MAEDC grants Entitlements to all Accounts with the same name regardless of Application in RSA Identity Governance & Lifecycle
Originally Published: 2020-08-29
Article Number
Applies To
RSA Version/Condition: 7.0.0
Issue
Consider the following example where account AdminAccount is collected into three different applications:
Application: Perforce
Account: AdminAccount
Application: FileSystem
Account: AdminAccount
Application: Bugzilla
Account: AdminAccount
AppRole: ManageBugzillaJiras
After the three AdminAccounts are collected by an MAADC, the associated MAEDC grants application role ManageBugzillaJiras to all three accounts in all three applications instead of Bugzilla only.
Account: AdminAccount
Application: FileSystem
Account: AdminAccount
Application: Bugzilla
Account: AdminAccount
AppRole: ManageBugzillaJiras
After the three AdminAccounts are collected by an MAADC, the associated MAEDC grants application role ManageBugzillaJiras to all three accounts in all three applications instead of Bugzilla only.
This issue can be observed by going to Resources > Directories/Applications > {Directory/Application name} > Accounts tab. The same account name will appear once for every directory/application that has that account name.
Cause
Resolution
- RSA Identity Governance & Lifecycle 7.0.0 P01
- RSA Identity Governance & Lifecycle 7.0.1
Related Articles
When should a Provisioning-Termination Rule delete accounts in RSA Identity Governance & Lifecycle? 198Number of Views Active Directory AFX Connector fails to create or modify accounts due to an 'LDAPException: Insufficient Access Rights' er… 268Number of Views What happens to my RSA Community account if I change companies? 84Number of Views What access should be granted to the service account used by RSA Identity Governance & Lifecycle to fully support Active D… 50Number of Views AFX indicates access has been added/removed but the Change Request remains in Pending Verification and the access has not … 150Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?