Skip to main content

2 september 2026

Configure a Pool Group Client as Direct Connect for Internal User Access

In Horizon Cloud, you can configure Direct Connect to allow internal Horizon Client users to access desktops and agents directly, bypassing the Unified Access Gateway's external FQDN (UAG). This provides a more direct connection path for users within your internal network.

Direct Connect enables clients within a pool group to connect directly to internal resources without routing through the UAG's external FQDN. This can improve connection performance and simplify the network path for internal users while external users continue to use the UAG for secure remote access.

You can specify the Direct Connect option when creating or editing a pool group. Direct Connect is available for any pool group type, Dedicated, Floating, and Multi-session pools.

Important: When Direct Connect is enabled, end users must use the Horizon Native Client. The HTML5 (Blast) web client is not currently supported with Direct Connect configurations.

You can further control access by combining Direct Connect with network-based restrictions:

  • Direct Connect only - When this option is enabled, internal users (based on your configured network ranges) connect directly to resources, while external users continue to route through the UAG.
  • Direct Connect + Restrict access to internal users only - When both options are enabled, only internal users can access their entitlements. External users are blocked from accessing resources entirely.

If you enable Internal Users: Direct connect only but do not enable Restrict access to internal users only, the configuration allows both internal and external access with different connection paths.

An example of editing an existing pool group to allow Direct Connect is shown below.

  1. Open the Horizon Universal Console for Horizon Cloud.

  2. Click Pool Groups from the left menu.

  3. Select an existing pool group and then click Edit.

  4. In the Policies Section, under the Brokering subsection, enable the Internal Users: Direct connect only toggle button and/or the Restrict access to internal users only toggle.

    When you enable the Internal Users: Direct connect only button, external users can continue to connect using the Unified Access Gateway unless the Restrict access to internal users only option is also enabled.

  5. Click Save.

For confirmation, you can verify the pool group's Policies summary page to view the status of the Internal Users: Direct Connect Only and Restrict access to internal users only options in the Brokering section of the page.

If the user is not an internal user and is connecting from outside of the configured IP range, they continue to see entitlements for the pool groups that are configured as Internal Users: Direct connect only and connect using the Unified Access Gateway, unless the Restrict access to internal users only option is also enabled.

For related information refer to Create a Single-Session Pool Group and/or Create a Multi-Session Pool Group and/or Managing Power Options for Pools and Pool Groups.

Was deze pagina nuttig?

Feedback geven over dit onderwerp

Was dit onderwerp nuttig?

Vermeld geen persoonlijke of vertrouwelijke informatie.

Link genereren…