Skip to main content

21 de julio de 2025

Best Practices for Administrator Users and Groups

To increase the security and manageability of your Horizon environment, you should follow best practices when managing administrator users and groups.

  • Create new user groups in Active Directory and assign administrative roles to these groups. Avoid using Windows built-in groups or other existing groups that might contain users who do not need or should not have Horizon privileges.
  • Keep the number of users with Horizon administrative privileges to a minimum.
  • Because the Administrators role has every privilege, it should not be used for day-to-day administration.
  • Because it is highly visible and easily guessed, avoid using the name Administrator when creating administrator users and groups.
  • Create access groups to segregate sensitive desktops and farms. Delegate the administration of those access groups to a limited set of users.
  • Create separate administrators that can modify global policies and Horizon configuration settings.
  • Create federation access groups to segregate sensitive global entitlements. Delegate the administration of those federation access groups to a limited set of users.

¿Le resultó útil esta página?

Enviar comentarios sobre este tema

¿Le resultó útil este tema?

No incluya información personal ni confidencial.

Generando el enlace…