Jump to content

John Twilley

Members
  • Posts

    390
  • Joined

  • Last visited

  • Days Won

    47

Posts posted by John Twilley

  1. We noticed that the True SSO certs used via Workspace One Access is causing massive Database bloat on our Internal CA servers.  The DB grew to 15 GB per server, 80% of it from expired True SSO certs.  We manually purged 80,000 True SSO certs from January to July.

    Is this normal?   My CA Admin is obviously not thrilled, as he now has to take the Server offline and clean/shrink the database monthly, where it was never an issue before True SSO was implemented.

    "CertUtil -deleterow 8/9/2024 Cert"   --> cleaned up 20,000 certs in a 3 day period.  That's alot of certs.    We have 12,000 Physicians logging in, sometimes multiple times per day in case you were wondering about the load.

  2. Not at this time. 

    Microsoft explained in the Teams 2.1 Tap Program that for Omnissa Horizon, it needs to popup in the foreground as it establishes the back optimization channels, and then will move to the background once completed. 

    Not a great solution.  I hope it improves in future builds.

    • Thanks 1
  3. I have tried this setup, set REG_DWORD value DirectFlex to 2, but now AutoStart no longer functions.  It worked just fine when DEM ran on login.

    I'm wondering if I need to add something other than ms-teams.exe as the DirectFlex trigger. Or if that's just something that will not with with New Teams and DirectFlex.

    I use FSLogix in a couple other pools and it works fine.  But I leverage DEM for our main Clinical pool.  I don't have enough storage for 30,000 FSLogix VMDK files!

  4. I'd noticed that DirectFlex no longer worked for "New Teams" and it has been causing login delays for my customers due to the ever-increasing size of the ZIP.  I just read the release notes for DEM 2406 and saw mention of a fix!  I figured I'd start a thread on this issue to ensure others are aware of it.  I'll be testing it today. 

    The Fix from the 2406 Release Notes:

    • DEM-188: New Microsoft Teams does not trigger DirectFlex processing
      Launches of the new Microsoft Teams are performed by the AppInfo service. In older versions of Dynamic Environment Manager, AppInfo starting a DirectFlex-enabled executable triggered DirectFlex processing. With the default DEM configuration, this behavior does not exist.
      Workaround: To enable the old behavior, set REG_DWORD value DirectFlex to 2 in the HKLM\SOFTWARE\Immidio\Flex Profiles key (for Group Policy-based setups), or in the HKLM\SOFTWARE\VMware, Inc.\VMware UEM\Agent\Configuration key (for NoAD).

    • 2870360: COM servers do not trigger DirectFlex processing
      In older versions of Dynamic Environment Manager, instantiating an out-of-process COM object hosted by a DirectFlex-enabled executable triggered DirectFlex processing. With the default DEM configuration, this behavior does not exist.
      Workaround: To enable the old behavior, set REG_DWORD value DirectFlex to 1 in the HKLM\SOFTWARE\Immidio\Flex Profiles key (for Group Policy-based setups), or in the HKLM\SOFTWARE\VMware, Inc.\VMware UEM\Agent\Configuration key (for NoAD).

      Note: To enable the workarounds of DEM-188 and 2870360 at the same time, DirectFlex must be set to 3.

  5. We have about 20 different printer drivers and I installed all of them in the master image.

    I use the "PrintBrmUi.exe" for Printer Migration, inside Windows\System32 folder in Windows 10/11.
    You can back up the printers, including queues, ports, and printer drivers, to a printerExport file, which can then be used to import that printer to another computer running Windows 10/11 master.

    This will greatly speed up the printer mapping, as well as reduce all that unnecessary network traffic and Disk I/O!

  6. It looks like Broadcom has fixed the URL redirect (again) for https://www.vmware.com/go/viewclients, it now goes to https://customerconnect.omnissa.com/downloads/info/slug/desktop_end_user_computing/vmware_horizon_clients/horizon_8

    Rob - I was referring to the builtin shortcut in Workspace One Access in the Account section. We have instructions for our customers to leverage that for the local install of the Horizon Client. Or are you saying that the SAAS offering queries my connection servers and alters that URL?

    I'm still not sure why Omnissa is relying on Broadcom to redirect the URL. It is STILL the vmware.com address.  You'd think swapping out a URL would be relatively easy.  This is the second time this has broken since the divestiture, and it probably won't be the last.

     

  7. It looks like the Horizon Client Install URL is broken.  It points to https://www.vmware.com/go/viewclients

    It would be Super if it was updated to point to an Omnissa.com URL.

    image.png.21ca8ed4f77cc02b20535ae3dfcacd31.png

    image.thumb.png.c95ae31a7d80d31c620b01e9081a5d08.png

     

    This URL works: Download VMware Horizon Clients - VMware Customer Connect (omnissa.com)

    Our customers use the embedded URL from within Workspace ONE Access for their setup. It was working a couple days ago, but I guess Broadcom is performing cleanup of all EUC from their websites.

     

     

    • Confused 1
  8. Robin - Try deleting the IfIso registry key.  (see thread above).  It is the root of the issue.

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedInterfaces\IfIso

    • Like 1
  9. What I'd like to know is what the future holds for Instant Clones.  Now that Omnissa is split off from Broadcom, and the future of "free" vSphere licensing is still in question...what's next.  Will Omnissa try to recreate Instant Clones on other platforms?  We are heavily invested in Instant Clones, and love the technology!

    • Like 1
  10. Your 404 errors could be due to this odd bug from one of the Windows updates.  Deleted a few Registry Keys for the Windows Firewall will resolve that issue.  The issue is that the local firewall is blocking the Auth App from reaching out to Microsoft , thus the 404 error.  See the thread below.

    Delete: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedInterfaces\IfIso

    • Like 2
  11. Since Microsoft switched over to using Webview2 (like New Teams, etc) the DEM size is now HUGE.

    I'd like to narrow it down a bit, but I'm not real sure what all is needed for PowerBI to function properly. 

    The "\LocalAppData\Microsoft\Power BI Desktop\WebView2\EBWebView\Default\WebStorage" folder is like 300MB alone.

     

    Any helpful ideas?

  12. I'm looking for clarification on KB 1000590 --> The View virtual machine is not accessible and the View Administration console shows the virtual machine status as Already Used (1000590) (omnissa.com)

    We are having random issues where a user cannot connect to a non-persistent desktop.  When investigated, the desktop state is "already used".  The pool is already set with the pae-DirtyVMPolicy=2: Automatically refresh virtual machines.  The KB mentions adding some timeout values that I'd never seen published before.

    cs-suspendpolltimeout=90000
    and
    cs-suspendpolltime=1000

    Has anyone added these values before?  This does not happen very often, but when it does, it involves the Clinical worker calling the Support Desk to delete the VM and causes disruption. I'd like the VM to just automatically delete as per the DirtyVMPolicy.  

  13. For those or you running nVidia GRID cards in you Horizon environment, I was wondering if you disabled the VGA or IDD display drivers.

    I've always disabled my VGA display adapter, and then used the Horizon Direct agent to manage the master VM for updates. 

    Do any of you leave it enabled?  Just curious how others manage their nVidia master images.

    image.png.859f1bc32801ad3f3bbad1dc2b503d6f.png

×
×
  • Create New...