Termination rule is deleting accounts when rule is not configured to in RSA Identity Governance & Lifecycle
Originally Published: 2019-09-27
Article Number
Applies To
RSA Version/Condition: 7.1.X
Issue
Below are the available actions for a Termination Rule:
- Disable accounts (excludes shared and service accounts).
- Delete accounts (excludes shared and service accounts).
- Revoke user entitlements (excludes shared and service accounts).
- Shared accounts
- Service accounts
Cause
When the last entitlement access is removed from an account, the rule will delete that account.
This occurs due to the account no longer having any entitled access to any applications, and therefore the rule will delete this account to prevent it being an orphaned account.
If the Termination Rule identifies this account based on the rule's condition, and is configured to only revoke certain access, the account will not be deleted if it still has access to other applications.
In this scenario, the account will not become orphaned since they still have entitled access.
Related Articles
Trusted Network policy attribute does not work correctly with applications configured after disabling Identity Confidence … 72Number of Views Web Tier status offline/Reinstall status changes to pending connection for RSA Authentication Manager 8.4 599Number of Views Replacing the Default Virtual Host Certificate 152Number of Views Delete a Replica Instance 229Number of Views Customizing TLS Protocol Version 202Number of Views
Trending Articles
RSA Authentication Manager 8.8 Setup and Configuration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) Test connection fails from the RSA ID Plus Cloud Access Service and Identity Router to the SecurID Authentication Manager Details on RSA SecurID tokens and RSA Authentication Manager licenses RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows
Don't see what you're looking for?