Required privileges to allow users to see Namespaces on vCenter
search cancel

Required privileges to allow users to see Namespaces on vCenter

book

Article ID: 417756

calendar_today

Updated On:

Products

VMware vSphere Kubernetes Service

Issue/Introduction

Users are unable to see the Namespaces object in the vCenter Host & Clusters view.

Environment

vSphere Kubernetes Service 8

Resolution

Before performing the following steps, verify if user(s) can perform their duties by going to the vSphere Client menu > Supervisor Management. From here they should be able to view the namespaces that they have been given access to. The steps below may provide the users with more access than needed. 

Add the required users need to the <SSO_DOMAIN>\ServiceProviderUsers group by:

  1. Going to vSphere Client menu > Administration > Single Sign On > Users and Groups 
  2. Select the Groups tab
  3. In the Find field, enter ServiceProviderUsers and press Enter
  4. Select ServiceProviderUsers under the Group Name column
  5. Select Edit
  6. In the Search field to the right of Add a member, enter the user(s) you want to give access to the Namespace object
  7. Verify that they appear under Current members
  8. Select Save

Give the user(s) the Read-only Global Permission by:

  1. Going to vSphere Client menu > Administration > Access Control > Global Permissions
  2. Select Add 
  3. Enter the user(s) name in the User/Group search field
  4. Select Read-only for the Role field
  5. Check Propagate to children