Prerequisites
Before you begin, ensure you can access the vCenter Server with administrative privileges.
Overview
In some scenarios, users require a read-only SSO account to collect data from their vCenter. This article provides the steps to create a read-only account for the vCenter's SSO domain.
Procedure
Log in to the vSphere Client: Open the vSphere Client and log in to your vCenter Server using an account with administrative privileges.
Access the Administration Page: From the Home menu, select Administration.
Navigate to Single Sign-On: Under the Administration page, click on Single Sign-On > Users and Groups.
Create a New User: Click the Users tab and then the Add User button. Fill in the required details, such as the username and password.
Assign Read-Only Role: After creating the user, you need to assign the read-only role to this user. To do this, navigate to Roles under Administration. Find the Read-Only role, select it, and then click on Add Permission. In the opened window, add the newly created user and click OK.
Verify the User’s Permissions: To verify that the user has been assigned the read-only role, you can log out of the vSphere Client and then log back in using the new user’s credentials. You should be able to view configurations but not make any changes.