6.0.3

Table Of Contents
Table 1035. Virtual Machine State Privileges
Privilege Name Description Required On
Virtual machine.Snapshot
management. Create
snapshot
Allows creation of a snapshot from the virtual machine’s current state. Virtual machines
Virtual machine.Snapshot
management.Remove
Snapshot
Allows removal of a snapshot from the snapshot history. Virtual machines
Virtual machine.Snapshot
management.Rename
Snapshot
Allows renaming a snapshot with a new name, a new description, or
both.
Virtual machines
Virtual machine.Snapshot
management.Revert to
snapshot
Allows seing the virtual machine to the state it was in at a given
snapshot.
Virtual machines
Virtual Machine vSphere Replication Privileges
Virtual Machine vSphere replication privileges control the use of replication by VMware vCenter Site
Recovery Manager™ for virtual machines.
You can set this privilege at dierent levels in the hierarchy. For example, if you set a privilege at the folder
level, you can propagate the privilege to one or more objects within the folder. The object listed in the
Required On column must have the privilege set, either directly or inherited.
Table 1036. Virtual Machine vSphere Replication
Privilege Name Description Required On
Virtual machine.vSphere
Replication.
Replication
Allows conguration of replication for the virtual machine. Virtual machines
Virtual machine.vSphere
Replication.Manage
Replication
Allows triggering of full sync, online sync or oine sync on a
replication.
Virtual machines
Virtual machine.vSphere
Replication.Monitor
Replication
Allows monitoring of replication. Virtual machines
dvPort Group Privileges
Distributed virtual port group privileges control the ability to create, delete, and modify distributed virtual
port groups.
The table describes the privileges required to create and congure distributed virtual port groups.
You can set this privilege at dierent levels in the hierarchy. For example, if you set a privilege at the folder
level, you can propagate the privilege to one or more objects within the folder. The object listed in the
Required On column must have the privilege set, either directly or inherited.
Table 1037. Distributed Virtual Port Group Privileges
Privilege Name Description Required On
dvPort group.Create Allows creation of a distributed virtual port group. Virtual port groups
dvPort group.Delete Allows deletion of distributed virtual port group.
To have permission to perform this operation, a user or group must
have this privilege assigned in both the object and its parent object.
Virtual port groups
dvPort group.Modify Allows modication of a distributed virtual port group conguration. Virtual port groups
Chapter 10 Defined Privileges
VMware, Inc. 283