Pliant VMware VM Management Permissions Set Up

To use Pliant automation to deploy and manage VMs, the following minimum permissions should be configured for a Pliant service vCenter user role. Further permissions will be needed if VMware operations beyond VM creation and cloning will be performed with Pliant.  

The Pliant role should have the following privileges:

Datastore

  • Allocate space

Global

  • Cancel task

  • Manage custom attributes

  • Set custom attribute

Network

  • Assign network

Resource

  • Assign vApp to resource pool

  • Assign virtual machine to resource pool

  • Migrate powered off virtual machine

  • Migrate powered on virtual machine

  • Query vMotion

Virtual machine

  • All Virtual machine Privileges                            

The Pliant user should be assigned the above role on these objects:

  • Datacenter (propagation not required)

  • Cluster and/or host (propagation required)

  • Datastore(s)/ Datastore Clusters (propagation required)

  • Network(s)/Network Groups  (propagation required)

For Content Library access, the Pliant user will need to be assigned a Content Library role at the global level. (https://docs.vmware.com/en/VMware-vSphere/6.5/com.vmware.vsphere.vm_admin.doc/GUID-18F4B892-D685-4473-AC25-3195D68DFD90.html )