000033596 - ENTITLEMENT_PATH for indirect entitlements does not always correctly explain how it was assigned in RSA Via Lifecycle and Governance

Document created by RSA Customer Support Employee on Jan 11, 2017Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000033596
Applies ToRSA Product Set: RSA Via Lifecycle and Governance (RSA Via L&G)
RSA Version/Condition: 6.9.1, 7.0
IssueWhen looking at a user's access, the ENTITLEMENT_PATH for indirect entitlements sometimes does not clearly show how the entitlement was assigned to the user. Since these are indirect entitlements, there is no Remove button associated with them. Having full details would aid in knowing how to remove an indirect entitlement and aid in seeing how roles or groups may need to be changed.
CauseIndirect entitlements can originate from multiple sources such as roles, groups and applications, so the ENTITLEMENT_PATH is not sufficient for providing the full information on how an entitlement got assigned to a user.
ResolutionA new enhancement has been added to RSA Via Lifecycle and Governance versions 6.9.1 P17, 7.0.0 P04 and 7.0.1 P01. On the User's screen under the Access tab in the  Action column, there will be an information icon displayed next to indirect entitlements.  A popup will display when the Info icon is clicked, showing all the sources for the entitlement and explains what needs to be done to remove that entitlement.
These releases are expected to be available in late August 2016.