VMware Workspace ONE Advanced (VCAP-DTM Design) — Question 73
A customer is planning on implementing Horizon View. Security is a major concern. Only corporate managed Windows laptops should be able to access the
Horizon environment from the Internet.
Which solution should be implemented to support the requirement?
Answer options
- A. Deploy NSX. Use NSX feature to validate client's MAC addresses and only allow registered clients.
- B. Deploy VMware Identity Manager. Configure it to require RSA SecureID. Only install the RSA SecureID soft token software on managed devices. Configure Horizon to allow SAML.
- C. Deploy View Security Server. Configure it to only allow domain joined computers accessing Horizon.
- D. Deploy Unified Access Gateway. Configure it to require a device client certificate and to use pass-through authentication for Horizon. Distribute certificates to managed devices.
Correct answer: D
Explanation
The correct answer is D because Unified Access Gateway allows for enhanced security by requiring a client certificate, ensuring that only authorized corporate devices can connect. Option A focuses on MAC address validation, which can be spoofed; option B relies on RSA SecureID but does not specifically address device management; option C restricts access but does not enforce certificate-based authentication.