VMware: Document minimum vCenter user privileges

Bug #1272450 reported by Dan Florea
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openstack-manuals
Fix Released
Wishlist
Martin Lopes

Bug Description

The current documentation assumes root privileges for the vCenter user. The docs should instead list the minimum privileges needed. Below is the list:

All Privileges
   Datastore
      Allocate space
      Browse datastore
      Low level file operations
      Remove file
   Folder
      Create folder
   Host
      Configuration
         Maintenance
         Network configuration
         Storage partition configuration
   Network
      Assign network
   Resource
      Assign virtual machine to resource pool
      Migrate powered off virtual machine
      Migrate powered on virtual machine
   Virtual Machine
      Configuration
         Add existing disk
         Add new disk
         Add or remove device
         Advanced
         CPU count
         Disk change tracking
         Host USB device
         Memory
         Raw device
         Remove disk
         Rename
         Swapfile placement
      Interaction
         Configure CD media
         Power Off
         Power On
         Reset
         Suspend
     Inventory
         Create from existing
         Create new
         Move
         Remove
         Unregister
     Provisioning
        Clone virtual machine
        Customize
     Sessions
        View and stop sessions
     Snapshot management
         Create snapshot
         Remove snapshot
   vApp
     Export
     Import

Tags: vmware
Stephen Gordon (sgordon)
Changed in openstack-manuals:
importance: Undecided → Wishlist
status: New → Confirmed
Revision history for this message
Sabari Murugesan (smurugesan) wrote :

The doc should also mention on which root object the user should have these privileges. It should be mentioned that 'propagate to children' option be turned on while applying to the root object.

I think this list was prepared by assigning the privileges at the datacenter level.

Changed in openstack-manuals:
assignee: nobody → Martin Lopes (martinlopes)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to openstack-manuals (master)

Fix proposed to branch: master
Review: https://review.openstack.org/98957

Changed in openstack-manuals:
status: Confirmed → In Progress
Changed in openstack-manuals:
assignee: Martin Lopes (martinlopes) → Diane Fleming (diane-fleming)
Changed in openstack-manuals:
assignee: Diane Fleming (diane-fleming) → Martin Lopes (martinlopes)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to openstack-manuals (master)

Reviewed: https://review.openstack.org/98957
Committed: https://git.openstack.org/cgit/openstack/openstack-manuals/commit/?id=e7ad7b8f2f8bb9ce3876b92ba67e17944f5c72a5
Submitter: Jenkins
Branch: master

commit e7ad7b8f2f8bb9ce3876b92ba67e17944f5c72a5
Author: Martin Lopes <email address hidden>
Date: Tue Jun 10 15:57:51 2014 +1000

    Documents vCenter service account requirements

    Adds details of required vCenter privileges, and how to allocate
    them appropriately.
    Made some additional edits - diane fleming

    Change-Id: Icc7bdb6bde4844d3c65af10dca711dc38c8a13e6
    Closes-Bug: 1272450

Changed in openstack-manuals:
status: In Progress → Fix Released
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix included in openstack/openstack-manuals 15.0.0

This issue was fixed in the openstack/openstack-manuals 15.0.0 release.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.