RSA Identity Governance and Lifecycle users do not match the membership rule once removed from the role
Originally Published: 2017-03-13
Last Modified: 2023-10-06
Article Number
Applies To
RSA Version/Condition: 6.8.1+
Issue
For example:
- Create a role with some membership rule. In this example we are using "users."Is Terminated"=0 or users.Department='Finance'" as the membership rule.
- Add users to the role matching the membership rule and apply the changes.
- Remove a user from the role and commit the changes.
- Try to add the same user back to the role by filtering with matching items and that user is not seen in the list. If we try to search manually with a filter set to All Members, we will be able to see that the user does not match the membership rule. The membership rule condition shows as false rather than true.
Resolution
- V6.8.1 P25,
- V6.9.1 P18,
- V7.0.0 P05,
- V7.0.1 P01,
- V7.0.2
Related Articles
Edit a Report 6Number of Views Change in the review behavior while using "Include group memberships that are entitlements of their assigned global roles"… 39Number of Views Custom Reports 88Number of Views Attribute change rule creating duplicate change items for users having more than one account with same entitlement in an a… 35Number of Views Membership Rule Or Entitlement Rule under Roles show the Display Description and full code condition for Role Set in RSA G… 2Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?