Skip to main content

August 21, 2026

Configure Workspace ONE Access Policies in Horizon Console

Workspace ONE, or Omnissa Workspace ONE Access administrators can configure access policies to restrict access to entitled desktops and applications in Horizon 8. To enforce policies created in Omnissa Workspace ONE Access you put Horizon client into Workspace ONE mode so that Horizon client can push the user into Workspace ONE client to launch entitlements. When you log in to Horizon Client, the access policy directs you to log in through Workspace ONE to access your published desktops and applications.

Prerequisites

  • Configure the access policies for applications in Workspace ONE. For more information about setting access policies, see the Omnissa Identity Manager Administration Guide.
  • Entitle users to published desktops and applications in Horizon Console.

Procedure

  1. In Horizon Console, navigate to Settings > Servers.

  2. On the Connection Servers tab, select a server instance that is associated with a SAML authenticator and click Edit.

  3. On the Authentication tab, set the Delegation of authentication to Horizon (SAML 2.0 Authenticator) option to Required.

    The Required option enables SAML authentication. The end user can only connect to the Horizon server with a SAML token provided by vIDM or a third-party identity provider. You cannot start desktops or applications from Horizon Client manually.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…