Nesting local and collected roles in RSA Identity Governance & Lifecycle
Originally Published: 2020-03-10
Last Modified: 2023-10-06
Article Number
Applies To
RSA Version/Condition: 7.0.x, 7.1.x, 7.2.0
Issue
A local role is different from a collected role. A collected role, like other collected information, is access obtained from an endpoint which maintains that information externally from our system. Like any collected items, a collected global role is suitable to use as an entitlement in a local role. However, the opposite is not true. A potential problem can occur when a user attempts to add a local role as an entitlement to a collected role. The endpoint that maintains the collected role definition does not know anything about our internal (local) roles – which contain entitlements from a number of other types and sources, including other local roles and local entitlements. This makes provisioning of the information difficult, if not impossible, and extremely confusing.
Resolution
Related Articles
How to stack a Unix authentication followed by SecurID prompt with the RSA Authentication Agent for PAM for SSH and Telnet… 693Number of Views 'Error(s) occured while compiling invalid object SRSECTION_SYSTEM:' during database migration in RSA Identity Governance &… 458Number of Views Token Seed Decrypt options with on-Prem Authentication Manager, including PDP-G & SID-830 Keys - How to decrypt Token Seed… 208Number of Views Web-Tier Deployments 335Number of Views RSA Authentication API Developer's Guide 1.47KNumber of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?