Knowledge Base
The VMware Knowledge Base provides support solutions, error messages and troubleshooting guides

|
User without delete privileges can remove datastore and groups from Lab Manager (2002254)
Details
A user with a custom role can delete datastores and groups even if the Datastore: Delete and Group: Delete privileges are not set on the custom role.
Solution
The Organization: Edit Resource and Organization: Edit Membership privileges are required to remove datastores and groups from non-global organizations. The Datastore: Delete and Group: Delete privileges are required to remove datastores and groups from global organizations.
To ensure that a user cannot delete datastores and groups, you must not be set the following privileges on the custom role assigned to the user:
- Organization: Edit Membership
- Organization: Edit Resource
Request a Product Feature
To request a new product feature or to provide feedback on a VMware product, please visit the Request a Product Feature page.
Actions
KB:
- Updated:
- Categories:
- Languages:
- Product Family:
- Product(s):
- Product Version(s):

