Configuring Project permissions for nested groups may fail for users logging in if these configurations were performed using the API
search cancel

Configuring Project permissions for nested groups may fail for users logging in if these configurations were performed using the API

book

Article ID: 381592

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

  • You have a specific User Group synchronized from Active Directory, for example, VM-####-DATABASE
    • You also have a global User Group titled <ARIA####-UserName> containing all these specific User Groups, but users are unable to access the system.
  • When users from this nested group attempt to login they receive Access Denied.
  • You may have added this configuration through an API call.

Environment

VMware Aria Automation 8.x

Resolution

  1. Remove the global group then re-add it again through the UI.
  2. Validate if the user can now access the project.

Note: If you add the groups via an API call, the group should have two domains similar to the example here: <ARIA####-UserName>@<yourdomain.com>@<yourdomain.com>