Skip to main content

2026 年 8 月 24 日

Omnissa Horizon Connection Server in FIPS-Compliant Mode Installation Certificate Requirements

A new installation of Horizon Connection Server in FIPS-compliant mode requires the CA-signed vdm certificate to be placed in the Windows certificate store. The installer checks for the presence of this certificate before proceeding with the installation.

The steps to request and install this certificate are the same as described for the current TLS certificate workflow. See Overview of Tasks for Setting Up TLS Certificates for details.

The vdm certificate requirements are as follows.

  • Subject name: FQDN of CS or wildcard matching FQDN
  • SAN: FQDN of CS or wildcard matching FQDN
  • EKU: Server authentication
  • Set friendly name: vdm
  • Private key must be marked exportable.
  • Signature algorithm to use: SHA384/SHA512

If the installer does not find a vdm certificate, it does one of the following depending on the version of Horizon Connection Server being installed:

  • For versions 2209 and later, the installer stops and displays a notification about the missing certificate. You must install the vdm certificate before the Horizon Connection Server installation can resume.
  • For versions 2206 and earlier, the installer automatically creates a temporary vdm certificate and continues with the Horizon Connection Server installation.

此頁面對您有幫助嗎?

針對本主題提供意見回饋

本主題對您有幫助嗎?

請勿填寫任何個人或機密資訊。

正在產生連結…