Revoked local entitlements are auto-completed by the system after collections are run in RSA Identity Governance & Lifecycle
Originally Published: 2020-04-28
Article Number
Applies To
RSA Version/Condition: 7.0.x, 7.1.0, 7.1.1, 7.2.0
Issue
The expected behavior is that once these change requests go to Manual Fulfillment, they will not be completed until the associated Manual Activity has been performed. The problem is that once collections have run, manual activities to revoke local entitlements are automatically completed by the system.
This is not a problem when granting local entitlements. Change requests granting local entitlements wait for the manual activity to be completed.
Cause
Resolution
Workaround
- Complete manual activities to revoke local entitlements before any collections are run.
- Uncheck the Complete work assigned if activity is verified option in the Manual Activity Node of the related workflow. In the user interface go to Requests > Workflows > Fulfillment tab > Manual Activities > Manual Fulfillment Node. In the Activity Node Properties panel on the right, scroll down to RESOURCES and uncheck the box as shown below:
Related Articles
CSV Account Data Collectors of Data Source Type Database joining multiple CSV files reject Account Mappings of Accounts wi… 40Number of Views Multiple entitlements in RSA Identity Governance and Lifecycle cause supervisor approval to fail with ORA-22275: invalid L… 100Number of Views The RSA Governance & Lifecycle Raw Data table for collection run IDs is empty 119Number of Views Change Verification task running after Account Data Collection (ADC) taking many hours to be completed in RSA Via Lifecycl… 174Number of Views CSV Data Collectors of Data Source Type Database do not populate all fields with data when joining multiple CSV files in R… 63Number of Views
Trending Articles
Authentication Manager Supported Hardware and Upgrade Paths RSA Authentication Manager Upgrade Process Artifacts to gather in RSA Identity Governance & Lifecycle How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Authentication Manager 'Principal Does Not Possess Authenticator' Error for Users with Multiple IDs
Don't see what you're looking for?