if I give this at Host and Cluster or Datacenter level then he will be able to access all the VM's in Virtual infracture. If I give VM Administrator access at cluster level then same problem not able to create new VM's on that cluster.
So you say that at "root" level it works.
At single cluster level it doesn't work?
If you create a permission at a low level you have to set at least a permission (like read only) at root level, just to see the tree.
Andre
**if you found this or any other answer useful please consider allocating points for helpful or correct answers