Change in the review behavior while using "Include group memberships that are entitlements of their assigned global roles" option in RSA Identity Governance and Lifecycle
Originally Published: 2016-11-03
Article Number
Applies To
RSA Version/Condition: 7.0
Issue
As an example,
- Add a group entitlement to a user.
- Create a global role include the user, group entitlement and few other entitlements.
- Create a review definition and uncheck the Include group memberships that are entitlements of their assigned global roles option under the Contents tab.
- Run the review and the group is listed in the Unassigned Items tab, though the same group is present in the global role.
- Now edit the review definition and check Include group memberships that are entitlements of their assigned global roles in the Content tab.
- Run the review and the group is not listed in the review items under the Unassigned Items tab.
Cause
Resolution
Related Articles
Modifying Group Membership in an LDAP Directory 5Number of Views CSV Format for User Group Membership Requests Input File 8Number of Views RSA Governance & Lifecycle Recipes: Report - AD Group Summary 15Number of Views List User Group Membership in Reports 30Number of Views When Active Directory is integrated using Winbind, group membership for Active Directory users fails with the RSA Authenti… 168Number of Views
Don't see what you're looking for?