Try to follow this article which is well explained, also applies to 6.7:
Also try to insert a user who belongs to the group that does not allow login into the group that works, and execute the logjn, we see the result. The problem may depend on AD and not on the Vcenter.
Hello RajeevVCP4 and AlessandroRomeo68
Thank you for your reply
AD groups in the Vcenter have appropriate permissions.
For example, if I granted the same permissions to two groups "A" and "B", members from the one group "A" has access but members from the group "B" does not have access.
If I transfer a member from group "B" to group "A", that member will appear permissions.
I have a few AD groups which members do not have granted access and can't find the reason.