Skip to main content

September 2, 2026

Supported Certificate Authority Types for Using SSO with a Horizon Edge

Horizon Cloud supports specific certificate authority types for use in providing single sign-on capability to end-user virtual desktops and remote apps. Find these options on the Integrations > Identity and Access page for SSO Configurations.

Introduction

When you want users to have single sign-on (SSO) capability into their virtual desktops and applications provided by a Horizon Edge, configure the required Horizon Cloud items to provide that SSO capability.

A certificate authority provides the short-term certificates for the service's SSO feature to use for authentication to avoid prompting users for their Active Directory credentials.

Supported Types

For its SSO abilities, Horizon Cloud currently supports using the following certificate authority type.

  • Microsoft Enterprise Certificate Authority (Active Directory Certificate Services)

    The phrase Microsoft Enterprise Certificate Authority refers to a Microsoft Certificate Authority (Microsoft CA) running in Enterprise mode. In the Microsoft procedure of configuring a Microsoft Enterprise Certificate Authority, the Active Directory Certificate Services (AD CS) role is installed and configured to run as an Enterprise CA.

    To use the Microsoft Enterprise Certificate Authority type for the certificates, select the Microsoft CA option from the Integrations > Identity & Access > SSO Configurations page in the Horizon Universal Console. This option allows you to configure the Horizon Edge to use True SSO for providing end-user single single-on.

  • Other Certificate Authorities

    This category includes Microsoft Standalone Certificate Authority and certificate authorities from third parties. The phrase Microsoft Standalone Certificate Authority refers to a Microsoft CA running in Standalone mode (a Standalone CA type in the AD CS role setup process).

    To use this type of CA for the certificates, select the Horizon Cloud CA option from the Integrations > Identity & Access > SSO Configurations page in the Horizon Universal Console. This option allows you to configure the Horizon Edge to use the Horizon Cloud CA for providing end-user single sign-on.

To learn more about supported certificate authority types, see the following topics:

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…