"SystemForCrossDomainIdentityManagementCredentialValidationUnavailable", configuring SCIM provisioning for Entra ID fails with invalid credential
search cancel

"SystemForCrossDomainIdentityManagementCredentialValidationUnavailable", configuring SCIM provisioning for Entra ID fails with invalid credential

book

Article ID: 325784

calendar_today

Updated On:

Products

VMware vCenter Server 8.0

Issue/Introduction

  • Entra ID Identity Provider configuration on vCenter Server fails while applying SCIM Provisioning in Azure Portal.
  • SCIM Test Connection fails with error "You appear to have entered invalid credentials." and error code SystemForCrossDomainIdentityManagementCredentialValidationUnavailable




Cause

  • This issue is caused when Azure Portal is unable to contact the SCIM endpoint on vCenter Server. 
  • SCIM Test Connection fails if there are no connectivity from Azure cloud to internal vCenter Server FQDN through network tunnelling or using public VC FQDN. 

Resolution

Configure SCIM Provisioning using any of below Microsoft Agents if vCenter Server FQDN is not publicly accessible from Azure Cloud.

  1. Entra On-Prem Provisioning Agent
  2. Application Proxy in Microsoft Entra ID

Step by step guide to configure these agents are available in the attached PDF file on KB Configuring Microsoft Entra ID for vCenter Server.

Additional Information