Administration

Table Of Contents
Object-Specific Privileges
Object-specic privileges control operations on specic types of inventory objects. Roles that contain object-
specic privileges can be applied to access groups.
Table 6-8 describes the object-specic privileges. The predened roles Administrators and Inventory
Administrators contain all of these privileges.
Table 68. Object-Specific Privileges
Privilege User Capabilities Object
Enable Farms and Desktop
Pools
Enable and disable desktop pools. Desktop pool, farm
Entitle Desktop and
Application Pools
Add and remove user entitlements. Desktop pool, application pool
Manage Composer Desktop
Pool Image
Resync, Refresh, and Rebalance linked-clone pools
and change the default pool image.
Desktop pool
Manage Machine Perform all machine and session-related operations. Machine
Manage Persistent Disks Perform all View Composer persistent disk
operations, including aaching, detaching, and
importing persistent disks.
Persistent disk
Manage Farms and
Desktop and Application
Pools
Add, modify, and delete farms. Add, modify, delete,
and entitle desktop and application pools. Add and
remove machines.
Desktop pool, application pool,
farm
Manage Sessions Disconnect and log o sessions and send messages to
users.
Session
Manage Reboot Operation Reset virtual machines or restart virtual desktops. Machine
Internal Privileges
Some of the predened administrator roles contain internal privileges. You cannot select internal privileges
when you create custom roles.
Table 6-9 describes the internal privileges and lists the predened roles that contain each privilege.
Table 69. Internal Privileges
Privilege Description Predefined Roles
Full (Read only) Grants read-only access to all seings. Administrators (Read only)
Manage Inventory
(Read only)
Grants read-only access to inventory objects. Inventory Administrators (Read only)
Manage Global
 and
Policies (Read only)
Grants read-only access to conguration
seings and global policies except for
administrators and roles.
Global Conguration and Policy
Administrators (Read only)
View Administration
112 VMware, Inc.