Skip to main content

August 24, 2026

Support for Multiple IDP Metadata in Horizon Connection Server

Note: This feature is available for versions 2412 and later.

Connection Servers can now process multiple signing credentials from Identity Providers (IDPs), creating a fallback option if administrators fail to renew the signing certificate in the IDP metadata prior to expiration.

Procedure

  1. Add a user entitlement to your desktop if you have not already done so.
  2. Set up both a primary and a secondary certificate in the IDP.
  3. Add this certificate metadata to both Omnissa UAG and the Connection Server.

When the primary certificate expires and the secondary certificate is promoted to primary in the IDP, you should be able to see the entitled desktop or application when the user launches UAG from the client. There is no need to update the metadata in Connection Server.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…