RSA Identity Governance and Lifecycle users do not match the membership rule once removed from the role
Originally Published: 2017-03-13
Article Number
Applies To
RSA Version/Condition: 6.8.1+
Issue
For example:
- Create a role with some membership rule. In this example we are using "users."Is Terminated"=0 or users.Department='Finance'" as the membership rule.
- Add users to the role matching the membership rule and apply the changes.
- Remove a user from the role and commit the changes.
- Try to add the same user back to the role by filtering with matching items and that user is not seen in the list. If we try to search manually with a filter set to All Members, we will be able to see that the user does not match the membership rule. The membership rule condition shows as false rather than true.
Resolution
- V6.8.1 P25,
- V6.9.1 P18,
- V7.0.0 P05,
- V7.0.1 P01,
- V7.0.2
Related Articles
Role Membership Rule Difference Rule fails to run at scheduled time in RSA Identity Governance & Lifecycle 145Number of Views Account and Identity collection related jobs are failing in after a Role membership rule changes in RSA Governance & Lifec… 2Number of Views Unable to remove a Role Membership Rule from a Role in RSA Identity Governance & Lifecycle 28Number of Views RSA Identity Governance and Lifecycle error "The selected file does not match the required CSV format" when importing Loca… 76Number of Views Slow INSERT statement executing from the SoD_Rule_Pkg in RSA Identity Governance & Lifecycle 88Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x
Don't see what you're looking for?