If you off-load SSL connections to an intermediate server, you must import the intermediate server's certificate onto the View Connection Server instances or security servers that it is off-loading. The same SSL server certificate must reside on both the off-loading intermediate server and the off-loaded View servers.

If the intermediate server's certificate is not installed on the View Connection Server instance or security server, View Clients cannot validate their connections to View. In this situation, the certificate thumbprint sent by the View server does not match the certificate on the intermediate server to which View Clients are connecting.

Do not confuse load balancing with SSL off-loading. The preceding requirement applies to any device that is configured to provide SSL off-loading, including some types of load balancers. However, pure load balancing does not require copying of certificates between devices.

For information about importing certificates to View servers, see "Import a Signed Server Certificate into a Windows Certificate Store" in the VMware Horizon View Installation document.