The reason becaase admin@system-domain is a sso admin and Windows admins are vcenter admin. You need to connect to vCenter using windows admin credentials and goto permissions and provide admin privileges to admin@system-domain at vcenter object level.
↧