How to suppress the warning message that Change Requests have not been generated when completing a Review in RSA Identity Governance & Lifecycle
Originally Published: 2019-06-19
Article Number
Applies To
RSA Version/Condition: 7.1.0, 7.1.1
Issue
This message means there has been an item revoked in the Review for which there is no Change Request. This warning message occurs under two circumstances:
- The review definition has Generate Change Request set to Explicitly by Owner and there is a revoked item in the review for which the owner has not yet generated a Change Request, or
- The review definition has Generate Change Request set to Explicitly by Owner and there is a revoked item in the review for which the owner has generated a Change Request but that Change Request item was cancelled.
NOTE: In both cases this message may be ignored and the review completed.
This is a configurable behavior. This article explains how to configure a Review definition so that this warning message will be suppressed if the revocation of a review item has been rejected in a Change Request.
Resolution
- Configure the Review definition to automatically Generate Change Requests. In the RSA Identity Governance & Lifecycle User Interface. Navigate to Reviews > Definitions > [Name of Review] > Edit Definition > General tab and under Generate Change Request check Automatically as in the example below:
- Configure the Review definition to revert revoked items if the Change Request is rejected. In the RSA Identity Governance & Lifecycle User Interface, go to Reviews > Definitions > [Name of Review] > Edit Definition > States tab and check Revert revoked items if change request is rejected, as in the example below:
When this setting is not enabled and a change item is rejected, it appears to RSA Identity Governance & Lifecycle that no Change Request has been created for that item. Enabling this setting, "un-revokes" the item in the review so it appears as though no Change Request for that item is needed. However, the history of that revocation remains in the review as seen below:
Related Articles
Microsoft 365 with Azure AD - RSA Ready Implementation Guide 107Number of Views Microsoft Azure Active Directory - IdP for Cloud Authentication Service - RSA Ready Implementation Guide 142Number of Views Software Token Profile is required to deploy software token error when running RSA Authentication Manager Bulk Admin 137Number of Views RSA Governance & Lifecycle Generic REST Collector Guide 454Number of Views "Error 2004: Cannot locate AMBA license file: ./AMBAlicense.dat " when attempting to run RSA Authentication Manager Bulk A… 108Number of Views
Don't see what you're looking for?