Any active VMware Cloud Director user can access App Launchpad.

Service providers access the App Launchpad user interface from the VMware Cloud Director service provider admin portal. Tenant users access the App Launchpad user interface from the VMware Cloud Director tenant portal.

User Roles and Rights

The rights assigned to your user account in VMware Cloud Director define your user role in App Launchpad.

The following table lists App Launchpad roles and the associated VMware Cloud Director rights.

App Launchpad User Role Description VMware Cloud Director Rights and Roles
PROVIDER_ADMIN A service provider account that accesses App Launchpad from the VMware Cloud Director service provider admin portal. Accessing all service provider capabilities of App Launchpad, requires the VMware Cloud Director System Administrator role.
TENANT_USER A tenant user account that accesses App Launchpad from the VMware Cloud Director tenant portal. To deploy applications, the organization user must have the VMware Cloud Director vApp User role.
Following is a list of all VMware Cloud Director rights required to enable all capabilities of App Launchpad for tenant users:
  • UI Plugins: View
  • Organization: View
  • Organization vDC: View
  • Organization vDC Network: View Properties
  • Organization vDC Distributed Firewall: View Rules
  • Organization vDC Resource Pool: View
  • Organization Network: View
  • vApp: Power Operations
  • vApp: VM Boot Options
  • vApp: Use Console
App-Launchpad-Service This service role is used by the App Launchpad back-end system and contains all VMware Cloud Director rights related to the App Launchpad capabilities.

During the command-line configuration of App Launchpad with VMware Cloud Director, the alp connect script creates a service account user for the back end of App Launchpad if such account does not exist in VMware Cloud Director.

Later, during the initial configuration of App Launchpad through the VMware Cloud Director service provider admin portal, App Launchpad creates the service role named App-Launchpad-Service. App Launchpad assigns the role to the service account user that is created during the configuration of App Launchpad.

The App-Launchpad-Service role is automatically created and assigned with the following VMware Cloud Director rights:
  • Access All Organization VDCs
  • Adopt Resource Pool: View
  • Catalog: Add vApp from My Cloud
  • Catalog: CLSP Publish Subscribe
  • Catalog: Create / Delete a Catalog
  • Catalog: Edit Properties
  • Catalog: Shadow VM View
  • Catalog: VCSP Publish Subscribe Caching
  • Catalog: View ACL
  • Catalog: View Published Catalogs
  • Catalog: View Private and Shared Catalogs
  • Datastore: View
  • Disk: View Properties
  • General: Administrator View
  • General: View Error Details
  • Global Role: View
  • Group / User: View
  • Host: View
  • Multisite: System Operations
  • Organization: View
  • Organization: view metrics
  • Organization: Edit Properties
  • Organization: Perform Administrator Queries
  • Organization vDC: View
  • Organization vDC Network: View Properties
  • Organization vDC Network: View
  • Organization vDC Distributed Firewall: View Rules
  • Organization vDC Compute Policy: View
  • Organization vDC Compute Policy: Admin View
  • Organization vDC Resource Pool: View
  • Organization vDC: Extended View
  • Organization vDC Gateway: View
  • Organization vDC Gateway: View NAT
  • Organization Network: View
  • Provider Network: View
  • Resource Pool: Open
  • Resource Pool: View
  • Right: View
  • Site: View
  • Stranded Item: View
  • System Settings: View
  • System Organization: View
  • Task: View Tasks
  • Task: Update
  • Task: Resume, Abort, or Fail
  • UI Plugins: View
  • UI Plugins: Define, Upload, Modify, Delete, Associate or Disassociate
  • vApp Template: Open in vSphere
  • vApp Template: Checkout
  • vApp Template: Import
  • vApp Template: Download
  • vApp Template / Media: View
  • vApp Template / Media: Copy
  • vApp Template / Media: Edit
  • vApp Template / Media: Create / Upload
  • vApp: Open in vSphere
  • vApp: Change Owner
  • vApp: Download
  • vApp: Upload
  • vApp: Copy
  • vApp: Import Options
  • vApp: Create / Reconfigure
  • vApp: Edit Properties
  • vApp: Edit VM CPU
  • vApp: Edit VM Memory
  • vApp: Edit VM Network
  • vApp: Edit VM Compute Policy
  • vApp: Edit VM Hard Disk
  • vApp: Edit VM CPU and Memory reservation settings in all VDC types
  • vApp: View ACL
  • vApp: Power Operations
  • vApp: VM Boot Options
  • vApp: View VM metrics
  • vApp: Shadow VM View
  • vApp: Sharing
  • vApp: Use Console
  • vApp: Delete
  • vCenter: View
  • vSphere Server: View
  • Custom entity: View custom entity definitions
  • External Service: View
  • vmware:tkgcluster: Administrator View
  • vmware:tkgcluster: View
  • cse:nativeCluster: Administrator View
  • cse:nativeCluster: View