1. Once you deployed a new vcenter pointed to primary one in linked mode .. have you joined the new VC to AD?
2. Have you added the permissions at vcenter level or global permissions?
only after VC is joined to AD, the global permissions inherit to the second VC.. If the permissions are at vcenter level, they will not be inherited by second vcenter. You need to manually assign the permissions
thanks,
MS