6.0.3

Table Of Contents
Scheduled Task Privileges
Scheduled task privileges control creation, editing, and removal of scheduled tasks.
You can set this privilege at dierent levels in the hierarchy. For example, if you set a privilege at the folder
level, you can propagate the privilege to one or more objects within the folder. The object listed in the
Required On column must have the privilege set, either directly or inherited.
Table 1025. Scheduled Task Privileges
Privilege Name Description Required On
Scheduled task.Create tasks Allows scheduling of a task. Required in addition to the privileges to
perform the scheduled action at the time of scheduling.
Any object
Scheduled task.Modify task Allows reconguration of the scheduled task properties. Any object
Scheduled task.Remove task Allows removal of a scheduled task from the queue. Any object
Scheduled task.Run task Allows running the scheduled task immediately.
Creating and running a scheduled task also requires permission to
perform the associated action.
Any object
Sessions Privileges
Sessions privileges control the ability of extensions to open sessions on the vCenter Server system.
You can set this privilege at dierent levels in the hierarchy. For example, if you set a privilege at the folder
level, you can propagate the privilege to one or more objects within the folder. The object listed in the
Required On column must have the privilege set, either directly or inherited.
Table 1026. Session Privileges
Privilege Name Description Required On
Sessions.Impersonate user Allow impersonation of another user. This capability is used by
extensions.
Root vCenter Server
Sessions.Message Allow seing of the global log in message. Root vCenter Server
Sessions.Validate session Allow verication of session validity. Root vCenter Server
Sessions.View and stop
sessions
Allow viewing sessions and forcing log out of one or more logged-on
users.
Root vCenter Server
Storage Views Privileges
Storage Views privileges control privileges for Storage Monitoring Service APIs. Starting with vSphere 6.0,
storage views are deprecated and these privileges no longer apply to them.
You can set this privilege at dierent levels in the hierarchy. For example, if you set a privilege at the folder
level, you can propagate the privilege to one or more objects within the folder. The object listed in the
Required On column must have the privilege set, either directly or inherited.
Table 1027. Storage Views Privileges
Privilege Name Description Required On
Storage views. service Allows privileged users to use all Storage Monitoring
Service APIs. Use Storage views.View for privileges to
read-only Storage Monitoring Service APIs.
Root vCenter Server
Storage views.View Allows privileged users to use read-only Storage
Monitoring Service APIs.
Root vCenter Server
vSphere Security
270 VMware, Inc.