Default system.view privilege overrides the custom privileges for non administrators userssystem.view
search cancel

Default system.view privilege overrides the custom privileges for non administrators userssystem.view

book

Article ID: 320029

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

This article explains the default system.view permission for the non-administrator users.

Resolution

when a user is assigned to a custom role at cluster object level for svMotion and does not have the privilege to view all the datastores, the datastores get listed for Storage Migration includes all the datastores mapped to the host although the user does not have permission to see the datastores. This is due to the user gets System.View permission by default at vCenter level in VMware vCenter Server 6.x. 

This is working as per the design and can not be modified.

Additional Information

Minimum required permissions for Storage vMotion (1011345)