Checking the vSphere user privileges

The following user privileges are required for the IBM® Storage Support for Microsoft VSS and VDS in a VMware environment:

  • Host > Configuration > Storage partition configuration
  • Virtual machine > Configuration > Raw device
  • Virtual machine > Configuration > Change resource
  • Virtual machine > Configuration > Add or remove device

If the IBM Storage Support for Microsoft VSS and VDS communicate with the vCenter server, you must assign the Read-Only role to the data center to which the VMware ESX(i) server belongs.

You can view the user privileges by accessing the vSphere client and selecting the Permissions tab. Role settings in the vCenter server list the roles and permissions for the vCenter server.
Figure 1. vSphere client - user privileges
This image illustrates the vSphere client - user privileges panel. The User/Group column has two entries: vssuser and Administrators. The vssuser role is set to vssrole, and the Administrators role is set to Administrator.

In Table 1, the vCenter client is ARCX3455GBXV3.

Table 1. Role settings in the vCenter server
Directory Role Description User Group Role Value
ARCX3455GBXV3 Role for vCenter server vssuser No access
ARCX3455GBXV3/test Role for data center vssuser Read-only
ARCX3455GBXV3/test/<IP address> Role for VMware ESX(i) Server vssuser vssrole
ARCX3455GBXV3/test/<IP address>/NewVirtual Machine Role for virtual machine vssuser vssrole
Note: In Role for data center, ensure the check-box Propogate is selected.