Administration

Table Of Contents
Table 66. Predefined Roles in Horizon Administrator (Continued)
Role User Capabilities
Applies to an Access
Group
Help Desk Administrators
(Read Only)
View user and session information, and drill down on session details.
n
Read-only access to Horizon Help Desk Tool.
n
Cannot log in to Horizon Administrator.
No
Inventory Administrators
n
Perform all machine, session, and pool-related operations.
n
Manage persistent disks.
n
Resync, Refresh, and Rebalance linked-clone pools and change
the default pool image.
When administrators have this role on an access group, they can only
perform these operations on the inventory objects in that access group.
Yes
Inventory Administrators (Read
only)
View, but not modify, inventory objects.
When administrators have this role on an access group, they can only
view the inventory objects in that access group.
Yes
Local Administrators Perform all local administrator operations, except for creating
additional administrator users and groups. In a Cloud Pod Architecture
environment, administrators that have this role cannot perform
operations on the Global Data Layer or manage sessions on remote
pods.
Note An administrator with the Local Administrators role cannot
access Horizon Help Desk Tool. Administrators in a non-CPA
environment do not have the Manage Global Sessions privilege, which
is required to perform tasks in Horizon Help Desk Tool.
Yes
Local Administrators (Read
Only)
Same as the Administrators (Read Only) role, except for viewing
inventory objects and settings in the Global Data Layer. Administrators
that have this role have read-only rights only on the local pod.
Note An administrator with the Local Administrators (Read Only) role
cannot access Horizon Help Desk Tool. Administrators in a non-CPA
environment do not have the Manage Global Sessions privilege, which
is required to perform tasks in Horizon Help Desk Tool.
Yes
Global Privileges
Global privileges control system-wide operations, such as viewing and changing global settings. Roles
that contain only global privileges cannot be applied to access groups.
Table 67 describes the global privileges and lists the predefined roles that contain each privilege.
View Administration
VMware, Inc. 129