Okta user login in SDDC Manager fails with ‘Access Denied’.
search cancel

Okta user login in SDDC Manager fails with ‘Access Denied’.

book

Article ID: 311987

calendar_today

Updated On:

Products

VMware Cloud Foundation

Issue/Introduction

Okta user login in SDDC Manager fails with error ‘Access Denied’.

Environment

VMware Cloud Foundation 5.x

Resolution

The following is one of the workaround you can perform to recover from the access denied issue:

  1. Retrieve the correct Client Secret from your Okta app. Refer to the below article: https://developer.okta.com/docs/guides/find-your-app-credentials/main/

    OR
    Rotate the Client Secret. Refer to the following article:
    https://developer.okta.com/docs/guides/client-secret-rotation-key/main/

  2. Login to SDDC Manager as Administrator user and navigate to Administration > Single Sign On > Identity Provider and edit Okta IDP configuration by providing the Client Secret retrieved in step 1.                                 
  3. Login to vCenter server via SSH and run the following commands:

vmon-cli -r vsphere-ui

vmon-cli -r trustmanagement