Role and Group Review Result behavior when members/entitlements are added to the underlying review items in RSA Identity Governance & Lifecycle
Originally Published: 2019-08-29
Article Number
Applies To
RSA Version/Condition: All
Issue
Resolution
The behavior of Role Review Results and Group Review Results in RSA Identity Governance & Lifecycle differs slightly from other review types when changes are made to the underlying review items. In the case of Role and Group Reviews, when members and/or entitlements are added, the added member or entitlement is viewable in an existing Review Result without any Refresh option being performed. In the case of a Role, this is true even if the change to the role has not been committed. However, no action can be taken on the new item unless the Review Result is refreshed and the change to the Role has been committed.
This behavior is to allow the reviewer the see the complete picture when making review decisions. For example, determining what action to take when reviewing a specific entitlement belonging to a role could be influenced by what other entitlements the role has.
In the following example, note that role A1 Role has one entitlement in Role Review A-2:
After a second entitlement is added to role A1 Role, the entitlement is visible in Role Review A-2 but the item is not actionable. This is true before and after the change to role A1 Role has been committed.
After the Review has been refreshed (and the role committed), the new item is now actionable.
Related Articles
Local entitlements belonging to roles are not consistently added to users in RSA Identity Governance & Lifecycle 36Number of Views Review Results do now allow Review Actions on Review Items seen under Review Results unless the Reviewer is the Review Own… 81Number of Views Review email defined with the Review URL {$reviewDetailURL} shows no review items to be monitored in RSA Identity Governan… 61Number of Views Role Review Member and/or Entitlement counts are incorrect preventing Role Review completion in RSA Identity Governance & … 536Number of Views Entitlements are removed from or added to a Role when the Role Set is changed in RSA Identity Governance & Lifecycle 243Number of Views
Trending Articles
RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows Configuring a Checkpoint firewall to work with SecurID RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager Patch Updates Unable to login to RSA Authentication Manager Security Console as super admin
Don't see what you're looking for?