RSA Identity Governance and Lifecycle users do not match the membership rule once removed from the role
Originally Published: 2017-03-13
Article Number
Applies To
RSA Version/Condition: 6.8.1+
Issue
For example:
- Create a role with some membership rule. In this example we are using "users."Is Terminated"=0 or users.Department='Finance'" as the membership rule.
- Add users to the role matching the membership rule and apply the changes.
- Remove a user from the role and commit the changes.
- Try to add the same user back to the role by filtering with matching items and that user is not seen in the list. If we try to search manually with a filter set to All Members, we will be able to see that the user does not match the membership rule. The membership rule condition shows as false rather than true.
Resolution
- V6.8.1 P25,
- V6.9.1 P18,
- V7.0.0 P05,
- V7.0.1 P01,
- V7.0.2
Related Articles
Indirect Change items not generated for removing group from Technical Role 8Number of Views Unable to edit Role Membership Rule in RSA Governance & Lifecycle 35Number of Views When a role is removed from a user based on a revocation date, the entitlement(s) belonging to that role are not removed f… 36Number of Views Role membership rules configured in the RSA Identity Governance & Lifecycle's Role UI do not create rules when no checkbox… 52Number of Views Access Fulfillment Express (AFX) does start after applying Patch 11 or higher to RSA Via Lifecycle and Governance 6.9.1 3Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Authentication Manager – Unable to Add or Manage Users with Error “The specified ID is already in use” Troubleshooting Web Tier deployments on Red Hat Enterprise Linux for RSA Authentication Manager 8.1 RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows
Don't see what you're looking for?