In the VCF Operations UI, Fleet Management >> Identity & Access >> VCF Instances
After correctly adding the Identity Source, the Sync Log shows the error Group Query Failed as per the screenshot below:
VCF Operations 9.x
Missing memberOf Overlay.
As per Configure OpenLDAP as an Identity Provider:
Ensure that the memberOf overlay is activated in the OpenLDAP server.
This issue will be resolved in a future release.
Workaround:
Administrators should not use group-inherited permissions for provisioning and instead directly provision only the specific users required.