We have a 6.7u1 with embedded PSC serving some VDI clusters. We've noticed that even though we place global groups in global permissions with the same role as firstname.lastname@example.org the users do not have the same elevated permissions that account does. That appears to be change from prior vCenter versions. Anybody know how to change this behavior?
I said all that and now I'm not seeing any differences. We started off not putting admin groups in global perms but rather in the old fashioned vcenter hosts/clusters view from top down and found issues as I describe.. however I don't seem to be seeing any difference now with using global perms as one would expect.
Egg on face.
If you want to give domain users/groups similar to SSO admin user ; do the below. This has been similar across versions .