VCP-VMC 2024 Question 217
Single answerA VMware Cloud Administrator is tasked with creating a new user account for a team member who will only need read-only access to the VMware Cloud environment. Which role should the administrator assign to ensure the user has the appropriate permissions?
- A
Organization Owner
- B
Organization Member
- C
Service Role Administrator
- D
Read-Only Role
Show answer and explanation
Correct answer: D
Explanation
To meet the requirement of providing a user with read-only access to the VMware Cloud environment, the 'Read-Only Role' is the appropriate role to assign. This role ensures the user can view configurations and settings without the ability to modify or manage resources, aligning with the principle of least privilege.
- A. Incorrect.
The 'Organization Owner' role provides full access to manage the VMware Cloud environment, including administrative tasks, which exceeds the read-only requirement.
- B. Incorrect.
The 'Organization Member' role allows access to certain features but does not restrict permissions to a read-only level. This role is not suitable for a user requiring only read access.
- C. Incorrect.
The 'Service Role Administrator' is responsible for managing roles and permissions for services within the organization, which is not aligned with the read-only access requirement.
- D. Correct.
The 'Read-Only Role' is specifically designed to provide view-only access to the VMware Cloud environment, making it the correct choice for this scenario.