Deploying and Configuring Omnissa Unified Access Gateway provides information about designing Omnissa Horizon®, Omnissa Omnissa Access, and Workspace ONE UEM deployment that uses Unified Access Gateway™ for secure external access to your organization's applications. These applications can be Windows applications, software as a service (SaaS) applications, and desktops. This guide also provides instructions for deploying Unified Access Gateway virtual appliances and changing the configuration settings after deployment.
Intended audience
This information is intended for anyone who wants to deploy and use Unified Access Gateway appliances. The information is written for experienced Linux and Windows system administrators who are familiar with virtual machine technology and data center operations.
Using Unified Access Gateway
Unified Access Gateway is a hardened Linux based virtual security appliance designed to protect remote user access to end-user computing resources such as virtual desktops and applications. It is designed to operate with the following Omnissa solutions:
- Desktop and App Virtualization with Omnissa Horizon 7/8 and Omnissa Horizon Cloud
- Omnissa Access
- Omnissa Workspace ONE UEM
- Omnissa Per-App Tunnel
- Content Gateway
- Secure Email Gateway
A virtual appliance is a pre-configured software solution that makes it possible to combine the hardened Linux configuration with the application gateway and the security software so that it can be managed as a singe appliance. Unified Access Gateway is delivered as a single image file that is pre-hardened and tested overall. All configuration settings can be pushed during deployment so that Unified Access Gateway is "production-ready on first boot" and using automated deployment, and take less than 2 minutes. There is no need to separately configure or harden the appliance after it is deployed. This functionality eliminates the need to separately manage the operating system and install application packages. It also means that there are no incompatibility issues that might be encountered by combining different application code versions with different operating system components and Java versions. Overall, all components of a released appliance image are tested by Omnissa prior to release.
There is a full version of Unified Access Gateway and a limited FIPS version. Deployment of Unified Access Gateway is supported on:
-
vSphere (ESXi and vCenter)
Note: vCenter is mandatory for ESXi deployment.
-
Amazon AWS EC2 (Xen and KVM)
-
Microsoft Azure
-
Hyper-V (for Workspace ONE UEM only)
-
Google Compute Engine (GCE in Google Cloud)
-
VMware Cloud Director
The same Unified Access Gateway appliance (standard or FIPS version) is used for all solutions, hypervisors, and Omnissa Cloud services such as Horizon Cloud.
Unified Access Gateway Lifecycle Support
Unified Access Gateway inherits the lifecycle support policy of the product with which it is integrated. For detailed information about the support status for different Unified Access Gateway versions, see the KB article Unified Access Gateway(UAG):Lifecycle support policy for Omnissa Unified Access Gateway (2147313) and Omnissa Lifecycle Matrix.
Virtual Appliance Operating System
Consistent with many other modern Omnissa virtual appliances, Unified Access Gateway uses the AlmaLinux operating system. AlmaLinux, is an open-source minimalist Linux operating system. The latest Unified Access Gateway version uses AlmaLinux 9.2.
Console access is supported to allow an administrator to log on as the root user. This is available through the virtualisation platform such as vCenter Console link and access can be restricted through a comprehensive Role-Based Access Control (RBAC) facility on vCenter to ensure only authorized administrators can gain access. SSH access to Unified Access Gateway is normally deactivated but can be activated using a password or the SSH key controls.
Product updates
Every new version of Unified Access Gateway uses updated AlmaLinux OS, Java, and other components with all recent security updates applied. Omnissa strongly recommends you to stay up-to-date with Unified Access Gateway versions to take advantage of security updates and other improvements.
Note: Release Notes describes the product updates and published for every release.
Standard releases
Currently, new versions of Unified Access Gateway are released every quarter (approximately 4 times in a year). New releases include functional updates, security updates, improvements, bug fixes, and updates to OS package versions.
Version numbering of Unified Access Gateway uses a simple YYMM format indicating the year and month of release. For example, version 2207 indicates it was released in July 2022.
Maintenance releases
Omnissa might also release an interim maintenance version to address a critical security vulnerability that applies to Unified Access Gateway, or to address a critical defect.
Version numbering of Unified Access Gateway maintenance releases uses the YYMM format with a dot (.) and an incrementing number. For example, maintenance releases might be 2207.1, 2207.2, meaning it is a maintenance release for Unified Access Gateway 2207.
Critical OS patch updates
Omnissa might authorize the update of one or more OS packages to rectify a critical vulnerability that affects a specific version of Unified Access Gateway and for which no viable workaround is available.
Was this page helpful?