Configure PCoIP session encryption algorithms

Controls the encryption algorithms advertised by the PCoIP endpoint during session negotiation.

Checking one of the check boxes disables the associated encryption algorithm. You must enable at least one algorithm.

This setting applies to both agent and client. The endpoints negotiate the actual session encryption algorithm that is used. If FIPS140-2 approved mode is enabled, the Disable AES-128-GCM encryption value will be overridden if both AES-128-GCM encryption and AES-256-GCM encryption are disabled.

If the overall "Configure SSL Connections" is disabled or not configured, both the Salsa20-256round12 and AES-128-GCM algorithms are available for negotiation by this endpoint.

Supported encryption algorithms, in order of preference, are SALSA20/12-256, AES-GCM-128, and AES-GCM-256. By default, all supported encryption algorithms are available for negotiation by this endpoint.

If both endpoints are configured to support all 3 algorithms and the connection does not use a Security Gateway (SG), the SALSA20 algorithm will be negotiated and used. However if the connection uses a SG then SALSA20 is automatically disabled and AES128 will be negotiated and used. If either endpoint or the SG disables SALSA20 and either endpoint disables AES128, then AES256 will be negotiated and used.

Supported on: Undefined

At least one encryption algorithm must be enabled. (See Explain)

Disable Salsa20-256-round12 encryption
Registry HiveHKEY_CURRENT_USER
Registry PathSoftware\Policies\Teradici\Client\PCoIP\pcoip_admin
Value Namepcoip.enable_salsa20_256_round12
Value TypeREG_DWORD
Default Value1
True Value0
False Value1
Disable AES-128-GCM encryption
Registry HiveHKEY_CURRENT_USER
Registry PathSoftware\Policies\Teradici\Client\PCoIP\pcoip_admin
Value Namepcoip.enable_aes_128_gcm
Value TypeREG_DWORD
Default Value1
True Value0
False Value1
Disable AES-256-GCM encryption
Registry HiveHKEY_CURRENT_USER
Registry PathSoftware\Policies\Teradici\Client\PCoIP\pcoip_admin
Value Namepcoip.enable_aes_256_gcm
Value TypeREG_DWORD
Default Value1
True Value0
False Value1

pcoip.client.admx

Administrative Templates (Computers)

Administrative Templates (Users)