Skip to main content

2025년 2월 25일

Best Practices for Administrator Users and Groups

To increase the security and manageability of your Horizon environment, you should follow best practices when managing administrator users and groups.

  • Create new user groups in Active Directory and assign administrative roles to these groups. Avoid using Windows built-in groups or other existing groups that might contain users who do not need or should not have Horizon privileges.
  • Keep the number of users with Horizon administrative privileges to a minimum.
  • Because the Administrators role has every privilege, it should not be used for day-to-day administration.
  • Because it is highly visible and easily guessed, avoid using the name Administrator when creating administrator users and groups.
  • Create access groups to segregate sensitive desktops and farms. Delegate the administration of those access groups to a limited set of users.
  • Create separate administrators that can modify global policies and Horizon configuration settings.
  • Create federation access groups to segregate sensitive global entitlements. Delegate the administration of those federation access groups to a limited set of users.

이 페이지가 도움이 되었나요?

이 항목에 대한 피드백 보내기

이 항목이 도움이 되었나요?

개인정보나 기밀정보는 입력하지 마세요.

링크를 생성하는 중…