<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[DeBruinonline.net]]></title><description><![CDATA[DeBruinonline.net]]></description><link>https://www.debruinonline.net/blog</link><generator>RSS for Node</generator><lastBuildDate>Sun, 06 Sep 2026 03:22:48 GMT</lastBuildDate><atom:link href="https://www.debruinonline.net/blog-feed.xml" rel="self" type="application/rss+xml"/><item><title><![CDATA[The EUC Weekly Roundup: August 5 to 26, 2026]]></title><description><![CDATA[A three-week EUC catch-up: the critical NetScaler CVE-2026-19490, August Patch Tuesday's exploited zero-day, the Horizon 8 2606 wave, and Login Enterprise goes agentic.]]></description><link>https://www.debruinonline.net/post/euc-weekly-roundup-2026-08-26</link><guid isPermaLink="false">6a8ebc7570929264c36e1cfe</guid><category><![CDATA[Weekly Roundup]]></category><pubDate>Wed, 26 Aug 2026 10:38:31 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_61a65a77757f4a66a7185748db402b0e~mv2.png/v1/fit/w_1000,h_1000,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[The EUC Weekly Roundup: July 29 to August 5, 2026]]></title><description><![CDATA[A quiet summer week in EUC: Thomas Marcussen's Entra SMS and voice MFA retirement playbook, a passkey migration setting, Login Enterprise 6.8.6, ControlUp, IGEL UMS and more.]]></description><link>https://www.debruinonline.net/post/euc-weekly-roundup-2026-08-05</link><guid isPermaLink="false">6a73030b2df0f1eeb2f5a13b</guid><category><![CDATA[Weekly Roundup]]></category><pubDate>Wed, 05 Aug 2026 09:45:49 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_aab2f93c8be7465ab2e76c3aa3e8177f~mv2.png/v1/fit/w_1000,h_1000,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[The EUC Weekly Roundup: July 22 to 29, 2026]]></title><description><![CDATA[This week's EUC roundup leans on the community: Niehaus on WSUS, Reinhard on Enterprise App Management, Billekens' vendor-neutral Workspace Optimizer, a GO-EUC benchmark, and Omnissa's Forrester win.]]></description><link>https://www.debruinonline.net/post/the-euc-weekly-roundup-july-22-to-29-2026</link><guid isPermaLink="false">6a69d15c7ef449b92cf70cf4</guid><category><![CDATA[Weekly Roundup]]></category><pubDate>Wed, 29 Jul 2026 10:09:43 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_93d1c08282854dd3a0b9f8c16c6adab8~mv2.png/v1/fit/w_243,h_176,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[EUC Weekly Roundup: July 15 to 22, 2026]]></title><description><![CDATA[Weekly End User Computing roundup for 15-22 July 2026: NetScaler CVE-2026-8451 still exploited, a record Windows Patch Tuesday, Entra retiring SMS/voice MFA, XenServer 9 preview, Nutanix and vSphere deadlines, Intune E3/E5 changes and more.]]></description><link>https://www.debruinonline.net/post/euc-weekly-roundup-15-22-july-2026</link><guid isPermaLink="false">6a6091c2de63d10e2e77d045</guid><category><![CDATA[Weekly Roundup]]></category><pubDate>Wed, 22 Jul 2026 12:04:15 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_dfa1aa02a70243c19fa027764d61e0bd~mv2.png/v1/fit/w_1000,h_630,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[When VMware ESXi NVMe memory Tiering Meets vGPU: What You Need to Know]]></title><description><![CDATA[A few weeks ago, I did a research with Leee Jeffries for GO‑EUC on NVMe memory tiering versus traditional swap in VMware ESXi. VMware ESXi Memory Management Reimagined: NVMe Tiering vs Traditional Swap | GO-EUC The article sparked some great discussions and there is an important caveat when it comes to vGPU desktops that I want to highlight. vGPU Desktops Always Need Full DRAM Here’s the thing that often trips people up: every VM with a vGPU requires all of its RAM to be reserved in physical...]]></description><link>https://www.debruinonline.net/post/when-vmware-esxi-nvme-memory-tiering-meets-vgpu-what-you-need-to-know</link><guid isPermaLink="false">6932b8aa73a2e017867e21c3</guid><category><![CDATA[vSphere & ESXi]]></category><pubDate>Fri, 05 Dec 2025 11:50:33 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_d1a0b7ad623f46d8ac5ffaa0f771c140~mv2.png/v1/fit/w_937,h_518,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[The Hybrid Join Cascade: When the PRT Challenge Still Isn’t Done]]></title><description><![CDATA[Over the past few months, I’ve been looking into some of the trickier issues in environments that combine Omnissa Horizon Instant Clones, Hybrid Azure AD Join, App Volumes and even TrueSSO. A true resonance cascade For issues with PRT when federated EntraID to Omnissa Access and when using TrueSSO read my previous post: The Hybrid Join Incident: Recovering the Lost PRT 1. PRT unpredictability and the “Wait for Hybrid Join” setting One of the biggest headaches in Instant Clone environments is...]]></description><link>https://www.debruinonline.net/post/the-hybrid-join-cascade-when-the-prt-challenge-still-isn-t-done</link><guid isPermaLink="false">692dce20745789e635cdd819</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Mon, 01 Dec 2025 17:33:25 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_a9c7ad70600f4bffbe434379f16b386f~mv2.png/v1/fit/w_1000,h_576,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Omnissa Pass: The New Member of the Omnissa MFA Fellowship]]></title><description><![CDATA[A few years back, VMware Verify reached end of life (2022). Since then, we basically had two options left from the Omnissa perspective: a TOTP authenticator app based on RFC 6238 or Intelligent Hub MFA with push notifications. The TOTP option works well, especially for Bring Your Own Devices (BYOD) , but users still end up typing in codes constantly. Intelligent Hub MFA solves that with push, but the downside is that it requires some level of device management or registration and therefore a...]]></description><link>https://www.debruinonline.net/post/omnissa-pass-the-new-member-of-the-omnissa-mfa-fellowship</link><guid isPermaLink="false">692d639aa583678619b22b81</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Mon, 01 Dec 2025 09:45:05 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_c931b155a5c94df88d679cc85282d667~mv2.png/v1/fit/w_1000,h_720,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[The Hybrid Join Incident: Recovering the Lost PRT]]></title><description><![CDATA[Single Sign-On in modern environments can be a beautiful thing, until it isn’t. You’ve federated Entra ID to Omnissa Access, implemented Hybrid Join, and everything works perfectly when users log in with their username and password. But then you try it externally. TrueSSO is in place to make VDI logins seamless, certificates replace passwords and suddenly the PRT never shows up. Microsoft apps (Teams v2 being the most noticeable) rely increasingly on the PRT for full Single Sign-On, and...]]></description><link>https://www.debruinonline.net/post/the-hybrid-join-incident-recovering-the-lost-prt</link><guid isPermaLink="false">69287e8bcb45ab7844dbf71f</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Thu, 27 Nov 2025 16:38:42 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_78d6b0179c274ba49490b6a0a75bf85e~mv2.png/v1/fit/w_300,h_168,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Federate EntraID to Omnissa Access with Graph PowerShell SDK]]></title><description><![CDATA[If you’ve integrated Workspace ONE Access with Microsoft 365 before, the steps will look familiar. Omnissa Access is the evolution of VMware Identity Manager, and while the interface and URLs have changed slightly, the principle remains the same: let Microsoft 365 trust Omnissa Access as the identity provider for your domain. This post walks through the new way to federate Entra ID with Omnissa Access using the Microsoft Graph PowerShell SDK. It replaces the legacy MSOnline module which is...]]></description><link>https://www.debruinonline.net/post/federate-entraid-to-omnissa-access-with-graph-powershell-sdk</link><guid isPermaLink="false">68fa2fa9d3059fbaddd56a56</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Thu, 23 Oct 2025 13:46:21 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_186f747e567d4dc7afaab12f05a7f9fb~mv2.png/v1/fit/w_460,h_460,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Measure What Your Users Really Experience: Login Enterprise Meets NVIDIA nVector]]></title><description><![CDATA[Measuring Real Latency — The Missing Piece in VDI Performance Latency isn’t just a number you pull from monitoring tools. It’s about the delay users feel, the gap between when they click and when something actually happens on their screen. In virtual desktop environments, traditional latency metrics (like server response times or network delays) only tell part of the story. Users interact with their device locally, so the real question is: how long does it take until their screen, on the...]]></description><link>https://www.debruinonline.net/post/measure-what-your-users-really-experience-login-enterprise-meets-nvidia-nvector</link><guid isPermaLink="false">68f7621ce789aa300a476a84</guid><category><![CDATA[Monitoring & Performance]]></category><pubDate>Tue, 21 Oct 2025 10:36:27 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_0c3d5eee5c8140a9bea39bc4f3aaa049~mv2.png/v1/fit/w_843,h_383,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Painting Happy Little VIPs: FSLogix ObjectSpecific settings.]]></title><description><![CDATA[You know, most VDI environments run like a well painted canvas. The default FSLogix GPO covers most users with smooth even strokes. They are happy users, their profiles load fast, and the picture looks just right. But then there are the VIPs, those special users with bold bright colors. The users with massive OST caches that need a bigger space, or the sales crew whose Teams data just keeps growing like a happy little forest. This is when the ObjectSpecific keys step in, like a delicate...]]></description><link>https://www.debruinonline.net/post/painting-happy-little-vips-fslogix-objectspecific-settings</link><guid isPermaLink="false">687e0c5d74fa838348051695</guid><category><![CDATA[FSLogix]]></category><pubDate>Mon, 21 Jul 2025 10:38:47 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_f32e5762d2914a34af66cfcce1e19430~mv2.png/v1/fit/w_468,h_334,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Omnissa Intelligence and DEX : Finally Worth Your Time]]></title><description><![CDATA[Omnissa Intelligence has been in the stack for a while now. Most people knew it existed, but it often got ignored, to many day-to-day concerns like UEM, Horizon, or App Volumes. Intelligence always looked promising, but it felt like another dashboard with too many lines and not enough relevance.    That... is changing. The Digital Employee Experience (DEX) side of Omnissa Intelligence has received serious attention. It is now mature enough to actually do something useful in real environments....]]></description><link>https://www.debruinonline.net/post/omnissa-intelligence-and-dex-finally-worth-your-time</link><guid isPermaLink="false">6863f5a3a535475640a72302</guid><category><![CDATA[Monitoring & Performance]]></category><pubDate>Tue, 01 Jul 2025 16:03:15 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_6d56a50ff50640289e7400d271c72571~mv2.png/v1/fit/w_1000,h_1000,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Webinar: Mastering the Multi-Layered EUC Environment: A Journey Through the Maze]]></title><description><![CDATA[On december 18, 2024, I had the honor to do a live webinar with Leee Jeffries. "Mastering the Multi-Layered EUC Environment: A Journey Through the Maze" We show how we test and validate the layers with Login VSI. Some of the technologies mentioned are Omnissa Horizon and Appvolumes, Liquit part of Recast Software, IGEL Technology and Microsoft EntraID Conditional Access... sounds like a challenge right!? In case you missed it, here is a link to the recording:  Mastering the Multi-Layered EUC...]]></description><link>https://www.debruinonline.net/post/webinar-mastering-the-multi-layered-euc-environment-a-journey-through-the-maze</link><guid isPermaLink="false">6782b22607c9510f846179ab</guid><category><![CDATA[Events & Webinars]]></category><pubDate>Sat, 11 Jan 2025 18:06:52 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_4a66f3e34d6742879c02aa00605f6dce~mv2.png/v1/fit/w_911,h_512,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Omnissa AppVolumes 2412.. with (offline) physical endpoint support!]]></title><description><![CDATA[So… on December 19th of 2024, Omnissa released App Volumes 2412. One change I’m most thrilled about: MSI for Windows Endpoints AND and discovered: Physical Endpoint support! App Volumes now supports MSI-wrapped VHD packages, alongside traditional VHD and VMDK formats. This allows the App Volumes agent to operate independently within existing delivery infrastructures such as Workspace ONE UEM, Microsoft Intune, and Microsoft Configuration Manager. and with the parameters of the command line...]]></description><link>https://www.debruinonline.net/post/omnissa-appvolumes-2412-with-physical-endpoint-support</link><guid isPermaLink="false">677fcdd6b15a08b7d58ef5ce</guid><category><![CDATA[App Volumes]]></category><pubDate>Thu, 09 Jan 2025 13:49:42 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_d7008e846fec437db0751efdac66df0c~mv2.png/v1/fit/w_553,h_306,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Using the Omnissa Workspace One UEM CA with Microsoft EntraID Certificate Based Access]]></title><description><![CDATA[Although with many implementations of the Workspace One platform Workspace One Access is configured as the IDP (personally preferred when using this platform) I also encounter customers where EntraID is the preferred IDP with mostly valid reasons. There are use cases this is the better choice. With the flexibility Workspace One Access offers this is no issue at all. But when shifting the IDP to EntraID I usually advice to also shift the Conditional Access policies to EntraID. In my opinion a...]]></description><link>https://www.debruinonline.net/post/using-the-omnissa-workspace-one-uem-ca-with-microsoft-entraid-certificate-based-access</link><guid isPermaLink="false">67081d0e64c4355fff458dc4</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Thu, 10 Oct 2024 19:11:03 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_5b80dc86a6b64a0b84a0c50961f2e74a~mv2.png/v1/fit/w_612,h_306,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Horizon Instant Clones, Imprivata OneSign and the no SSO bug]]></title><description><![CDATA[Recently got involved in designing and building a new awesome blistering fast Omnissa Horizon environment for a hospital. This new environment is based on the latest Horizon ESB, DEM, AppVolumes, Windows 11 etc. And as many hospitals do, they use Imprivata OneSign. We ran into a bug. When logging in to the desktop (either Imprivata Client or Horizon client directly) we got confronted by the Imprivata GINA screen. Once again entering credentials and the desktop continues. Reconnecting on the...]]></description><link>https://www.debruinonline.net/post/horizon-instant-clones-imprivata-onesign-and-the-no-sso-bug</link><guid isPermaLink="false">66ab9f3f23dc2c0372c1f482</guid><category><![CDATA[Omnissa Horizon]]></category><pubDate>Thu, 01 Aug 2024 14:59:56 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_dc55473c62f0474c979d09f5dd74c2e9~mv2.png/v1/fit/w_606,h_404,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[FSLogix - Navigating the choices]]></title><description><![CDATA[A while ago I created a discission tree to explain/help customers and coworkers with a couple of the design choices possible with the FSLogix Office 365 and/or the Profile Containers.  I thought to share this, hoping this will help others in their decision making! If you need any help, additional explanation, have any remarks or additions I should add, please let me know! First starting with some of the basics, if you don't need the basics just scroll down to use the chart! What is FSLogix?...]]></description><link>https://www.debruinonline.net/post/fslogix-navigating-the-choices</link><guid isPermaLink="false">66aa1f79910e647ee1f50078</guid><category><![CDATA[FSLogix]]></category><pubDate>Wed, 31 Jul 2024 11:50:24 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_5f85007927d242558d3532a9155aa9b4~mv2.jpg/v1/fit/w_1000,h_1000,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[HELLO Workspace One Access: Using Windows HelloID as FIDO2 security key!]]></title><description><![CDATA[More and more authentication methods are available to Workspace One Access and one of them is FIDO2. I’ve seen multiple use cases with the well-known Yubico Security Keys. But did you know you can also use Windows Hello as Security key? So, to put it in context, you can use Biometrics or PIN as identifier and login to Workspace One Access without sending credentials!   Rock On! How does FIDO2 work? FIDO2 is like having a digital key that unlocks your online accounts instead of typing...]]></description><link>https://www.debruinonline.net/post/hello-workspace-one-access-using-windows-helloid-as-fido2-security-key</link><guid isPermaLink="false">664357d0ac71889754744b7d</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Tue, 14 May 2024 12:40:01 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_0f9da917e216417f97296468f93cc43b~mv2.png/v1/fit/w_506,h_470,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[Integrating Citrix Virtual App and Desktops with VMware Workspace One Access - Another way Around]]></title><description><![CDATA[A while ago I wrote a cross reference blog with my buddy Henry Heres about integrating Citrix Gateway and VMware Workspace One Access. A respected customer read these blogs and tried integrating this in their environment but ran in to issues and called for some assistance.  Unfortunately, the original scenario we blogged about did not work in this specific environment, so I had to find an alternative way. In this blog I will show you another option and how to configure this! The Original: The...]]></description><link>https://www.debruinonline.net/post/integrating-citrix-virtual-app-and-desktops-with-vmware-workspace-one-access-another-way-around</link><guid isPermaLink="false">65afb32314836775d7a84bb8</guid><category><![CDATA[Citrix]]></category><pubDate>Tue, 23 Jan 2024 14:37:13 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_f81030fc64f541828bbe3b1a2527dd05~mv2.jpg/v1/fit/w_600,h_327,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item><item><title><![CDATA[VMware vSphere 8.0 U2 and federated Authentications with Microsoft Entra ID ]]></title><description><![CDATA[A new feature available since vSphere 8.0 U2 is federated authentication with Microsoft Entra ID (Azure Active Directory) and provision the users with SCIM.  This is really nice since it is now possible to create Single Sign On, leverage Conditional Access policies and Multi Factor Authentication (MFA). In this blog I will explain step by step how to configure this and how to mitigate a in my opinion big fat no no required in the original documentation: Expose vCenter to the public.......]]></description><link>https://www.debruinonline.net/post/vmware-vsphere-8-0-u2-and-federated-authentications-with-microsoft-entra-id</link><guid isPermaLink="false">659029f6241fef93e0dfc7b7</guid><category><![CDATA[Identity & Authenticatie]]></category><pubDate>Sat, 30 Dec 2023 15:48:17 GMT</pubDate><enclosure url="https://static.wixstatic.com/media/ec71ca_1b3407c801374ff5bee77ee15e029118~mv2.png/v1/fit/w_875,h_491,al_c,q_80/file.png" length="0" type="image/png"/><dc:creator>Edwin de Bruin</dc:creator></item></channel></rss>