I am trying to migrate a single VMware VM from our on-prem, to azure. Following the instructions here, I created a local vcenter account named "azureanalyze" with permissions, as the aforementioned link says, Read-Only Guest Operations. I didn't find any pages where it told me to add additional permissions to this account saved in the appliance.
Discovery with the appliance went fine and I found my VM in the list. I began the replication process as described here. I noted the prereqs as follows:
Before you begin this tutorial, you should:
Complete the first tutorial to prepare Azure and VMware for migration. (done, the first link in my email)
We recommend that you complete the second tutorial to assess VMware VMs before migrating them to Azure, but you don't have to. (I did not do this; we knew what we wanted to migrate and simply went ahead with it)
Go to the already created project or create a new project
Verify permissions for your Azure account - Your Azure account needs permissions to create a VM, and write to an Azure managed disk. (my azure account subscription that my departmental admins made for me has full admin rights)
But then immediately, I get the following error:
Migration requirements could not be retrieved.
Provider error code: 31475 Provider error message: Insufficient permissions to start the replication. Following additional permissions are required to perform the operation: Datastore.Browse, Datastore.FileManagement, VirtualMachine.Config.ChangeTracking, VirtualMachine.Config.DiskLease, VirtualMachine.Provisioning.GetVmFiles, VirtualMachine.State.CreateSnapshot, VirtualMachine.State.RevertToSnapshot, VirtualMachine.State.RemoveSnapshot, VirtualMachine.State.RenameSnapshot, VirtualMachine.Interact.PowerOff, VirtualMachine.Provisioning.DiskRandomRead, VirtualMachine.Provisioning.DiskRandomAccess. Provider error possible causes: The vCenter Server account configured on the Azure Migrate appliance does not have sufficient permissions to perform the operation. Provider error recommended action: Set the permissions required for migration on the vCenter Server account, and retry the operation.
Migration couldn't be enabled for the machine. See the Provider errors for more information.
Resolve the issue and retry the operation. If the problem persists, contact support.
First Seen At
4/9/2021, 5:02:45 PM
The bolded error message for possible cause seems both odd, and understandable. AzureAnalyze account doesn't have those permissions, but why did the Azure instructions in the first link tell me to create an account with such limited permissions on vcenter if in the end I was going to need much more?