000036750 - Role collector design changes for RSA Identity Governance & Lifecycle 7.x

Document created by RSA Customer Support Employee on Oct 1, 2018
Version 1Show Document
  • View in full screen mode

Article Content

Article Number000036750
Applies ToRSA Product Set: RSA Identity Governance & Lifecycle
RSA Version/Condition: 7.x
IssueWhen upgrading to RSA Identity Governance & Lifecycle 7.x from 6.9.1 with role collectors, there are design changes that need to be considered that affect both Role Collectors (RDC), Entitlement Collectors (EDC) and Multi-Application Entitlement Collector (MAEDC) definitions. The UI has significantly changed with the RDC definition now being more similar to the design of other collection types. The RDC is now standalone, not requiring the entitlement collectors to resolve entitlements to the role.
ResolutionRole collectors will now need to be modified just o reference entitlements and application roles that were previously set up through the entitlement's collector. The EDC or MAEDC now only collect the entitlements and app-roles. The RDC takes care of collecting and resolving the references from entitlements to individual roles. Cyclical role references and group members are also no longer allowed.

The Migration Report Utility, documented in the RSA Identity Governance & Lifecycle Upgrade and Migration Guide, generates four reports to help identify role related changes.  The guide provides instructions on how to deal with these changes.  The reports are:

  • Cyclic Global Roles
  • EDC's Associated to RDCs
  • EDCs Collecting Role Definitions
  • Roles Having Group Members