VMware vCenter Server privileges: replication using Resiliency Platform Data Mover in Hypervisor mode
To use Veritas Resiliency Platform Data Mover with VMware vCenter Server for replication to on-premises data center, the vCenter Server user needs to have a role assigned that has the privileges listed in the table, on the vCenter server data center level.
Review the following considerations before assigning the privileges:
You need to maintain propagation of these data center level privileges on the child objects.
The child objects should not restrict the data center level privileges.
Table: VMware vCenter Server privileges required for performing operations on veritas replication VIB
Operation | Privilege | Navigation path in VMware vCenter Server |
|---|---|---|
Installation | Host.Cim.CimInteraction Host.Config.Maintenance Host.Config.Patch Profile.Create StorageProfile.Update StorageProfile.View | Host > CIM > CIM interaction Host > Configuration > Maintenance Host > Configuration > Query patch Host profile > Create Profile-driven storage > Profile-driven storage update Profile-driven storage > Profile-driven storage view |
Resolve installation errors | Host.Cim.CimInteraction Host.Config.Maintenance | Host > CIM > CIM interaction Host > Configuration > Maintenance |
Upgrade | Host.Cim.CimInteraction Host.Config.Maintenance Host.Config.Patch Profile.Create StorageProfile.Update StorageProfile.View | Host > CIM > CIM interaction Host > Configuration > Maintenance Host > Configuration > Query patch Host profile > Create Profile-driven storage > Profile-driven storage update Profile-driven storage > Profile-driven storage view |
Uninstallation | Host.Config.Patch Host.Config.Maintenance | Host > Configuration > Query patch Host > Configuration > Maintenance |
Table: VMware vCenter Server privileges required for using Resiliency Platform Data Mover for replication using Resiliency Platform Data Mover in Hypervisor mode
Privilege | Navigation path in VMware vCenter Server |
|---|---|
Datastore.AllocateSpace Datastore.FileManagement Datastore.Browse | Datastore > Allocate space Datastore > Browse datastore Datastore > Low level file operations |
Host.Cim.CimInteraction | Host > CIM > CIM interaction |
Host.Config.Network Host.Config.Storage Host.Config.Maintenance Host.Config.NetService | Host > Configuration > Network configuration Host > Configuration > Storage partition configuration Host > Configuration > Maintenance Host > Configuration > Security profile and firewall |
Profile.Create | Host profile > Create |
Network.Assign | Network > Assign network |
StorageProfile.Update StorageProfile.View | Profile-driven storage > Profile-driven storage update Profile-driven storage > Profile-driven storage view |
StoragePod.Config | DatastoreCluster > Configure Datastore Cluster |
Resource.ApplyRecommendation Resource.AssignVMToPool | Resource > Apply recommendation Resource > Assign virtual machine to resource pool |
System.Anonymous System.Read System.View | These privileges need not be set explicitly. |
VirtualMachine.Config.AddExistingDisk VirtualMachine.Config.AddNewDisk VirtualMachine.Config.AddRemoveDevice VirtualMachine.Config.AdvancedConfig VirtualMachine.Config.Resource VirtualMachine.Config.EditDevice VirtualMachine.Config.RawDevice VirtualMachine.Config.RemoveDisk VirtualMachine.Config.Rename VirtualMachine.Config.Settings VirtualMachine.Config.ExtendDisk | Virtual machine > Configuration > Add existing disk Virtual machine > Configuration > Add new disk Virtual machine > Configuration > Add or remove device Virtual machine > Configuration > Advanced Virtual machine > Configuration > Change resource Virtual machine > Configuration > Modify device settings Virtual machine > Configuration > Raw device Virtual machine > Configuration > Remove disk Virtual machine > Configuration > Rename Virtual machine > Configuration > Settings Virtual machine > Configuration >Extend Virtual Disk |
VirtualMachine.GuestOperations.Modify VirtualMachine.GuestOperations.Execute VirtualMachine.GuestOperations.Query | Virtual machine > Guest operations > Guest operation modifications Virtual machine > Guest operations > Guest operation program execution Virtual machine > Guest operations > Guest operation queries |
VirtualMachine.Interact.DeviceConnection VirtualMachine.Interact.PowerOff VirtualMachine.Interact.PowerOn Virtual machine.Interaction.Configure CD media | Virtual machine > Interaction > Device connection Virtual machine > Interaction > Power off Virtual machine > Interaction > Power on Virtual Machine > Interaction > Configure CD |
VirtualMachine.Inventory.CreateFromExisting VirtualMachine.Inventory.Create VirtualMachine.Inventory.Register VirtualMachine.Inventory.Delete VirtualMachine.Inventory.Unregister | Virtual machine > Inventory > Create from existing Virtual machine > Inventory > Create new Virtual machine > Inventory > Register Virtual machine > Inventory > Remove Virtual machine > Inventory > Unregister |
VirtualMachine.Provisioning.Clone VirtualMachine.Provisioning.Customize | Virtual machine > Provisioning > Clone virtual machine Virtual machine > Provisioning > Customize |
VirtualMachine.State.CreateSnapshot VirtualMachine.State.RemoveSnapshot | Virtual machine > Snapshot management > Create snapshot Virtual machine > Snapshot management > Remove snapshot |
VApp.InstanceConfig VApp.ApplicationConfig | vApp > vApp instance configuration vApp > vApp application configuration |
In addition to the above privileges, you also need the privileges required for configuring ESX servers:
See VMware vCenter Server privileges: configuring ESX servers .
More Information