Microsoft® (FSLogix) Application Masking is a great product to use with Nutanix® Frame Desktop-as-a-Service (DaaS) solution. Application masking makes centralized image management even easier by hiding the applications based on conditions. With Application Masking, you can install all the applications into a single Frame™ sandbox and then provide access to these applications based on conditions such as group membership and many other options. The benefits are fewer master images, the ability to hide applications when publishing full desktops, and the ability to control application license usage.
You can see all of this in action in a demo video I’ve embedded below. It showcases the configuration of Microsoft Application Masking and the user experience both for users accessing “designer” applications running NVIDIA-powered GPU virtual machines, and users leveraging “sales” applications running on CPU-only virtual machines--all from a single managed image.
What if you could install all Windows® applications into a single Frame sandbox, thereby limiting the number of master images. Imagine you can hide applications and their components based on conditions, such as Identity Provider group membership or environment variables, all within the same Frame-powered Windows desktop solution.
What if you could grant or deny access to applications, just by modifying the users’ Identity Provider group membership? This provides options of integrating your application delivery into self-service portals or (automatic) approval processes - users get the right set of apps without even touching the Frame environment! Or what if you could provide GPU-powered instances to “Designers” only and “NoGPU” instances to Sales, to accommodate their specific sales tools, all within the single Frame account?
You can do this and more without using complex solutions, such as the free Microsoft Applocker or paid 3rd party User Environment Management solutions. How? Just use Microsoft (FSLogix) Application Masking and Frame together.
The demo video shows what the actual end-user and administrator experience are.
Two separate Frame sessions will be started; one user is “Sales” and the other user is “Designer.”
Microsoft Application masking rules and associated conditions make sure that “Designer” only has access to the “designer applications,” such as Adobe and Autodesk Software, while the user “Sales” can only see and access Microsoft Office applications.
Also, using Nutanix Frame’s easy account and image management the designers are able to run all these applications in an NVIDIA GPU-powered machine, while the sales user runs the Microsoft Office productivity applications on a NoGPU, CPU-only machine. This is all running and managed from a single Frame account with a single Sandbox image.
Also, the administrator created different rules to hide “Sales” and “Designer” applications using Microsoft Application Masking FSLogix rule editor. In this example, the Frame Account is configured to use “Domain Joined Instances” and various Active Directory security groups are configured to use the AppMasking rules.
The great news is that it’s fast, easy, and free to give Nutanix Frame a test drive yourself. You will get a great overview of both the user experience and admin experience. If you want to evaluate Frame and start a 30-day trial check out this page for more information.
Ruben Spruijt - Sr. Technologist Nutanix - @rspruijt
© 2021 Nutanix, Inc. All rights reserved. Nutanix, the Nutanix logo and all Nutanix product, feature and service names mentioned herein are registered trademarks or trademarks of Nutanix, Inc. in the United States and other countries. Other brand names mentioned herein are for identification purposes only and may be the trademarks of their respective holder(s). This post may contain links to external websites that are not part of Nutanix.com. Nutanix does not control these sites and disclaims all responsibility for the content or accuracy of any external site. Our decision to link to an external site should not be considered an endorsement of any content on such a site. This post may contain express and implied forward-looking statements, which are not historical facts and are instead based on our current expectations, estimates and beliefs. The accuracy of such statements involves risks and uncertainties and depends upon future events, including those that may be beyond our control, and actual results may differ materially and adversely from those anticipated or implied by such statements. Any forward-looking statements included herein speak only as of the date hereof and, except as required by law, we assume no obligation to update or otherwise revise any of such forward-looking statements to reflect subsequent events or circumstances.