clifforg wrote:
Will the VDI infrastructure actually fail to function? we don't have valid certs yet - the upgrade was today. Everything appears to be fine for now.
No, it won't fail, but the main thing is that without a trusted CA signed SSL server certificate on your View Connection Server (and/or Security Server), your View Client users will not get the assurance that they are connecting to a genuine trusted environment and therefore the environment is more susceptible to a potential man-in-the-middle (MITM) attack.
Similarly with internal server communications, having proper trusted CA signed certificates for SSL communications will make the environment more secure.
This is generally true with SSL communications and is the reason for using trusted CA certificate signing. It is to provide this assurance.
It is therefore strongly recommended in a production View environment that the temporary (get-you-started) self-signed SSL certificaes are replaced with proper trusted CA signed ones.
Mark