Rejecting Approval of an Application Role Change Request item fails in RSA Identity Governance & Lifecycle
Originally Published: 2020-06-04
Article Number
Applies To
RSA Version/Condition: 7.1.0 , 7.1.1, 7.2.0
Issue
The Approval Workflow (Requests > Workflows > Approval tab > {Approval Workflow name}) is properly set up with an activity node configured for either Add app-role to account or Add app-role to user and a transition that allows individual change items to be rejected.
EXAMPLE
In the following example the approval workflow has activity nodes for Add ent to account, Add app-role to account and Add group to account and each activity node has the option to reject individual change request items. Note that the rejection of an Add ent to account and an Add group to account works correctly. It is only the Add app-role to account and Add app-role to user conditions that have this issue.
Each approval activity node is configured as below to allow individual rejection of change items:
The following error is logged to the aveksaServer.log file ($AVEKSA_HOME/wildfly/standalone/log/aveksaServer.log)
05/29/2020 03:07:49.986 ERROR (default task-24) [com.aveksa.server.workflow.WorkflowWorkItem]
No grouping found for the job 337
Please refer to RSA Knowledge Base Article 000030327 -- Artifacts to gather in RSA Identity Governance & Lifecycle to find the location of the aveksaServer.log file for your specific deployment if you are on a WildFly cluster or a non-WildFly platform. The aveksaServer.log may also be downloaded from the RSA Identity Governance & Lifecycle user interface (Admin > System > Server Nodes tab > under Logs.)Cause
Resolution
Workaround
- Edit the Approval Workflow (Requests > Workflows > Approval tab > {Approval workflow name}) and select and deselect the checkbox for the following option:
Follow this transition when a workflow form is automatically completed
- Then save the workflow.
Related Articles
Adding the option to customize the name of the High-Level Maintain state button in fine-grained role reviews in RSA Govern… 18Number of Views ORA-20126 in Review Definition User Selection query with custom table in the AVCSUSER schema in RSA Governance & Lifecycle 87Number of Views How approval activity behaves when change request items are grouped by category in RSA Identity Governance & Lifecycle 123Number of Views Joiner Mover Leaver Change Requests are getting rejected with "object references an unsaved transient instance" error in R… 1Number of Views Change in the review behavior while using "Include group memberships that are entitlements of their assigned global roles"… 36Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.9 Release Notes (January 2026) An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?