How to suppress the warning message that Change Requests have not been generated when completing a Review in RSA Identity Governance & Lifecycle
Originally Published: 2019-06-19
Article Number
Applies To
RSA Version/Condition: 7.1.0, 7.1.1
Issue
This message means there has been an item revoked in the Review for which there is no Change Request. This warning message occurs under two circumstances:
- The review definition has Generate Change Request set to Explicitly by Owner and there is a revoked item in the review for which the owner has not yet generated a Change Request, or
- The review definition has Generate Change Request set to Explicitly by Owner and there is a revoked item in the review for which the owner has generated a Change Request but that Change Request item was cancelled.
NOTE: In both cases this message may be ignored and the review completed.
This is a configurable behavior. This article explains how to configure a Review definition so that this warning message will be suppressed if the revocation of a review item has been rejected in a Change Request.
Resolution
- Configure the Review definition to automatically Generate Change Requests. In the RSA Identity Governance & Lifecycle User Interface. Navigate to Reviews > Definitions > [Name of Review] > Edit Definition > General tab and under Generate Change Request check Automatically as in the example below:
- Configure the Review definition to revert revoked items if the Change Request is rejected. In the RSA Identity Governance & Lifecycle User Interface, go to Reviews > Definitions > [Name of Review] > Edit Definition > States tab and check Revert revoked items if change request is rejected, as in the example below:
When this setting is not enabled and a change item is rejected, it appears to RSA Identity Governance & Lifecycle that no Change Request has been created for that item. Enabling this setting, "un-revokes" the item in the review so it appears as though no Change Request for that item is needed. However, the history of that revocation remains in the review as seen below:
Related Articles
Why automatically generated revocation requests do not add back revoked requests on a revocation date in RSA Identity Gove… 32Number of Views How to disable the RSA Via Lifecycle and Governance (L&G) Reassign functionality for violations generated from Rule Defini… 44Number of Views RSA Governance & Lifecycle Recipes: CR Approvals & Activities Trending 25Number of Views Auto generated revocation requests Stuck in Fulfillment Phase with AFX errors in connector logs If any Change Item rejecte… 153Number of Views In RSA Identity Governance & Lifecycle, the change request manual activity assignment link (Assign to Specific Group or Ro… 17Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Authentication Manager – Unable to Add or Manage Users with Error “The specified ID is already in use” Troubleshooting Web Tier deployments on Red Hat Enterprise Linux for RSA Authentication Manager 8.1 RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows
Don't see what you're looking for?