Forum Discussion

OM's avatar
OM
Icon for Altocumulus rankAltocumulus
Feb 25, 2014

RSA + AD authentication using vmware view horizon.

hi, just configured the APM for RSA and AD authentication (Secureid_Native) and everything works good. In the APM, I configured the RSA first then followed by the AD process. My problem is this sequence, when the user is authenticated through the RSA server, he can use any other AD username and password to get access to the assigned resources, in other words, there is no binding between RSA accounts and AD accounts in the APM module. is there any way to do this kind of binding ?

 

thanks.

 

O

 

5 Replies

  • Hi,

     

    I suppose user enters his username and rsa on first login page. You can force username on the second login page so that user enters only his password.

     

    You keep the same session variable for username. Use read only option on login page options.

     

    Hope this help Matt

     

  • Hi Omar,

     

    Do you have two separate login pages? Are the RSA userid and the AD userid the same?

     

    Seth

     

  • OM's avatar
    OM
    Icon for Altocumulus rankAltocumulus

    thanks for quick reply. well, I have 2 separate vmware view logon pages, but there is no way to force the userid as read-only in the second one (AD). Yes the RSA and AD userid are the same.

     

    o

     

  • OM's avatar
    OM
    Icon for Altocumulus rankAltocumulus

    Matt, I tried the browser logon page and yes it works as you metioned. However, when using the vmware view client (no browser) directly, the read-only option is not available in the apm. thanks.

     

    O.

     

  • Curious - If your users RSA ONDemand PIN is reset due to lost PIN, how does your user reset the temporary PIN given? I've not been able to get the APM to recognize that process.