2.5

Table Of Contents
Authenticating and Managing Users,
Roles, and Permissions 3
vCenter Chargeback Manager provides user management features that enable you to manage the various users,
roles, and permissions defined in the application.
vCenter Chargeback Manager provides resource-based authorization. The application defines different
permissions for each resource. The application also provides few predefined roles. In addition, you can create
new roles and users as per your requirements.
This chapter includes the following topics:
n
“Resource Based Authorization in vCenter Chargeback Manager,” on page 37
n
“Permissions Defined in vCenter Chargeback Manager,” on page 38
n
“Managing Roles,” on page 39
n
“Managing Users,” on page 46
n
“vCenter Chargeback Manager User Authentication,” on page 54
Resource Based Authorization in vCenter Chargeback Manager
vCenter Chargeback Manager defines various resource types and authorizes access to a resource on the basis
of the role assigned to a user.
Table 3-1 lists the various resource types defined in vCenter Chargeback Manager.
Table 3-1. Resource Types Defined in vCenter Chargeback Manager
Resource Type Description
VMware vCenter Server This resource type refers to the vCenter Server instances added to vCenter Chargeback
Manager. A user must have read permission on a vCenter Server to read its entities and add
them to a chargeback hierarchy.
vCenter Server Entity This resource type refers to the entities in the vCenter Server hierarchy.
Data Collector This resource type refers to data collectors registered with vCenter Chargeback Manager. Only
a super user has all permissions on this resource type. A user with the Administrator role has
only read permission on this resource type.
LDAP Server This resource type refers to the LDAP servers configured in vCenter Chargeback Manager.
An LDAP user, by default, has read permission on the corresponding LDAP server.
SMTP Server This resource type refers to the SMTP server configured in vCenter Chargeback Manager.
Only a super user has all permissions on this resource type.
Chargeback Hierarchy This resource type refers to the hierarchies created in vCenter Chargeback Manager. A user
must have read permission on a chargeback hierarchy to access the hierarchy.
VMware, Inc. 37