Specifications
VMware, Inc. 269
Chapter 17 Managing Users, Groups, Permissions, and Roles
Table 17-1. Default Roles
Role Role Type Description User Capabilities
NoAccessUser system Cannotvieworchangetheassignedobject.
VIClienttabsassociatedwithanobjectdisplay
withoutcontent.
Thisisthedefaultroleforallusersexceptthoseusers
intheAdministratorsgroup.
ReadOnlyUser system Viewthestateanddetailsabouttheobject.
Viewallthetabpanels
intheVIClientexceptthe
consoletab.Cannotperformanyactionsthroughthe
menusandtoolbars.
Administrator system Allprivilegesforallobjects.
Add,remove,andsetaccessrightsandprivilegesfor
alltheVirtualCenterusersandallthevirtualobjectsin
theVMwareInfrastructureenvironment.
Thisisthedefaultrolefor
allmembersofthe
Administratorsgroup.
VirtualMachine
User
sample Performactionsonvirt ualmachinesonly.
Interactwithvirtualmachines,butnotchangethe
virtualmachineconfiguration.Thisincludes:
Allprivilegesforthescheduledtasksprivileges
group.
Selectedprivilegesfortheglobalitemsandvirtual
machineprivilegesgroups.
Noprivilegesforthefolder,datacenter,datastore,
network,host,resource,alarms,sessions,
performance,andpermissionsprivilegesgroups.
VirtualMachine
PowerUser
sample Performactionsonthevirtualmachineandresource
objects.
Interactandchangemostvirtualmachine
configurationsettings,takesnapshots,andschedule
tasks.Thisincludes:
Allprivilegesforscheduledtaskprivilegesgroup.
Selectedprivilegesforglobalitems,datastore,and
virtualmachineprivilegesgroups.
Noprivilegesforfolder,datacenter,network,host,
resource,alarms,sessions,performance,and
permissionsprivilegesgroups.