Terminated Users not correctly removed from Roles in RSA Identity Governance & Lifecycle
Originally Published: 2021-12-06
Article Number
Applies To
RSA Version/Condition: 7.2.0, 7.2.1, 7.5.0, 7.5.2
Issue
The Rule "Role Membership Rule Difference" does not correctly remove "Is Terminated" Users from Global or Business Roles.
Terminated Users still show in the Role as Members even if the Membership Rule has "is Terminated"=0.
Cause
This is a known issue in the following versions:
- RSA Identity Governance & Lifecycle 7.2.0 P09
- RSA Identity Governance & Lifecycle 7.2.1 P05
- RSA Identity Governance & Lifecycle 7.5.0 P01
- SecurID Governance & Lifecycle 7.5.2
Resolution
- RSA Identity Governance & Lifecycle 7.2.0 (please upgrade to get the fix)
- RSA Identity Governance & Lifecycle 7.2.1 P08
- RSA Identity Governance & Lifecycle 7.5.0 P05
- SecurID Governance & Lifecycle 7.5.2 P01
Related Articles
Check Point VPN Clients Discovering as Enforcement Points 23Number of Views "Error - could not execute query" shows instead of the role name when listing roles in RSA Identity Governance & Lifecycle 40Number of Views RSA Identity Governance & Lifecycle Role Collector (RDC) fails with ORA-30926 error 120Number of Views RSA Identity Governance & Lifecycle Imported Roles do not show entitlements on Users 89Number of Views How to interpret the RSA Identity Governance & Lifecycle User Access Review User Entitlement Coverage report. 41Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide How to Download OTP Token Seed Files from myRSA RSA Authentication Manager 8.9 Release Notes (January 2026)
Don't see what you're looking for?