ESXi Host Fails to Connect to vCenter with error: “Access to perform the operation was denied. Failed to configure the VIM account. The operation breaks lockdown mode.”
search cancel

ESXi Host Fails to Connect to vCenter with error: “Access to perform the operation was denied. Failed to configure the VIM account. The operation breaks lockdown mode.”

book

Article ID: 412792

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

ESXi host(s)  failed to reconnect to vCenter.

Impact: vCenter unable to synchronize with host agents, breaking vSAN cluster visibility (Disk Mgmt, Resync Objects) and management tasks.

vCenter Task Console showed:

“Access to perform the operation was denied. Failed to configure the VIM account. The operation breaks lockdown mode.”

“Cannot synchronize host… Failed to sync with the vCenter Agent on the host.”

Host client UI produces Unhandled exception when modifying security/lockdown mode.

ESXi shell verified account access and confirmed lockdown restrictions active.

Cause

The vCenter management agent (vpxa) is unable to sync with the host because lockdown mode blocking required account reconfiguration.

vpxuser (VIM account) could not be updated while the host was is in lockdown, causing repeated synchronization failures.

 

Resolution

  1. Disable lockdown mode temporarily.
  2. Reconnect host in vCenter (which restores vpxuser and re-establishes sync).
  3. Re-enable lockdown mode for compliance/security after successful reconnect. 
  4. Restart management services (hostd and vpxa) if required to stabilize. 

Additional Information