6.5.1

Table Of Contents
Defined Privileges 11
The following tables list the default privileges that, when selected for a role, can be paired with a user and
assigned to an object. The tables in this appendix use VC to indicate vCenter Server and HC to indicate
host client, a standalone ESXi or Workstation host.
When setting permissions, verify all the object types are set with appropriate privileges for each particular
action. Some operations require access permission at the root folder or parent folder in addition to access
to the object being manipulated. Some operations require access or performance permission at a parent
folder and a related object.
vCenter Server extensions might define additional privileges not listed here. Refer to the documentation
for the extension for more information on those privileges.
This section includes the following topics:
n
Alarms Privileges
n
Auto Deploy and Image Profile Privileges
n
Certificates Privileges
n
Content Library Privileges
n
Cryptographic Operations Privileges
n
Datacenter Privileges
n
Datastore Privileges
n
Datastore Cluster Privileges
n
Distributed Switch Privileges
n
ESX Agent Manager Privileges
n
Extension Privileges
n
Folder Privileges
n
Global Privileges
n
Host CIM Privileges
n
Host Configuration Privileges
n
Host Inventory
VMware, Inc.
225