Terminated Users not correctly removed from Roles in RSA Identity Governance & Lifecycle
Originally Published: 2021-12-06
Article Number
Applies To
RSA Version/Condition: 7.2.0, 7.2.1, 7.5.0, 7.5.2
Issue
The Rule "Role Membership Rule Difference" does not correctly remove "Is Terminated" Users from Global or Business Roles.
Terminated Users still show in the Role as Members even if the Membership Rule has "is Terminated"=0.
Cause
This is a known issue in the following versions:
- RSA Identity Governance & Lifecycle 7.2.0 P09
- RSA Identity Governance & Lifecycle 7.2.1 P05
- RSA Identity Governance & Lifecycle 7.5.0 P01
- SecurID Governance & Lifecycle 7.5.2
Resolution
- RSA Identity Governance & Lifecycle 7.2.0 (please upgrade to get the fix)
- RSA Identity Governance & Lifecycle 7.2.1 P08
- RSA Identity Governance & Lifecycle 7.5.0 P05
- SecurID Governance & Lifecycle 7.5.2 P01
Related Articles
Applying role changes in RSA Identity Governance & Lifecycle takes longer to complete when Generate Indirect Entitlements … 36Number of Views How to fix error for ORA-01555: Snapshot too old during migration in RSA Via Identity Management and Governance (IMG) 21Number of Views Existing Role memberships later granted through Parent Roles are not revoked when the Role memberships are removed from th… 35Number of Views Suggestions and Violations not visible before applying changes when creating a role in RSA Governance & Lifecycle 7Number of Views RSA Identity Governance & Lifecycle Imported Roles do not show entitlements on Users 88Number of Views
Trending Articles
RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Troubleshooting AFX Server issues in RSA Identity Governance & Lifecycle Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Authentication Manager 8.9 Release Notes (January 2026)
Don't see what you're looking for?