Aria Operations 8.x
Insufficient privileges at the root level in vCenter Server causes user login failure.
Follow the steps to create a new custom role with minimum privileges to allow the user to get it mapped to the corresponding Aria Operations role.
1. Log in to the vCenter server with a local SSO user or Administrator.
2. Go to Administration > Access Control > Roles, then click NEW to create a new custom role.
3. Search vRealize Operations Read Only Role and select vRealize Operations Power User without Remediation actions Role. Then click CREATE.
4. Follow the steps below to assign this newly created role to the users in the issue at the root level in the vCenter server.
(1) Make sure a group is created for these users. If no group is created, create one by going to Administration > Single Sign On > Users and Groups.
(2) Click on Groups tab, then click CREATE GROUP as shown below. Give the group a name. Make sure you select the correct domain. Then, search and add the users to this group. Then click DONE.
(3) Go to Administration > Access Control > Global Permissions. Then click ADD. Select the correct Domain, User/Group, and Role from the drop-down list. Check Propagate to children. Then click OK.
5. Now, the users in this group should be able to log in to Aria Operations.
There are some limitations regarding All vCenter Server Users. Please see details in vCenter Server Users in VMware Aria Operations