To support both clone types (instant and full ), the vCenter Server user must have listed permissions required by Omnissa Horizon Cloud.
Minimum vCenter Server Privileges Required for the Horizon Cloud Administrator Role with Instant Clones| Privilege Group on vCenter Server | Privileges to Enable |
|---|
| Alarms | Disable or enable alarm on entity |
| Cryptographic operations | The following privileges are required if you use instant clones VMs with a Trusted Platform Module (vTPM) device.
- Clone
- Decrypt
- Direct Access
- Encrypt
- Manage KMS
- Migrate
- Register Host
|
| Datastore |
- Allocate space
- Browse datastore
- Low level file operations
|
| Folder |
- Create folder
- Delete folder
|
| Global |
- Act as vCenter Server
- Disable methods
- Enable methods
- Manage custom attributes
- Set custom attribute
|
| Host |
In Configuration
In Inventory |
| Network | Assign network |
| Profile Driven Storage (vSphere 7.x and earlier) | (all--If you are using vSAN datastores or Virtual Volumes) |
| Resource |
Assign virtual machine to resource pool |
| Storage views | Not required |
| Virtual machine |
In Change Configuration (all)
- Acquire disk lease
- Add existing disk
- Add new disk
- Add or remove device
- Advanced configuration
- Change CPU count
- Change memory
- Change resource
- Change settings
- Change swapfile placement
- Configure Host USB device
- Configure managedBy
- Configure Raw device
- Display connection settings
- Extend virtual disk
- Modify device settings
- Query Fault Tolerance compatibility
- Query unowned files
- Reload from path
- Remove disk
- Rename
- Reset guest information
- Set annotation
- Toggle disk change tracking
- Toggle fork parent
- Upgrade virtual machine compatibility
In Edit Inventory:
- Create from existing
- Create new
- Move
- Register
- Remove
- Unregister
In Interaction:
- Connect devices
- Perform wipe or shrink operations
- Power off
- Power on
- Reset
- Suspend
In Provisioning:
- Allow disk access
- Clone template
- Clone Virtual Machine
- Customize
- Deploy template
- Promote Disk
- Read customization specifications
In Snapshot management
- Create snapshot
- Remove snapshot
- Rename snapshot
- Revert snapshot
|
| VM storage policies (vSphere 8.x and later) |
- Update VM storage policies
- View VM storage policies
|
| vSphere Tagging |
- Assign or Unassign vSphere Tag
- Assign or Unassign vSphere Tag on Object
- Create vSphere Tag
- Create vSphere Tag Category
- Delete vSphere Tag
- Delete vSphere Tag Category
|
| vApp |
- Create
- Clone
- Import
- View OVF environment
|