VMware Cloud Community
Marc0p0l080
Contributor
Contributor
Jump to solution

how to create local vCenter user (not AD joined) equivalent of administrator@vsphere local

Hi,

We will be deploying a vCenter 7.0.3 VM with a 2 node ESXi cluster. It was easy to create local admin users in ESXi for our support staff, however I can't seem to find out how to assign the "Administrators" role to a new user in vCenter. Can you please advise? The VMware 7.x documentation does not help. I'm looking for a way to do it via vSphere Web Client.

thanks,

Marcus

 

 

 

Labels (3)
0 Kudos
1 Solution

Accepted Solutions
IRIX201110141
Champion
Champion
Jump to solution

This is a two step procedure

  1. As adminstrator@vsphere.local select Administration from the upper left menu and under SSO->Users & Group you can create a user by selecting the vsphere.local identity source. The "add" will highlight than.
  2. You need to grand permission to the user by going back to the inventory (Hosts for example) and click on the level you want (most likely on top most one.. vCenter. In the middle of the page you will see the "Permission". There you can select the identity source again an searching for your use.  Select the needed role and dont forget to click the checkbox " Propagate to children ".

Note: There is a administrator role or also "non-c*r*y*p*to-administrator" but even when you select those groups it will not have the same 100% rights as the "administrator@vsphere.local".

Regards,
Joerg

View solution in original post

2 Replies
IRIX201110141
Champion
Champion
Jump to solution

This is a two step procedure

  1. As adminstrator@vsphere.local select Administration from the upper left menu and under SSO->Users & Group you can create a user by selecting the vsphere.local identity source. The "add" will highlight than.
  2. You need to grand permission to the user by going back to the inventory (Hosts for example) and click on the level you want (most likely on top most one.. vCenter. In the middle of the page you will see the "Permission". There you can select the identity source again an searching for your use.  Select the needed role and dont forget to click the checkbox " Propagate to children ".

Note: There is a administrator role or also "non-c*r*y*p*to-administrator" but even when you select those groups it will not have the same 100% rights as the "administrator@vsphere.local".

Regards,
Joerg

Marc0p0l080
Contributor
Contributor
Jump to solution

Thank you! That's all I needed.

0 Kudos