VMware vSphere Lifecycle Manager Manage Patches and Upgrades privileges control the ability to view, scan, and remediate applicable patches, extensions, or upgrades.

You can set this privilege at different levels in the hierarchy. For example, if you set a privilege at the folder level, you can propagate the privilege to one or more objects within the folder. The object listed in the Required On column must have the privilege set, either directly or inherited.

Table 1. VMware vSphere Lifecycle Manager Manage Patches and Upgrades Privileges
Privilege Name in the vSphere Client Description Required On Privilege Name in the API
  • Manage Patches and Upgrades
    • Remediate to Apply Patches, Extensions, and Upgrades
    • Scan for Applicable Patches, Extensions, and Upgrades
    • Stage Patches and Extensions
    • View Compliance Status
Remediate to Apply Patches, Extensions, and Upgrades allows remediation of virtual machines and hosts to apply patches, extensions, or upgrades when you are using baselines. In addition, this privilege allows viewing the compliance status.

Scan for Applicable Patches, Extensions, and Upgrades allows scanning virtual machines and hosts to search for applicable patches, extensions, or upgrades when you are using baselines.

Stage Patches and Extensions allows staging patches or extensions to ESXi hosts when you are using baselines. In addition, this privilege allows viewing the compliance status of ESXi hosts.

View Compliance Status allows viewing the baseline compliance information for an object in the vSphere inventory.

Root vCenter Server

VcIntegrity.Updates.com.vmware.vcIntegrity.Remediate

VcIntegrity.Updates.com.vmware.vcIntegrity.Scan

VcIntegrity.Updates.com.vmware.vcIntegrity.Stage

VcIntegrity.Updates.com.vmware.vcIntegrity.ViewStatus