To facilitate more convenient allocation of permissions in large-scale clusters, this chapter describes how to add domain users as VCSA administrators, see the following steps
1. Go to the Home page, click "System Management" → "Configuration" → "identity Source" → "Green plus (add identity source)"
2. Select Active Directory (Integrated Windows Authentication), then click Next
3. Enter the domain name you want to add and click "Next" when you are done.
4. Verify that the information is correct, then click the "Finish" button
5. Can identify the source has been added completed
6. Use your mouse to click on the "best.com" identity source you just added, and click "Set as Default identity source" identified in the figure.
7. Click "OK"
8. Click "System Management" → "Access Control" → "Global Permissions" → "Green Arrow (add permission)"
9. Click on the "Add" button in the image to add a domain user who needs to be set as VCSA administrator.
10. Select the "best.com" field and select the domain user you want to add as the VCSA administrator, and click "Add" → "OK"
11. Select the domain user you just added and select "Administrator" in "Assigned role", then click OK
12. Log off the VCSA system administrator and log in with the domain user you just added
13. Login success, the certificate has been added successfully, but some permissions just added to the user is not, the article will detail the permissions related issues.
This article is reproduced from: http://www.ctoclubs.com/?p=560
Domain Admins added as VCSA 6.5 (vCenter Server application 6.5) administrator