Many tasks require permissions on more than one object in the inventory. You can review the privileges required to perform the tasks and, where applicable, the appropriate sample roles.
The following table lists common tasks that require more than one privilege. You can use the Applicable Roles on the inventory objects to grant permission to perform these tasks, or you can create your own roles with the equivalent required privileges.
Task | Required Privileges | Applicable Role |
---|---|---|
Create a virtual machine | On the destination folder or datacenter:
|
Administrator |
On the destination host, cluster, or resource pool:
|
Resource pool administrator or Administrator | |
On the destination datastore or folder containing a datastore:
|
Datastore Consumer or Administrator | |
On the network that the virtual machine will be assigned to:
|
Network Consumer or Administrator | |
Power on a virtual machine | On the data center in which the virtual machine is deployed:
|
Virtual Machine Power User or Administrator |
On the virtual machine or folder of virtual machines:
|
||
Deploy a virtual machine from a template | On the destination folder or datacenter:
|
Administrator |
On a template or folder of templates:
|
Administrator | |
On the destination host, cluster or resource pool:
|
Administrator | |
On the destination datastore or folder of datastores:
|
Datastore Consumer or Administrator | |
On the network that the virtual machine will be assigned to:
|
Network Consumer or Administrator | |
Take a virtual machine snapshot | On the virtual machine or a folder of virtual machines:
|
Virtual Machine Power User or Administrator |
Move a virtual machine into a resource pool | On the virtual machine or folder of virtual machines:
|
Administrator |
On the destination resource pool:
|
Administrator | |
Install a guest operating system on a virtual machine | On the virtual machine or folder of virtual machines:
|
Virtual Machine Power User or Administrator |
On a datastore containing the installation media ISO image: (if installing from an ISO image on a datastore) On the datastore to which you upload the installation media ISO image: |
Virtual Machine Power User or Administrator | |
Migrate a virtual machine with vMotion | On the virtual machine or folder of virtual machines:
|
Resource Pool Administrator or Administrator |
On the destination host, cluster, or resource pool (if different from the source):
|
Resource Pool Administrator or Administrator | |
Cold migrate (relocate) a virtual machine | On the virtual machine or folder of virtual machines:
|
Resource Pool Administrator or Administrator |
On the destination host, cluster, or resource pool (if different from the source):
|
Resource Pool Administrator or Administrator | |
On the destination datastore (if different from the source):
|
Datastore Consumer or Administrator | |
Migrate a virtual machine with Storage vMotion | On the virtual machine or folder of virtual machines:
|
Resource Pool Administrator or Administrator |
On the destination datastore:
|
Datastore Consumer or Administrator | |
Move a host into a cluster | On the host:
|
Administrator |
On the destination cluster:
|
Administrator |