Administration

Table Of Contents
Table 66. Predefined Roles in View Administrator
Role User Capabilities
Applies to an
Access Group
Administrators Perform all administrator operations, including creating
additional administrator users and groups. In a Cloud Pod
Architecture environment, administrators that have this role can
congure and manage a pod federation and manage remote pod
sessions.
Administrators that have the Administrators role on the root
access group are super users because they have full access to all
of the inventory objects in the system. Because the
Administrators role contains all privileges, you should assign it
to a limited set of users. Initially, members of the local
Administrators group on your View Connection Server host are
given this role on the root access group.
I An administrator must have the Administrators
role on the root access group to perform the following tasks:
n
Add and delete access groups.
n
Manage ThinApp applications and conguration seings in
View Administrator.
n
Use the vdmadmin , vdmimport, and lmvutil commands.
Yes
Administrators (Read only)
n
View, but not modify, global seings and inventory objects.
n
View, but not modify, ThinApp applications and seings.
n
Run all PowerShell commands and command line utilities,
including vdmexport but excluding vdmadmin, vdmimport
and lmvutil.
In a Cloud Pod Architecture environment, administrators that
have this role can view inventory objects and seings in the
Global Data Layer.
When administrators have this role on an access group, they can
only view the inventory objects in that access group.
Yes
Agent Registration
Administrators
Register unmanaged machines such as physical systems,
standalone virtual machines, and RDS hosts.
No
Global Conguration and
Policy Administrators
View and modify global policies and conguration seings
except for administrator roles and permissions, and ThinApp
applications and seings.
No
Global Conguration and
Policy Administrators (Read
only)
View, but not modify, global policies and conguration seings
except for administrator roles and permissions, and ThinApp
applications and seings.
No
Inventory Administrators
n
Perform all machine, session, and pool-related operations.
n
Manage persistent disks.
n
Resync, Refresh, and Rebalance linked-clone pools and
change the default pool image.
When administrators have this role on an access group, they can
only perform these operations on the inventory objects in that
access group.
Yes
Inventory Administrators
(Read only)
View, but not modify, inventory objects.
When administrators have this role on an access group, they can
only view the inventory objects in that access group.
Yes
View Administration
110 VMware, Inc.