[View 5.3] Connection to security through Blast Server redirected to the Local IP address private view Desktop in Google Chrome

Hello

I am currently facing a questions in my test harness which happens when I connect to public IP address on server security by the breath. No problem if I connect using view Client.

Using the breath, I can log on, select a desktop view, then the url of the Web page showing my ip Server security for about 10 seconds and then I was redirected to the private IP address of NAT from the desktop view target and of course I couldn't connect.

vd.png

Note: The local private ip address redirection does not happens if I configured to connect to show the connection to the server through breath.

I have:

  • Self-signed SSL installed without warnings
  • activated the tunnel to connect to the server
  • Tunneling on server security enabled
  • disabled all firewall for testing purposes
  • locally defined in the host file to resolve my domain name full of security server static IP used in my office. (vsecurity.icliq.com in this case)
  • required ports are configured with port forwarding in my router from office

security.png

I hope someone could throw some light on this issue. Thank you


Eddy

Yes, the option of Blast Secure Gateway is used to ensure that Blast connections are routed from your browser by the server security (or connect to the server). That's what you want to access remotely. If you do not select this option, Blast connections will be direct to your virtual desktop. This is for internal connections.

It goes the same for PCoIP and PCoIP Secure Gateway.

Mark

Tags: VMware

Similar Questions

  • Sharing of readers do not reconnect - error "an error occurred during connection [drive letter]: [share name] Microsoft Windows network: the local device name is already in use." This connection has not been restored. »

    Original title: Shared readers do not reconnect

    I have two PCs connected wireless. A laptop (Vista Business) was the drives mapped to actions on the other PC (XP). Whenever the Vista PC is started or out of hibernation, or after only a short period of time these discs are not available. Click on the drive in Explorer to display the message "an error occurred during connection [drive letter]: [share name] Microsoft Windows network: the local device name is already in use." This connection has not been restored. »

    If I click on 'Network' within Solution Explorer, the XP PC is not visible. The only way that I can "reconnect" these disks is to go into my anti-virus (Trend) and open the network map. This shows the XP PC and then the shares are available through Explorer - XP PC is still not visible by clicking network however.

    It started only happens in the last two months - cannot locate exactly when, but quite recently. I use connections to store small files and backup critical files a few before nailing the laptop away and it is quite annoying to have to go through this routine every time.

    Any ideas?

    Just in case it helps others - I found that if I make sure that my XP PC has a fixed IP address, and then set up the shares so that they are defined using the IP address and not share names, then I do have more problems - seems like it's something to do with Windows solve the share names rather than something to do with the personal firewall after all.

  • How can I determine the MACaddress of the Gen 4 Apple TV so that I can connect to my network. Must register on the router MAC address to connect to the internet.

    Security on my network requires that the MAC address of the device must be registered on router or I can't connect to the internet. Does not use a password based security configuration. How to find MAC address before the introduction of Apple TV?

    Contact your ISP

  • Cisco ASA 5515 - Anyconnect users can connect to ASA, but cannot ping inside the local IP address

    Hello!

    I have a 5515 ASA with the configuration below. I have configure the ASA as remote access with anyconnect VPN server, now my problem is that I can connect but I can not ping.

    ASA Version 9.1 (1)

    !

    ASA host name

    domain xxx.xx

    names of

    local pool VPN_CLIENT_POOL 192.168.12.1 - 192.168.12.254 255.255.255.0 IP mask

    !

    interface GigabitEthernet0/0

    nameif inside

    security-level 100

    192.168.11.1 IP address 255.255.255.0

    !

    interface GigabitEthernet0/1

    Description Interface_to_VPN

    nameif outside

    security-level 0

    IP 111.222.333.444 255.255.255.240

    !

    interface GigabitEthernet0/2

    Shutdown

    No nameif

    no level of security

    no ip address

    !

    interface GigabitEthernet0/3

    Shutdown

    No nameif

    no level of security

    no ip address

    !

    interface GigabitEthernet0/4

    Shutdown

    No nameif

    no level of security

    no ip address

    !

    interface GigabitEthernet0/5

    Shutdown

    No nameif

    no level of security

    no ip address

    !

    interface Management0/0

    management only

    nameif management

    security-level 100

    192.168.5.1 IP address 255.255.255.0

    !

    passive FTP mode

    DNS server-group DefaultDNS

    www.ww domain name

    permit same-security-traffic intra-interface

    the object of the LAN network

    subnet 192.168.11.0 255.255.255.0

    LAN description

    network of the SSLVPN_POOL object

    255.255.255.0 subnet 192.168.12.0

    VPN_CLIENT_ACL list standard access allowed 192.168.11.0 255.255.255.0

    pager lines 24

    Enable logging

    asdm of logging of information

    Within 1500 MTU

    Outside 1500 MTU

    management of MTU 1500

    no failover

    ICMP unreachable rate-limit 1 burst-size 1

    ASDM image disk0: / asdm - 711.bin

    don't allow no asdm history

    ARP timeout 14400

    no permit-nonconnected arp

    NAT (exterior, Interior) static source SSLVPN_POOL SSLVPN_POOL static destination LAN LAN

    Route outside 0.0.0.0 0.0.0.0 111.222.333.443 1

    Timeout xlate 03:00

    Pat-xlate timeout 0:00:30

    Timeout conn 01:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02

    Sunrpc timeout 0:10:00 h323 0:05:00 h225 mgcp from 01:00 0:05:00 mgcp-pat 0:05:00

    Sip timeout 0:30:00 sip_media 0:02:00 prompt Protocol sip-0: 03:00 sip - disconnect 0:02:00

    Timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute

    timeout tcp-proxy-reassembly 0:01:00

    Floating conn timeout 0:00:00

    dynamic-access-policy-registration DfltAccessPolicy

    WebVPN

    list of URLS no

    identity of the user by default-domain LOCAL

    the ssh LOCAL console AAA authentication

    AAA authentication http LOCAL console

    LOCAL AAA authorization exec

    Enable http server

    http 192.168.5.0 255.255.255.0 management

    No snmp server location

    No snmp Server contact

    Server enable SNMP traps snmp authentication linkup, linkdown warmstart of cold start

    Crypto ipsec pmtu aging infinite - the security association

    Crypto ca trustpoint ASDM_TrustPoint5

    Terminal registration

    E-mail [email protected] / * /

    name of the object CN = ASA

    address-IP 111.222.333.444

    Configure CRL

    Crypto ca trustpoint ASDM_TrustPoint6

    Terminal registration

    domain name full vpn.domain.com

    E-mail [email protected] / * /

    name of the object CN = vpn.domain.com

    address-IP 111.222.333.444

    pair of keys sslvpn

    Configure CRL

    trustpool crypto ca policy

    string encryption ca ASDM_TrustPoint6 certificates

    Telnet timeout 5

    SSH 192.168.11.0 255.255.255.0 inside

    SSH timeout 30

    Console timeout 0

    No ipv6-vpn-addr-assign aaa

    no local ipv6-vpn-addr-assign

    192.168.5.2 management - dhcpd addresses 192.168.5.254

    !

    a basic threat threat detection

    Statistics-list of access threat detection

    no statistical threat detection tcp-interception

    SSL-trust outside ASDM_TrustPoint6 point

    WebVPN

    allow outside

    CSD image disk0:/csd_3.5.2008-k9.pkg

    AnyConnect image disk0:/anyconnect-win-3.1.04066-k9.pkg 1

    AnyConnect enable

    tunnel-group-list activate

    attributes of Group Policy DfltGrpPolicy

    Ikev1 VPN-tunnel-Protocol l2tp ipsec without ssl-client

    internal VPN_CLIENT_POLICY group policy

    VPN_CLIENT_POLICY group policy attributes

    WINS server no

    value of server DNS 192.168.11.198

    VPN - 5 concurrent connections

    VPN-session-timeout 480

    client ssl-VPN-tunnel-Protocol

    Split-tunnel-policy tunnelspecified

    value of Split-tunnel-network-list VPN_CLIENT_ACL

    myComp.local value by default-field

    the address value VPN_CLIENT_POOL pools

    WebVPN

    activate AnyConnect ssl dtls

    AnyConnect Dungeon-Installer installed

    AnyConnect ssl keepalive 20

    time to generate a new key 30 AnyConnect ssl

    AnyConnect ssl generate a new method ssl key

    AnyConnect client of dpd-interval 30

    dpd-interval gateway AnyConnect 30

    AnyConnect dtls lzs compression

    AnyConnect modules value vpngina

    value of customization DfltCustomization

    internal IT_POLICY group policy

    IT_POLICY group policy attributes

    WINS server no

    value of server DNS 192.168.11.198

    VPN - connections 3

    VPN-session-timeout 120

    Protocol-tunnel-VPN-client ssl clientless ssl

    Split-tunnel-policy tunnelspecified

    value of Split-tunnel-network-list VPN_CLIENT_ACL

    field default value societe.com

    the address value VPN_CLIENT_POOL pools

    WebVPN

    activate AnyConnect ssl dtls

    AnyConnect Dungeon-Installer installed

    AnyConnect ssl keepalive 20

    AnyConnect dtls lzs compression

    value of customization DfltCustomization

    username vpnuser password PA$ encrypted $WORD

    vpnuser username attributes

    VPN-group-policy VPN_CLIENT_POLICY

    type of remote access service

    Username vpnuser2 password PA$ encrypted $W

    username vpnuser2 attributes

    type of remote access service

    username admin password ADMINPA$ $ encrypted privilege 15

    VPN Tunnel-group type remote access

    General-attributes of VPN Tunnel-group

    address VPN_CLIENT_POOL pool

    Group Policy - by default-VPN_CLIENT_POLICY

    VPN Tunnel-group webvpn-attributes

    the aaa authentication certificate

    enable VPN_to_R group-alias

    type tunnel-group IT_PROFILE remote access

    attributes global-tunnel-group IT_PROFILE

    address VPN_CLIENT_POOL pool

    Group Policy - by default-IT_POLICY

    tunnel-group IT_PROFILE webvpn-attributes

    the aaa authentication certificate

    enable IT Group-alias

    !

    class-map inspection_default

    match default-inspection-traffic

    !

    !

    type of policy-card inspect dns preset_dns_map

    parameters

    maximum message length automatic of customer

    message-length maximum 512

    Policy-map global_policy

    class inspection_default

    inspect the preset_dns_map dns

    inspect the ftp

    inspect h323 h225

    inspect the h323 ras

    inspect the rsh

    inspect the rtsp

    inspect esmtp

    inspect sqlnet

    inspect the skinny

    inspect sunrpc

    inspect xdmcp

    inspect the sip

    inspect the netbios

    inspect the tftp

    Review the ip options

    inspect the icmp

    !

    global service-policy global_policy

    context of prompt hostname

    no remote anonymous reporting call

    : end

    Help me please! Thank you!

    Hello

    Please set ACLs to allow ICMP between these two subnets (192.168.11.0 and 192.168.12.0) and check. It should ping. Let me know if it does not work.

    Thank you

    swap

  • I can connect to my Bank, but can't access the page of statement - but I can't in Chrome

    I can connect to my Bank [Barclays] and go to the page where it gives me my balance. Then when I click on that to make my statement that it takes me to another page which is completely [greyed] empty. I tried several times over several days. However when I tried chrome instruction had no problem.
    I have Firefox version 29.0.1 and Windows 8.1. Also Kaspersky 2013 installed

    Try to save your options again.

    I found that after Firefox v29, a LOT of my settings and
    Add - ons have been changed / reset.

  • Windows 7 Security Center service is missing from the (local) services and cannot be started

    Hi Experts,

    I use the version of windows 7 Home premium. My computer suddenly got hit by the virus and I found the message in the center of action as "Activate windows Security Center service", but when I do, the message I m getting "failed to start the windows Security Center service"

    Options, I tried to replace as follows.

    one) went to the services (local) and checked the Security Center to check the startup mode but the Security Center is missing here
    (b) tried to run the malwarebytes software, he finds some virus and I deleted

    Yet, I could not able to get rid. Help, please

    Hello

    Some antivirus/security products may cause this error. McAfee, Norton, Windows Live OneCare.
    ThreatFire are some. What antivirus/antispyware/security products you have on machine now. And
    who have you ever on it, even if you have uninstalled them. (These leave the remains that can cause some)
    strange questions.)

    Start - type in the search-> find abuse at top box - click on - RUN AS ADMIN

    Service set to AUTOMATIC (delayed start) Security Center and BEGAN to
    Chech also the serices dependent as below.

    References to Vista also apply to Windows 7.

    Check the default services and dependencies to ensure that they are running.
    http://wiki.blackviper.com/wiki/Security_Center

    Security Center not related anti-virus or firewall State correctlyhttp://www.winhelponline.com/blog/security-center-not-reporting-anti-virus-or-firewall-status-correctly/

    How to fix Vista Reporting incorrect information Security Center
    http://www.Vistax64.com/tutorials/195736-Security-Center-not-reporting-correct-information.html

    How to disable or enable the Security Center in Vista
    http://www.Vistax64.com/tutorials/67737-Security-Center.html

    This thread might help as it might be a permissions problem.
    http://social.answers.Microsoft.com/forums/en-us/vistawu/thread/3d2049ae-4581-439b-8E15-3f603f5c60f0/

    ====================================

    To look for the Windows 7 KB and responses for Solutions (most are above).

    Searck of Ko &-> 1058 Security Center
    http://support.Microsoft.com/search/default.aspx?mode=a&query=1058+Security+Center&SPID=14019&catalog=LCID%3D1033&AST=28&RES=10

    I hope this helps.

  • Horizon view connection and security server matching

    Hello friends,

    I need some clarification on security and the matching server connection. If I understand well earlier in login server and security versions matching is one-to-one.

    Is this same behavior on the Horizon 6 as well? I can read that we can connect several Security Server single instance to connect to the server. But the reverse is possible yet? What are the combinations is achievable or supported?

    Documentation centre for Horizon 6 version 6.1

    still one by one,

    If you need high availability just add another server of connection and pair it with another security server

  • You can install the server connection and security on the same virtual machine Server?

    I was looking around and found an old post that says that you could do.

    I tried the documentation view 5 but not a lot of luck there.

    If the deployment is small say 20 users view total.

    Could install you the connection and security on the same VM Server?   W2K8R2 64-bit?

    I certainly understand some of the security risks.

    TIA

    Marc Alumbaugh says:

    Any other ideas?

    No other ideas, but we have should stick to previous ideas and continue to work through them. You make progress in this analysis - continue! When it is correctly configured, you have configured the firewall/proxy etc don't not to block PCoIP and that you use at least seen 4.6 on the Client and the server, it does not work.

    It always seems that there's something blocking PCoIP in your environment - where the black screen.

    So when 'PCoIP external URL' on the login server is defined on InternalIP:4172, your View on the internal network Client connects fine. If you run Wiresahrk on your connection to the server to capture the connections, you will see a connection HTTPS turns on TCP 443. Then when you select a pool of offices you will see a PCoIP connection come in. It comes to 4172 TCP from the customer to the login server, then UDP 4172 also from the Client to the server connection as well as UDP 4172 in reverse. For this reverse part, the source UDP port will be 4172 and corresponds to the destination UDP port source on the incoming UDP packets. Check that this is the case. This will prove that the login server is gateway your PCoIP correctly.

    So far so good.

    Then, you switch to your remote Client to view from on the Internet. To do this, you assign the URL of the "external" ExternalIP:4172 PCoIP. Note that you don't need to restart the login server for this to take effect. It takes effect immediately. This IP address will be the public IP address which will probably through a NAT/firewall to access your connection to the server. You can start by checking that the IP address is correct using to connect to the server address when you satrt the customer to view. When you use the same IP address to the Client and through the authentication step, it will prove that it is set up correctly in terms of Routing/NAT etc. Then follow with Wireshark on the login server and observe what happens when you select a pool of virtual offices and get the black screen. You should see the same activity PCoIP on your login server model as in the case of internal test (i.e. starting with the incoming TCP connection on port 4172). View Client will use the ExternalIP address that you specified in the "URL external PCoIP ' to establish the PCoIP connection to connect to the server. So if you don't see this com 4172 TCP on the login server, or you do not see the packets UDP 4172 then something is blocking. This is usually caused by a firewall or a proxy blocking PCoIP.

    If this is the case and you do not see these packets to connect to the server, then run Wireshark on the Windows Client to view and see if you can see 4172 TCP and/or UDP sent to this ExternalIP 4172. If Yes, then you know that something (such as a firewall or proxy) between the Customer View and the view connection server it blocks.

    Let us know what it was.

    Hope it will be useful.

    Select this option.

  • I want to use my network connection to neighbors through his router on my laptop

    I want to use my network connection to neighbors through his router on my laptop. He gave me the info to do it, I do not know where to enter it or where to go. HELP PLEASE!

    Hello

    What operating system do you work?

    You can refer to:

    http://Windows.Microsoft.com/en-us/Windows/view-connect-available-wireless-networks#1TC=Windows-7

  • Network connection, re-directed through microsft

    In network connections, it is said, I am not connected to the internet, but I am. In the taskbar notifications, I right click on the connection icon, and then click on diagnose and repair. It indicates that the connection is routed through another Web site. When I click on connect to this site, it brings me to the Windows Update page. I run spyware scans, restarted the computer and the connection several times and even a system restore for a time before this problem and still the same result. I don't understand, I have an appropriate windows license purchased with Dell computer. What can be the problem?

    Initial contact, your ISP and see if they have an explanation or can solve the problem - it may be a problem they can solve easily.

    If it does not, then it is likely, that you have been infected by malicious software.

    This is compliments of PA bear MS MVP:

    Microsoft PCSafety provides users at home (only) with free assistance in dealing with infections by malicious software such as viruses, adware and spyware (including unwanted software).
    https://support.Microsoft.com/OAS/default.aspx?&PRID=7552&St=1

    Also available via the homepage of Support of consumer safety: https://consumersecuritysupport.Microsoft.com/

    Otherwise...

    1. see if you can download/run the MSRT tool manually:http://www.microsoft.com/security/malwareremove/default.mspx

    NB: Run the FULL scan, not analysis FAST!  You may need to download the MSRT on an uninfected machine and then transfer the MRT. EXE to the infected machine and rename it to SCAN. EXE before running it.

    2A. WinXP-online Windows Live Safety Center scanner 'Protection' (only!) in Mode safe mode with networking, if necessary:http://onecare.live.com/site/en-us/center/howsafe.htm

    2B. Vista or Win7-online this scanner instead: http://onecare.live.com/site/en-us/center/whatsnew.htm

    3. now post the logs required in a forum appropriate for support by an expert in the field. DON'T SKIP THIS STEP!

    I can recommend the assistance of experts available in these forums: http://spywarehammer.com/simplemachinesforum/index.php?Board=10.0 http://www.spywarewarrior.com/viewforum.php?f=5 http://www.dslreports.com/Forum/Cleanup http://www.Bluetack.co.uk/forums/index.php and http://Aumha.net/viewforum.php?f=30

    If these procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a local, good reputation and stand-alone computer (that is, not BigBoxStoreUSA or Geek Squad) repair facility.

    I hope this helps.

    Good luck!

    Lorien - MCSA/MCSE/network + / has + - if this post solves your problem, please click the 'Mark as answer' or 'Useful' button at the top of this message. Marking a post as answer, or relatively useful, you help others find the answer more quickly.

  • WAN connection between security and connection of servers?

    Hi all

    one of our clients wants to place its servers view Horizon 5.2 security in remote data centers and servers to connect in their headquarters. They have two DMZ environments to hosting provider data centers and they want to fill it with 2 security servers each for redundancy. I have currently no accurate information on the speed and latency (and packet loss). I know that connection servers sharing the same ADLDS need connection to the LAN due to replication requirements strict, but what security servers?

    Can I put my security servers in a region far away and have them matched (and PCoIP routed by gateway) with servers to connect to Headquarters via a WAN connection?

    Kind regards

    Jacques.

    That's fine, as long as they have properly configured firewall rules, but I have to ask: what are they hoping to win this configuration - is-to-end latency lower and upper for remote users of the local data center and then goes on the link of the site, instead of going on the internet directly to the headquarters of the bandwidth?

  • When I connect to secure Web sites (that is to say the National Bank aust) it says not a trusted site and certificate not valid?

    When I connect to secure Web sites (that is to say the National Bank aust) a message pops up saying not approved Web site and the security certificate is not valid? I can also book flights on qantas and Virgin site? Help, please. I could do all this 24 hours but now can not do something like this.

    Try to upgrade to a newer version of Firefox 3.6.x or 6.0.x.

    Your current version of Firefox 3.0.19 can exceeded SSL certificate expired.

    Also check the date and time of the clock on your computer: (double) click on the clock icon in the Windows taskbar.

  • Can someone else make my wireless connection network "secure"?

    Since the purchase of my laptop, I used a wireless internet network, the connection has always said he was an 'unsecured wireless network'. Last week he was playing so I went in the list of available networks and noticed she had changed to a "secure wireless network', I had never done that because I didn't know how to do it!

    It is possible that someone else has done? I called my service provider that I couldn't connect to internet at all and they were speaking to me in how to connect the ethernet cable to the computer and the modem. I don't know how to get my wireless connection, sorted, someone else had this problem or knows what to do?

    Thank you.

    First of all I must say that it s irresponsible to use the unsecured WiFi network!
    If the wireless network is not secure, everyone can get connected to the internet via your private internet access.

    Generally, each WLan router configuration mask is secure and you need a password to change the settings of the Wlan router.
    I put t know why you do not guarantee you Wlan because each Wlan router comes with the manual and configuration steps are described in all just way.

    If you n t know how to secure the Wlan router, ask a professional technician or first check the manual of the router.

  • I have a SBS 2011 and cannot connect to internet through VERIZON FIOS.

    I have a SBS 2011 and cannot connect to internet through VERIZON FIOS. The SBS is unable to detect the IP address and gave an error message. I never get to a screen that allows me to type in the "IP address of the router" or "IP address". Verizon told me that their router address is "192.168.1.1". After a new trial, I added my NETGEAR FS105 switch between the FIOS router and my PC 2 and SBS. Result - conflict of addresses of servers.
    Any suggestions or solutions to this problem?

    Thank you
    Chuck

    Hi Chuck

    Your question is addressed in the Microsoft Answers forums.

    Please ask your question in the following forum.

    Small Business Server Forum:

    http://social.technet.Microsoft.com/forums/en-us/smallbusinessserver/threads

    Concerning

  • When I try to connect to my wireless network, that it asks a security key how do I find the key my router is a comtrend CT-5363

    When I try to connect to my wireless network, that it asks a security key how do I find the key my router is a comtrend CT-5363

    Hello

    1. what operating system do you use?

    2 did you change on your computer?

    3. who is your internet service provider?

    If you use windows7, I suggest you to follow the steps from the links and check out.

    Set up a wireless router

    http://Windows.Microsoft.com/en-us/Windows7/set-up-a-wireless-router

    Network connection problems

    http://Windows.Microsoft.com/en-us/Windows-Vista/troubleshoot-network-connection-problems

    Set up a security key for a wireless network

    http://Windows.Microsoft.com/en-us/Windows7/set-up-a-security-key-for-a-wireless-network

Maybe you are looking for

  • Need Product Code for (Satellite Pro A100-722) AC adapter

    I am looking for the product number for the adapter from the model below so that I can buy the correct replacement AC adapter.Satellite Pro A100-722Part number: PSAAPE-00D006EN Help would be great.

  • Plug iMac 27 inches 5 k for Photoshop and Lightroom

    Hi all I am a hobby photographer (has a Nikon D750) and I am interested in buying an iMac 27 inches 5 k for Lightroom and Photoshop. What configuration should I I look for reasonable (works smoothly 95% of the time) performance? Usually I update ever

  • Microsoft Visual C++ 2005 & 2008

    If you have Microsoft Visual C++ 2005 Redistributable is already installed, and then an automatic update install Microsoft Visual C++ 2008 Redistributable - x 86 9.0.30729.17 - you can uninstall the version 2005 without it causing damage/problems/iss

  • can't intall sims 2 on my pc

    Please help I tried as much as I know, I have Vista Home Basic and I can't install sims 2, it installed sims1 sims 2 works fine on another pc, sand I have all the right graffics and 32bits etc. for it BUT the 2 mistakes happen, something like this...

  • No noise in web browsers, probably due to the update of windows

    Background- A week ago, my browser (firefox) has stopped playing all sounds. Spotify, Winamp, etc. were all still works fine, so I assume that it was not pregnant-related, but rather something to do with the browser. I checked the updates of the plug