VMware VC-VLM4-C User Guide - Page 149

Roles and Rights, Predefined Roles, Datastore Rights

Page 149 highlights

A Roles and Rights A vCenter Lab Manager applies roles and rights to determine which users and groups can perform which operations. See "Managing Users, Groups, and Roles" on page 109 for information on predefined roles, creating roles, and assigning rights to roles. See "Create an Organization" on page 27 for information on assigning roles to users and groups. In addition, when users share an object that they own (for example, a virtual machine template or configuration), they can specify a level of access rights. Access rights combine with the rights of a user's role to determine how a user can interact with shared objects. Access rights cannot provided users with rights that they do not already have based on their role. Predefined Roles This appendix includes information about the rights assigned to Lab Manager's predefined roles and how access rights affect users who work with shared objects. The Lab Manager predefined roles are:  System Administrator  Administrator The system administrator can assign the administrator role rights at the organization or workspace level.  Template Creator  Application Owner  User  View Only Datastore Rights By default, only system administrators can create, delete, and edit datastores. The create right is required to add a datastore to an organization. Other users can access datastores that are added to their organization as resources. Table A-1. Datastore Rights for Predefined Roles System Administrator Administrator Template Creator Application Owner User View Only Delete X Edit Properties X VMware, Inc. 149

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180

VMware, Inc.
149
A
vCenter Lab Manager applies roles and rights to determine which users and groups can perform which
operations. See
“Managing Users, Groups, and Roles”
on page 109 for information on predefined roles,
creating roles, and assigning rights to roles. See
“Create an Organization”
on page 27 for information on
assigning roles to users and groups.
In addition, when users share an object that they own (for example, a virtual machine template or
configuration), they can specify a level of access rights. Access rights combine with the rights of a user’s role
to determine how a user can interact with shared objects. Access rights cannot provided users with rights that
they do not already have based on their role.
Predefined Roles
This appendix includes information about the rights assigned to Lab Manager’s predefined roles and how
access rights affect users who work with shared objects.
The Lab Manager predefined roles are:
System Administrator
Administrator
The system administrator can assign the administrator role rights at the organization or workspace level.
Template Creator
Application Owner
User
View Only
Datastore Rights
By default, only system administrators can create, delete, and edit datastores. The create right is required to
add a datastore to an organization. Other users can access datastores that are added to their organization as
resources.
Roles and Rights
A
Table A-1.
Datastore Rights for Predefined Roles
Delete
Edit Properties
System Administrator
X
X
Administrator
Template Creator
Application Owner
User
View Only