Specifications

To create a vCenter Server role for backup and recovery operations, log in to the vCenter Server using the vSphere
Client, and add the permissions listed in Table 3:
Table 3. vCenter Server Role Permissions.
Location Configuration Permissions
Datastore Allocate space
Browse datastore
Low-level file operations
Global Licenses
Guest Operations
(1)(2)
Guest Operation Modifications
Guest Operation Program Execution
Guest Operation Queries
Network Assign network
Resource Assign virtual machine to
vApp Add virtual machine
Assign resource pool
Create
Virtual Machine Configuration
Add existing/new disk
Add/remove device
Advanced
Change CPU count
Change resource
Disk change tracking
Disk Lease
Host USB device
Memory
Modify device setting
Raw device
Reload from path
(4)
Remove disk
Rename
Reset guest information
Settings
Swapfile placement
Upgrade virtual hardware
Virtual Machine Inventory Create new
Register
Remove
Unregister
Virtual Machine Provisioning Allow disk access
Allow read-only disk access
Allow virtual machine download
Virtual Machine
(2)
Snapshot Management > State
(2) (2)
Create snapshot
Remove snapshot
Revert to snapshot
The recovery operation requires privileges for operations on hosts, networks, and datastores. You must apply this new role to the
Datacenter object or higher in the VMware vCenter Server hierarchy for the user specified in the option and VMcuser Propagate to
must be turned on .Child Object when adding the permission