HP t310 PCoIP Administrator's Guide - Page 104

Setting up the User Permissions, 5.1 Specifying USB Devices

Page 104 highlights

PCoIP Administrator's Guide 5 Setting up the User Permissions The Permissions menu on the Administrative Web Interface has options that let you configure parameters for the USB, Audio, and Power for the device. Note: There are no corresponding Permissions options for the OSD. 5.1 Specifying USB Devices The USB page lets you specify authorized and unauthorized USB devices. It is divided into two sections: Authorized Devices ("white list") and Unauthorized Devices ("black list"). Devices are authorized or unauthorized based on ID or Class. You can use wildcards (or specify "any") to reduce the number of entries needed to define all devices. USB plug events are blocked in the PCoIP zero client hardware for unauthorized USB devices. The host (PCoIP host card or the host virtual desktop) cannot see or access the device for an additional layer of security. The USB page is available on the host and client but the host USB permissions have a higher priority and update the client USB permissions. It is strongly recommended you only set the USB permissions on the host when connecting to a PCoIP host card. l If the host has permissions programmed (authorized and/or unauthorized), the permissions are sent to the client. If the client has any unauthorized devices, they are added to the host's unauthorized devices and the consolidated list is used. l If the host does not have permissions programmed, the client's permissions are used. The factory defaults have no USB permissions configured on the host. The factory defaults for the client USB permissions are "any, any, any" (that is, authorized USB devices). Depending on the host implementation (for example, hardware PCoIP host or software PCoIP host), you can configure the USB permissions as required on the client and/or host. Note: The host USB permissions are only updated at the start of a PCoIP session. They are authorized in the following order of priority (highest to lowest): 1. Unauthorized Vendor ID/Product ID 2. Authorized Vendor ID/Product ID 3. Unauthorized Device Class/Sub Class/Protocol 4. Authorized Device Class/Sub Class/Protocol TER0606004 Issue 16 104

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163

5
Setting up the User Permissions
The
Permissions
menu on the Administrative Web Interface has options that let you
configure parameters for the USB, Audio, and Power for the device.
Note: There are no corresponding Permissions options for the OSD.
5.1
Specifying USB Devices
The
USB
page lets you specify authorized and unauthorized USB devices. It is divided into
two sections: Authorized Devices ("white list") and Unauthorized Devices ("black list").
Devices are authorized or unauthorized based on ID or Class. You can use wildcards (or
specify "any") to reduce the number of entries needed to define all devices.
USB plug events are blocked in the PCoIP zero client hardware for unauthorized USB
devices. The host (PCoIP host card or the host virtual desktop) cannot see or access the
device for an additional layer of security.
The
USB
page is available on the host and client but the host USB permissions have a
higher priority and update the client USB permissions. It is strongly recommended you only
set the USB permissions on the host when connecting to a PCoIP host card.
l
If the host has permissions programmed (authorized and/or unauthorized), the
permissions are sent to the client. If the client has any unauthorized devices, they are
added to the host's unauthorized devices and the consolidated list is used.
l
If the host does not have permissions programmed, the client's permissions are used.
The factory defaults have no USB permissions configured on the host. The factory defaults
for the client USB permissions are "any, any, any" (that is, authorized USB devices).
Depending on the host implementation (for example, hardware PCoIP host or software
PCoIP host), you can configure the USB permissions as required on the client and/or host.
Note: The host USB permissions are only updated at the start of a PCoIP session. They are
authorized in the following order of priority (highest to lowest):
1.
Unauthorized Vendor ID/Product ID
2.
Authorized Vendor ID/Product ID
3.
Unauthorized Device Class/Sub Class/Protocol
4.
Authorized Device Class/Sub Class/Protocol
TER0606004 Issue 16
104
PCoIP Administrator's Guide