Skip to content

Connection Profile Management

Create a New Connection Profile

  1. Navigate to Policies > Profiles > Connection Profiles.

  2. Click Add.

  3. Choose Creation Type as:

    1. Select From Template to create a profile by cloning from a pre-defined template.

    2. Select Create New to create a blank profile.

  4. Provide all required information and enable or disable the required settings in the different sections.

  5. Once all configurations are done, click Add Profile.

The new profile will be added, and the Administrator can assign it to objects in HyWorks, such as devices, device sets, users/groups/OUs, desktop pools, and applications.

Edit Connection Profile

  1. Navigate to Policies > Profiles > Connection Profiles.

  2. Select the connection profile and click Edit.

  3. Update the required configurations and click Update.

  4. Changes will be saved, and users will be able to access sessions according to the updated connection profile at the next logon or when connecting to virtual apps or desktops.

Delete Connection Profile

  1. Navigate to Policies > Profiles > Connection Profiles.

  2. Select the connection profile to delete, then click Delete.

  3. Confirm and click Delete.

The selected Connection Profile will be deleted and will be removed from the Connection Profile section in the Setup.

Note

  • Default Profile cannot be deleted.
  • On deletion, the connection profile with any existing references will display an appropriate error and will not get deleted until all the references are deleted completely.

Copy Connection Profile

HyWorks allows you to copy connection profiles to create a replica of an existing one. Follow the steps below to copy a connection profile.:

  1. Select a Connection Profile to be copied.

  2. Click Copy to clone a profile or create a new one.

  3. Provide a name for the new profile.

The new profile will be added and can be used.

Reset a Connection Profile

If the connection profile is system-generated or defined using predefined templates, it can be reset to the default. To reset a connection profile:

  1. Select the Connection Profile (Default Profile, system-generated, or profiles created from system-defined templates).

  2. Click Reset Profile and confirm the action.

The selected profile will be reset to the default. For profiles created from modified templates, all options are reset to their template values.

Connection Profile Assignment and Fallback Model

In HyWorks, a connection profile can be assigned to multiple objects to achieve maximum granularity while providing application or desktop sessions to clients. The following objects can be assigned connection profiles in the respective sections:

  1. Devices:

    1. Default Settings: To all devices using default settings.

    2. Group Settings: To a group of devices using Group settings.

    3. Device Settings: To individual devices using Device Settings.

  2. Entitlements:

    1. Users: To assign connection profiles to different users, navigate to the Entitlements > Users section.

    2. User Groups: To assign a connection profile to a group of users, navigate to Entitlements > Groups section.

    3. OUs: To assign a connection profile to an OU, navigate to the Entitlements > OUs section.

    4. Pools: User-based shared-hosted desktop pools can be assigned specific connection profiles in the Entitlements > Pools section.

  3. Desktop Pools: To use a specific connection profile for a desktop pool, assign it to the pool as well. Desktop pools can be assigned a connection profile from the wizard.

  4. Applications: Applications can also be assigned specific connection profiles when added or modified in the Add Application or Edit Application wizard, respectively.,

Connection Profile Fallback Model

The connection Profile fallback model in HyWorks defines the priority order in which the connection profile can be applied.

Connection profiles are used to define two types of attributes for a session:

  1. Session timeouts

  2. Connection parameters

Session timeouts are determined by the connection profile applied to the user, whereas connection parameters for application or desktop sessions are determined by the connection profile applied to those sessions.

Connection Profile priorities are calculated in the following manner, based on the type of client from where the user is logging in:

Connection profiles are used in the following priority order:

User Session Application Session Desktop Session
Assigned to User Assigned to Application Assigned to Desktop Pool
Assigned to Group Assigned to User Assigned to User
Assigned to OU Assigned to Group Assigned to User Group
Assigned to Device (Only when the desktop client is being used to log in) Assigned to OU Assigned to OU
Assigned to Device Group (Only when the desktop client is being used to log in) Assigned to Device (Only when the desktop client is being used to log in) Assigned to Device (Only when the desktop client is being used to access)
Organization Default Settings (For HyLite-based log on) Assigned to Device Group (Only when desktop client is being used to log in) Organization Default Settings (For HyLite-based access) Assigned to Device Group (Only when the desktop client is being used to log in) Organization Default Connection Profile (For HyLite-based access)

Let us try to understand this priority order with an example:

If User-1 is a member of Group-2 and both User-1 and Group-2 are in Organizational Unit (OU)-3, User-1 is assigned the application app-4 and the desktop pool-5. The connection profiles are assigned accordingly:

  1. User-1 > Profile-1

  2. Group-2 > Profile-2

  3. OU-3 > Profile-3

  4. App-4 > Profile-4

  5. Pool-5 > Profile-5

Connection Profile Assignments and Precedence:

The connection profiles will be assigned to the following:

  1. The user session and all remote session timeouts will be managed through the connection profile assigned to the user, i.e., Profile-1 (as the user has the highest priority). This means that if Profile-1 has an idle timeout of 5 minutes, user sessions and remote sessions will be marked idle after 5 minutes of inactivity. However, other connection profiles have different timeouts.

  2. While accessing the application app-4, the applied connection profile on the remote session will be Profile-4 because the application has higher precedence than the user. However, this won't change the user session's connection profile, which is already set to Profile-1. The app session timeout will be taken from the profile assigned to the user's session.

Important

The Connection Profile assigned to an application takes precedence when setting up the remote session only if:

  • The Shell mode is enabled, and the connection setting assigned to the application is used. If no connection is assigned to the application, the connection profile assigned to the user will be used.

  • In RemoteApp mode, the application session is the first on that session host server; otherwise, the remote app will use the connection profile assigned to the first application.

  • Now, if the user accesses the desktop from the assigned pool, the remote session environment will be determined by the user-assigned connection profile (which has higher precedence than the pool), and the session timeouts for the remote session will also be defined by the user-assigned connection profile.

Session Recording Profile

The session recording profiles will operate according to the Application or Desktop Pool Connection Profile Fallback Model.

USB Profile

While editing a connection profile, you can now associate a USB Profile to enforce USB device redirection rules across the sessions.
Follow the steps below to configure the USB profile:

  1. Navigate to the Connection Profiles

    • Go to the Profiles page.

    • Click on the Connection Profiles tab to view all connection profiles.

  2. Edit the Desired Connection Profile:

    • Select the connection profile you want to edit.
    • Click Edit to open the profile settings.
  3. Locate the USB Profile Dropdown:

    • In the Additional Settings tab, find the USB Profile dropdown menu.
    • By default, the dropdown is set to None.
  4. Select a USB Profile:

    • Click on the dropdown to see the list of all the available USB Profiles.
    • Select the USB Profile to associate with the connection profile.
  5. Save the Connection Profile:

    • Once a USB Profile is selected, a warning message will be displayed: Warning - The USB Profile feature works only with compatible endpoints. Using an incompatible client may cause the USB Profile rules to fail.
    • Click Save to apply the changes.

By associating a USB Profile with a connection profile, you can ensure that only the desired USB devices are redirected in accordance with your organizational policies. Make sure the selected USB Profile is compatible with the endpoints used by clients to avoid issues.

Note

If no USB Profile is selected, the default setting (None) will be applied, and no USB redirection rules will be enforced.

Connection Profile Assignment in Conflicting Situations

In the following cases, a conflict occurs in which the user is assigned two connection profiles.

  • In case the user is a member of two groups, each assigned to a different connection profile.

Applied Connection Profile: In such cases, the controller randomly selects a connection profile from either group and assigns it to the user.

Connection Profile using Advanced Configurations

The following are some of the advanced configurations for the connection profile:

  • Connection Profile Tab Control: Allows performing Disabled Edit operation on connection profile tabs. The default value is False.

  • Disable Edit On Connection Profile Tabs: Disables the Edit operation on Connection Profile Tabs for all users (except Super Admin Role). The tab number needs to be entered with commas separating each number. The default value is 2.

  • This configuration depends upon the Connection Profile Tab Control.

  • If the Connection Profile Tab Control is set as true, then this configuration will work; otherwise, it will not.

  • For example, 2, 5 - This means tab number 2, the Experience tab, and tab number 5, the Advance Settings tab, were disabled while editing the connection profile.

Advance Settings

To configure the Advanced Settings on HyWorks Controller, navigate to Management Console Settings > General > Advance Settings

  • UI Control: Connection Profile-related configurations are available in the UI Control Group.