Error: "Unable to login because you do not have permission on any vCenter Server systems connected to this client" when logging into vCenter using ADFS group
book
Article ID: 404111
calendar_today
Updated On:
Products
VMware vCenter Server
Issue/Introduction
When attempting to log into a vCenter configured with ADFS as its identity provider, users from a defined group are failing to log in with the error:
"Unable to login because you do not have permission on any vCenter Server systems connected to this client"
Error may occur after rotating the client secret between the ADFS and vCenter
Investigating the /var/log/vmware/sso/tokenservice.log of the vCenter will show results similar to the following: