VMware vSphere privileges for agentless SFR privileges
This section outlines the privileges that are required for agentless Single File Restore (SFR) using different transport modes in VMware vSphere: NBD, hotadd, and SAN. The privileges that are indicated are specifically for restoring to the original location of the virtual machine (VM). These privileges need to be set at the vCenter server level.
The following privileges are necessary across all transport modes to perform agentless SFR operations within VMware vSphere.
Enable methods
Disable methods
Assign virtual machine to resource pool
Change configuration
Add existing disk
Add new disk
Add or remove device
Remove disk
Toggle disk change tracking
Edit inventory
Create new
Remove
Guest operations
Guest operation modifications
Guest operation program execution
Guest operation queries
Provisioning
Allow disk access
Allow read-only access
Allow virtual machine download
Snapshot management
Create snapshot
Remove snapshot