7.0

Table Of Contents
IaaS Administrator
IaaS administrators manage cloud, virtual, networking, and storage infrastructure at the system level,
creating and managing endpoints and credentials, and monitoring IaaS logs. IaaS administrators organize
infrastructure into tenant-level fabric groups, appointing the fabric administrators who are responsible for
allocating resources within each tenant through reservations and reservation, storage, and networking
policies.
System-Wide Roles and Responsibilities
Users with system-wide roles manage configurations that can apply to multiple tenants. The system
administrator is only present in the default tenant, but you can assign IaaS administrators to any tenant.
Table 3. System-Wide Roles and Responsibilities
Role Responsibilities How Assigned
System Administrator
n
Create tenants.
n
Configure tenant identity stores.
n
Assign IaaS administrator role.
n
Assign tenant administrator role.
n
Configure system default branding.
n
Configure system default notification providers.
n
Monitor system event logs, not including IaaS logs.
n
Configure the vRealize Orchestrator server for use
with XaaS.
n
Create and manage (view, edit, and delete)
reservations across tenants if also a fabric
administrator.
Built-in administrator credentials are
specified when configuring single sign-on.
IaaS Administrator
n
Configure IaaS features, global properties.
n
Create and manage fabric groups.
n
Create and manage endpoints.
n
Manage endpoint credentials.
n
Configure proxy agents.
n
Manage Amazon AWS instance types.
n
Monitor IaaS-specific logs.
n
Create and manage (view, edit, and delete)
reservations across tenants if also a fabric
administrator.
The system administrator designates the
IaaS administrator when configuring a
tenant.
Tenant Role Overview
Tenant roles typically have responsibilities that are limited to a specific tenant, and cannot affect other
tenants in the system.
Foundations and Concepts
VMware, Inc. 17