How to switch back to Active Directory after configuring vCenter to use Okta
search cancel

How to switch back to Active Directory after configuring vCenter to use Okta

book

Article ID: 443105

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

  • vCenter was configured to use Okta for authentication, and a reversion back to Active Directory is required.
  • The operation fails with the following error: "The identity broker on the specified vCenter is not configured correctly. Please ensure the identity provider is configured on the broker."

Environment

vCenter 8.x

Cause

vCenter Server supports one configured external identity provider and switching authentication to Okta requires changing the provider. As a result, the previous provider is no longer available.

Resolution

To switch back to using Active Directory, select Other Providers > Embedded then add the previous Active Directory configuration.

 

Additional Information

vCenter Server supports only one configured external identity provider (one source), and the vsphere.local identity source (local source). Multiple external identity providers cannot be used. vCenter Server Identity Provider Federation uses OpenID Connect (OIDC) for user login to vCenter Server.