Click HERE to see how Saviynt Intelligence is transforming the industry. |
04/12/2022 12:54 PM
I have set up following rule:
Condition: User Statuskey Equals 0
Action:
Deprovision Access AD LDAP
Transfer Ownership Transfer Entitlement Ownership <Email Template Not Selected>
To test the scenario:
I have a test user with access to AD & LDAP groups and he is owner of an AD entitlement.
I have Set up Owner On Terminate for this user.
I upload the user using excel with 2 fields in the file: username and status (=0)
I select the Check Rule flag while uploading the user.
What I am noticing is that the access deprovisioning tasks are getting created and the role assigned to the user is getting removed.
BUT: The entitlement ownership of the AD group is still staying with the user that I just set statuskey to 0.
Am I missing anything?
Solved! Go to Solution.
04/12/2022 01:48 PM
Hi Waman,
What is the version of application is being used?
Thanks
Ajay
04/12/2022 01:48 PM
I believe it is 5.42. Also, I noticed that if I write a user update rule for update in UI and change the status to inactive in the UI, then the transfer ownership works. But if I change the rule to update from import and import a file with just 2 fields username and status (username,0) the user gets inactivated but the transfer ownership doesn't work. The deprovision access part in the same rule works but the transfer ownership part doesn't.
04/12/2022 01:48 PM
Hi Waman,
I have checked its working for me. Have you created seperate rule for the update from import or are you expecting the executon of rule with the rule with update from UI? .
You need to have seperate rule for update from import.
Thanks
Ajay
04/12/2022 01:48 PM
Separate rule with selection of update from import... The deprovisioning tasks work in this rule but transfer ownership doesn't.
04/12/2022 01:48 PM
Waman - we will need more details and need to have L1 ops take a look as well. Could you please raise a ticket with all the required details.