
Authenticating and Managing Users,
Roles, and Permissions 4
vCenter Chargeback provides user management features that enable you to manage the various users, roles,
and permissions defined in the application. The application defines various permissions and also provides
some predefined roles. In addition, it lets you create new roles and users as per your requirements.
Starting with vCenter Chargeback 1.5, the application defines resource-based authorization.
This chapter includes the following topics:
n
“Resource Based Authorization in vCenter Chargeback,” on page 59
n
“Permissions Defined in vCenter Chargeback,” on page 60
n
“Managing Roles,” on page 61
n
“Managing Users,” on page 66
n
“vCenter Chargeback User Authentication,” on page 73
Resource Based Authorization in vCenter Chargeback
vCenter Chargeback defines various resource types and authorizes access to a resource on the basis of the role
assigned to a user.
Table 4-1 lists the various resource types defined in vCenter Chargeback.
Table 4-1. Resource Types Defined in vCenter Chargeback
Resource Type Description
VMware vCenter Server This resource type refers to the vCenter Server instances added to vCenter Chargeback. A user
must have read permission on a vCenter Server to read its entities and add them to a
chargeback hierarchy.
Data Collector This resource type refers to data collectors registered withe vCenter Chargeback. Only a super
user has all permissions on this resource type. A user with the Administrator role has only
read permission on this resource type.
LDAP Server This resource type refers to the LDAP servers configured in vCenter Chargeback. An LDAP
user, by default, has read permission on the corresponding LDAP server.
SMTP Server This resource type refers to the SMTP server configured in vCenter Chargeback. Only a super
user has all permissions on this resource type.
Chargeback Hierarchy This resource type refers to the hierarchies created in vCenter Chargeback. A user must have
read permission on a chargeback hierarchy to access the hierarchy.
Chargeback Hierarchical
Entity
This resource type refers to any entity created or added to an hierarchy in vCenter Chargeback.
A user must have read permission on the entity and the corresponding hierarchy to access it.
VMware, Inc. 59
Comentarios a estos manuales