6.5.1

Table Of Contents
3 Navigate to the vCenter Single Sign-On user configuration UI.
Option Description
vSphere Web Client a From the Home menu, select Administration.
b Under Single Sign-On, click Users and Groups.
Platform Services Controller Click Single Sign-On and click Users and Groups.
4 If vsphere.local is not the currently selected domain, select it from the dropdown menu.
You cannot add users to other domains.
5 On the Users tab, click the New User icon.
6 Type a user name and password for the new user.
You cannot change the user name after you create a user.
The password must meet the password policy requirements for the system.
7 (Optional) Type the first name and last name of the new user.
8 (Optional) Enter an email address and description for the user.
9 Click OK.
When you add a user, that user initially has no privileges to perform management operations.
What to do next
Add the user to a group in the vsphere.local domain, for example, to the group of users who can
administer VMCA (CAAdmins) or to the group of users who can administer vCenter Single Sign-On
(Administrators). See Add Members to a vCenter Single Sign-On Group.
Disable and Enable vCenter Single Sign-On Users
When a vCenter Single Sign-On user account is disabled, the user cannot log in to the vCenter Single
Sign-On server until an administrator enables the account. You can disable and enable accounts from
one of the vCenter Single Sign-On management interfaces.
Disabled user accounts remain available in the vCenter Single Sign-On system, but the user cannot log in
or perform operations on the server. Users with administrator privileges can disable and enable accounts
from the vCenter Users and Groups page.
Prerequisites
You must be a member of the vCenter Single Sign-On Administrators group to disable and enable
vCenter Single Sign-On users.
Platform Services Controller Administration
VMware, Inc. 70