;DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Hello Everyone&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;I am trying to set up a loadbalancer to connect to my connection servers. I followed this guide for it: &lt;/SPAN&gt;&lt;SPAN&gt;&lt;A class="" href="https://blah.cloud/infrastructure/using-nginx-load-balancer-vmware-horizon-view-security-servers/#architecture" target="_blank" rel="noopener"&gt;https://blah.cloud/infrastructure/using-nginx-load-balancer-vmware-horizon-view-security-servers/#architecture&lt;/A&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Here are my configurations:&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Default site file:
#redirect all http to https
server {
listen 80 default;
server_name view.horz.local:
rewrite ^ https://view.horz.local permanent;
}
 
server{
listen 443 ssl;
server_name view.horz.local;
ssl on;
ssl_certificate /ssl/view.horz.local.crt;
ssl_certificate_key /ssl/view.horz.local.key;
 
location / {
proxy_pass https://hrz-view-cluster;
}

And my conf-file:

# enable reverse proxy
proxy_redirect off;
proxy_set_header Host $http_host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwared-For $proxy_add_x_forwarded_for;
client_max_body_size 10m;
client_body_buffer_size 128k;
client_header_buffer_size 64k;
proxy_connect_timeout 90;
proxy_send_timeout 90;
proxy_read_timeout 90;
proxy_buffer_size 16k;
proxy_buffers 32 16k;
proxy_busy_buffers_size 64k;
 
upstream hrz-view-cluster {
server 192.168.1.21:443 fail_timeout=1s max_fails=1;
server 192.168.1.31:443 backup;
}&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;The service starts without any issues, but I cannot reach anything over the IP-Address or "view.horz.local" also not with the horizon view client. &lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;All ends can ping each other, and all firewalls are turned off.&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Do you may see what Im doing wrong?&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Thank you for your help. &lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;SPAN&gt;Gabe&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 08 Nov 2023 01:08:16 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994602#M100147</guid>
      <dc:creator>gabeoverse</dc:creator>
      <dc:date>2023-11-08T01:08:16Z</dc:date>
    </item>
    <item>
      <title>Re: NGINX Loadbalancer to Horizon Connection Server does not work</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994636#M100148</link>
      <description>&lt;P&gt;&lt;a href="https://communities.vmware.com/t5/user/viewprofilepage/user-id/5651674"&gt;@gabeoverse&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The site you followed refers to load-balancing security servers for external access to Horizon. I don't know what version of Horizon you are running but I do hope you don't have any security servers running anymore because they've been EOL for several years.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've made a blog to use HAProxy as Load Balancer in front of Horizon connection servers, you might want to check that out and maybe use it as base for your NGINX config. You can find the blog post here:&amp;nbsp;&lt;A href="https://itpro.peene.be/vmware-horizon-appvolumes-lb-with-haproxy-and-keepalived-on-photonos/" target="_blank"&gt;https://itpro.peene.be/vmware-horizon-appvolumes-lb-with-haproxy-and-keepalived-on-photonos/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Nov 2023 07:11:58 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994636#M100148</guid>
      <dc:creator>Mickeybyte</dc:creator>
      <dc:date>2023-11-08T07:11:58Z</dc:date>
    </item>
    <item>
      <title>Re: NGINX Loadbalancer to Horizon Connection Server does not work</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994673#M100149</link>
      <description>&lt;DIV&gt;apt -y install nginx-full&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;systemctl enable nginx&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;rm -f /etc/nginx/sites-enabled/default&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'user www-data;&lt;/DIV&gt;&lt;DIV&gt;worker_processes auto;&lt;/DIV&gt;&lt;DIV&gt;pid /run/nginx.pid;&lt;/DIV&gt;&lt;DIV&gt;include /etc/nginx/modules-enabled/*.conf;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;events {&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;worker_connections 1000;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;http {&lt;/DIV&gt;&lt;DIV&gt;sendfile on;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;tcp_nopush on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;tcp_nodelay on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;keepalive_timeout 30;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;types_hash_max_size 2048;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;include /etc/nginx/mime.types;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;default_type application/octet-stream;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;access_log /var/log/nginx/access.log;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;error_log /var/log/nginx/error.log;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_disable "msie6";&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_vary on;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_proxied any;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_comp_level 6;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_buffers 16 8k;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_http_version 1.1;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;gzip_types text/plain text/css application/json application/javascript text/xml application/xml application/xml+rss text/javascript;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;}' &amp;gt; /etc/nginx/nginx.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'ssl on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_certificate /etc/nginx/ssl/nginx.crt;&lt;/DIV&gt;&lt;DIV&gt;ssl_certificate_key /etc/nginx/ssl/nginx.key;&lt;/DIV&gt;&lt;DIV&gt;ssl_dhparam /etc/nginx/ssl/dhparams.pem;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_timeout 1d;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_cache shared:SSL:50m;&lt;/DIV&gt;&lt;DIV&gt;ssl_session_tickets off;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_protocols TLSv1.2;&lt;/DIV&gt;&lt;DIV&gt;ssl_ciphers ECDHE-RSA-AES256-GCM-SHA512:DHE-RSA-AES256-GCM-SHA512:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384;&lt;/DIV&gt;&lt;DIV&gt;ssl_ecdh_curve secp384r1;&lt;/DIV&gt;&lt;DIV&gt;ssl_prefer_server_ciphers on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling on;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling_verify on;&lt;/DIV&gt;&lt;DIV&gt;ssl_stapling_file /etc/nginx/ssl/nginx-staple.crt;&lt;/DIV&gt;&lt;DIV&gt;resolver 10.10.10.8 valid=300s;&lt;/DIV&gt;&lt;DIV&gt;resolver_timeout 5s;' &amp;gt; /etc/nginx/conf.d/ssl.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;add_header Accept "*";&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Allow-Origin "*";&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Allow-Methods "GET, POST, PUT" always;&lt;/DIV&gt;&lt;DIV&gt;add_header Access-Control-Expose-Headers "Authorization" always;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;add_header X-Content-Type-Options nosniff;&lt;/DIV&gt;&lt;DIV&gt;add_header X-Frame-Options SAMEORIGIN;&lt;/DIV&gt;&lt;DIV&gt;add_header X-XSS-Protection "1; mode=block";&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;proxy_cookie_path / "/; HTTPOnly; Secure";' &amp;gt; /etc/nginx/conf.d/hsts.conf&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;echo \&lt;/DIV&gt;&lt;DIV&gt;'upstream uags {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; ip_hash;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server 10.10.10.101:443;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server 10.10.10.102:443;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;server {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; listen 80;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server_name horizon.local;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; return 301 https://$server_name$request_uri;&lt;/DIV&gt;&lt;DIV&gt;}&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;proxy_cache_path /var/cache/nginx levels=1:2 keys_zone=uag_cache:10m max_size=3g inactive=120m use_temp_path=off;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;server {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; listen 443 ssl;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; server_name horizon.local;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; access_log /var/log/nginx/cloud-access.log;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; error_log /var/log/nginx/cloud-errors.log;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; location ~ / {&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; client_max_body_size 50M;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header Connection "";&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header Host $http_host;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Real-IP $remote_addr;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Forwarded-Proto $scheme;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_set_header X-Frame-Options SAMEORIGIN;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_buffers 256 16k;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_buffer_size 16k;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_read_timeout 600s;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache uag_cache;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_revalidate on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_min_uses 2;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_use_stale timeout;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_cache_lock on;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_http_version 1.1;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proxy_pass &lt;A href="https://uags" target="_blank"&gt;https://uags&lt;/A&gt;;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; }&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp; &amp;nbsp; include /etc/nginx/conf.d/ssl.conf;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;include /etc/nginx/conf.d/hsts.conf;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;}' &amp;gt; /etc/nginx/sites-available/lb&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;ln -s /etc/nginx/sites-available/lb -t /etc/nginx/sites-enabled/&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;systemctl restart nginx&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Nov 2023 12:49:08 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994673#M100149</guid>
      <dc:creator>ertgrhyuetd</dc:creator>
      <dc:date>2023-11-08T12:49:08Z</dc:date>
    </item>
    <item>
      <title>Re: NGINX Loadbalancer to Horizon Connection Server does not work</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994753#M100151</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Thank you for your help...i am trying to access the address ,but I get a timeout...do you have an idea what the issue could be?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Gabe&lt;/P&gt;</description>
      <pubDate>Wed, 08 Nov 2023 17:50:48 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994753#M100151</guid>
      <dc:creator>gabeoverse</dc:creator>
      <dc:date>2023-11-08T17:50:48Z</dc:date>
    </item>
    <item>
      <title>Re: NGINX Loadbalancer to Horizon Connection Server does not work</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994801#M100153</link>
      <description>&lt;DIV&gt;&lt;DIV&gt;Okay, I was to figure it out, I didn't include the default-site in the conf-file....&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 08 Nov 2023 21:19:09 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/NGINX-Loadbalancer-to-Horizon-Connection-Server-does-not-work/m-p/2994801#M100153</guid>
      <dc:creator>gabeoverse</dc:creator>
      <dc:date>2023-11-08T21:19:09Z</dc:date>
    </item>
  </channel>
</rss>

