6.7

Table Of Contents
Table 1322. Permissions Privileges
Privilege Name Description Required On
Permissions.Modify
permission
Allows defining one or more permission rules on an entity, or updating
rules if rules are already present for the given user or group on the
entity.
To have permission to perform this operation, a user or group must
have this privilege assigned in both the object and its parent object.
Any object plus parent
object
Permissions.Modify
privilege
Allows modifying a privilege's group or description.
No vSphere Web Client user interface elements are associated with
this privilege.
Permissions.Modify role Allows updating a role's name and the privileges that are associated
with the role.
Any object
Permissions.Reassign role
permissions
Allows reassigning all permissions of a role to another role. Any object
Profile-driven Storage Privileges
Profile-driven storage privileges control operations related to storage profiles.
You can set this privilege at different levels in the hierarchy. For example, if you set a privilege at the
folder level, you can propagate the privilege to one or more objects within the folder. The object listed in
the Required On column must have the privilege set, either directly or inherited.
Table 1323. Profile-driven Storage Privileges
Privilege Name Description Required On
Profile-driven storage.Profile-
driven storage update
Allows changes to be made to storage profiles,
such as creating and updating storage capabilities
and virtual machine storage profiles.
Root vCenter Server
Profile-driven storage.Profile-
driven storage view
Allows viewing of defined storage capabilities and
storage profiles.
Root vCenter Server
Resource Privileges
Resource privileges control the creation and management of resource pools, as well as the migration of
virtual machines.
You can set this privilege at different levels in the hierarchy. For example, if you set a privilege at the
folder level, you can propagate the privilege to one or more objects within the folder. The object listed in
the Required On column must have the privilege set, either directly or inherited.
Table 1324. Resource Privileges
Privilege Name Description Required On
Resource.Apply recommendation Allows accepting a suggestion by the server to perform
a migration with vMotion.
Clusters
Resource.Assign vApp to resource
pool
Allows assignment of a vApp to a resource pool. Resource pools
vSphere Security
VMware, Inc. 257