RSA Product Set: RSA Governance & Lifecycle
RSA Version/Condition: 8.0 P06
Upon creating an entitlement fulfillment request with the revocation dates included, two distinct requests are created: one for the initial fulfillment of the entitlement and a separate one for its removal. If the fulfillment request is rejected, the associated revocation request remains active and unlinked.
When a Change Request is created with a revocation date, 2 requests get automatically created: one for Access, another for the revocation. The revocation request is an independent request which follows the Workflow associated with it.
Actions performed on Access granting Change Request will not impact the revocation Change Request as they are independent and will function as per their separate Workflows are configured. Change Requests' Workflow paths can neither be modified nor stopped by other Change Requests as both are independently created.
This is functioning as designed.
One of the approach is not to create the revocation Change Request immediately when Add access request is generated, but instead to create the revocation Change Request only when the revocation date arrives. By doing so, if the Add Access Change Request is Rejected before the revocation date the revocation request itself will not be created.
Related Articles
Enable Users Automatically for Risk-Based Authentication 5Number of Views Access Fulfillment Express (AFX) Workflow does not automatically execute when there is no approval phase in RSA Identity G… 12Number of Views Manage Passwords Automatically Option Greyed Out 16Number of Views AFX Server is in a 'Not running' State in the user interface but 'afx status' indicates AFX is running in RSA Identity Gov… 371Number of Views Why automatically generated revocation requests do not add back revoked requests on a revocation date in RSA Identity Gove… 32Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to Download OTP Token Seed Files from myRSA Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide