WilliamLam.com

  • About
    • About
    • Privacy
  • VMware Cloud Foundation
    • VMware Cloud Foundation 9
  • VKS
  • Homelab
    • Hardware Options
    • Hardware Reviews
    • Lab Deployment Scripts
    • Nested Virtualization
    • Homelab Podcasts
  • VMware Nostalgia
  • Apple
You are here: Home / VMware Cloud Foundation / Automating VCF Operations Active Directory over LDAP Sync for VCF SSO

Automating VCF Operations Active Directory over LDAP Sync for VCF SSO

09.30.2025 by William Lam // 1 Comment

When VMware Cloud Foundation (VCF) Single-Sign On (SSO) is configured with the Active Directory over LDAP Identity Provider, VCF Operations will periodically synchronize the users and groups from your identity source.

By default, the sync frequency will default to once per week but it is user configurable to daily, hourly and even down to every 15 minutes, which is the lowest configurable frequency that is supported as shown in the screenshot below.


For users that require a one time sync, VCF Operation does provide a manual sync function that you can invoke under the configured identity source as demonstrated in the screenshot below.


Since the automated sync frequency ca not go below 15 minutes, the manual sync can be a viable workaround. If you need automate and schedule the manual sync, you may want automate it instead of manually invoking the function in the VCF Operations UI ...

To help with this automation, I have created the following shell script called sync_vcf_operations_active_directory_over_ldap_idp.sh which will allow you to invoke the private VCF Operations API to perform the identity source sync, which is exactly how the VCF Operations UI is performing this operation. Once you have populated the required credentials and FQDN of your VCF Operations instance, you can simply run the script as it does not take any parameters and will automatically perform the sync function, which you can confirm by looking at the last sync status time.

Note: In a future release of VCF Operations, the identity source sync functionality will have public APIs and the ability to configure a lower sync frequency will also be possible.

Categories // VMware Cloud Foundation Tags // VCF 9.0

Comments

  1. *protectedFrostByteVA says

    09/30/2025 at 6:40 am

    Thank you!

    Reply

Thanks for the comment!Cancel reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Search

Thank Author

Author

William is Distinguished Platform Engineering Architect in the VMware Cloud Foundation (VCF) Division at Broadcom. His primary focus is helping customers and partners build, run and operate a modern Private Cloud using the VMware Cloud Foundation (VCF) platform.

Connect

  • Bluesky
  • Email
  • GitHub
  • LinkedIn
  • Mastodon
  • Reddit
  • RSS
  • Twitter
  • Vimeo

Recent

  • Improved Workaround for NSX Edge Deployment & Upgrade to VCF 9.0.2 running AMD Ryzen CPUs 01/20/2026
  • Disable HTTP Range Requests on Synology WebStation, Apache or Nginx 01/14/2026
  • Quick Tip - Correlating VCF Component to Bundle ID/Name 01/08/2026
  • TLS Chain of Trust when using SSL Inspection with VCF Download Tool (VCFDT) 01/07/2026
  • Quick Tip - Reset vCenter Server from previously managed VCF Operations for VCF Single Sign-On (SSO) 01/06/2026

Advertisment

Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.

To find out more, including how to control cookies, see here: Cookie Policy

Copyright WilliamLam.com © 2026

 

Loading Comments...