Partial reject for approvals still provision indirect entitlements for accounts in RSA Governance & Lifecycle
Article Number
Applies To
RSA Version/Condition:
- SecurID Governance & Lifecycle 7.5.2
Issue
If the rejected role contains one or more entitlements, these entitlements get provisioned to the user anyway under the Account Changes. The role itself does not get granted to the user, only the underlying entitlement.
Cause
This is a known issue in the following versions:
- RSA Governance & Lifecycle 7.5.2 P03
Resolution
- RSA Governance & Lifecycle 7.5.2 P06
- RSA Governance & Lifecycle 7.6
Related Articles
When 'Generate Indirect Entitlements' is disabled for Roles, Technical and Global Role Entitlements are still granted to R… 59Number of Views Generic REST Collector fails with 'jsonpath.PathNotFoundException:Missing property in path $['members']' error collecting … 81Number of Views Rejecting Approval of an Application Role Change Request item fails in RSA Identity Governance & Lifecycle 53Number of Views Unauthorized change rule triggered although change request for add access has passed approval phase in RSA Identity Govern… 50Number of Views Entitlement(app-role/group/ent) revocation request with multiple accounts in an application fails with error:"Expected 1 a… 49Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?