VMware Cloud Community
craigj405
Contributor
Contributor

Can't remove a group type principal from __Administrators__@System-Domain

I've added a principal (a group from an Active Directory Identity Source) to __Administrators__ and would now like to remove it.  This is no problem if the principal is of type "User" (from the same AD Identity Source).

The only available Actions on Principal Type "Group" are Edit Group and Delete Group; however Remove Principal is the Action available for User type principals.

This was experienced using a fresh install consisting of

  • vCenter Single Sign On 1.0.0.2491
  • vCenter Inventory Inventory Service 5.1.0.32743
  • vSphere Web Client 5.1.0.6239
  • Windows 2008 R2 SP1

Thank you,

Craig J

Tags (3)
Reply
0 Kudos
2 Replies
Sir2001e
Contributor
Contributor

Same problem here and, right now, there is not an official (or unofficial as far as I know) solution:

http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=203710...

Kind Regards,

Sergio

Reply
0 Kudos
Cyberfed27
Hot Shot
Hot Shot

I ran across this as well during a troubleshooting session with VMware support unrelated to this. When he came across it he said the only way to fix it is to crawl into the database and remove it there. He did not give specifcs.

Reply
0 Kudos