I've found a very strange issue within the User Profile service of SharePoint 2019. First of all some information about our topology:
4 SP Servers (Minrole):
2 WFE with DC
2 Application with Search
Windows Server 2019 is the OS
Office Online and SQL 2016 info is out-of-scope for this issue.
We are migrating our environment from SharePoin 2010 to SharePoint 2019. The mysites will be migrated at the last phase of the project. Therefor we would like to disable the mysite creation. Within the 'Manage User Permission' you can adjust the settings for the creation of the personal site. But when we modify these settings I get a popup with the message 'Sorry, this site hasn't been shared with you'. I already checked many things:
Uls log is giving me an Access Denied
The user who is modifying the permissions is admin on the mysite.
The user is Farm Admin and also has specific permissions on the User Profile App (Full Control)
Gave temporarily direct database permissions for the User Profile Service account on the mysite database...
When I change the mysite url in the User Profile app to for example http://fake, then I can change the permissions. But they are not applied as the Mysite URL is not correct.
Als tried to change the permissions via Powershell...(Revoke-SPObjectPermission), but I cannot find the good permissions. Also 1 claim cannot be found (c:0!.s|windows)
Almost think it's a bug.. but as i'm not 100% sure i'm writing this question.