Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Account import failing for AD logical app

krecpond
New Contributor III
New Contributor III

There is an AD logical app that has only entitlement. Few users are provisioned to that logical app by added to that single AD group on the target.

During certification, a certifier decided to have few users removed from the logical AD app. When this was successfuly done on the target through Saviynt and the account import was run, the account import failed with the below error message:

krecpond_0-1707792977830.png

The following has been verified:

1. User has actually been removed from the group on the target

2. The user longer has the entitlement on both the logical AD and parent AD apps.

3. Saviynt has an account for the user on the logical AD app.

Any thoughts on:

1. Why would the account import fail with the above error message?

2. What can be done to overcome the error message?

 

2 REPLIES 2

rushikeshvartak
All-Star
All-Star

check reference key in accounts table 

select accountkey,name,REFERENCED_ACCOUNTKEY,REFERENCED_ACCOUNTNAME from accounts


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

CR
Regular Contributor III
Regular Contributor III

Hi @krecpond 

Some time duplicate entry's will come even active account available in saviynt also.need delete and make it status 'Suspended from import'

Below endpointkey is '2723' and accountname 'sxm1067' check status of account and delete. if have two account same name below situation check entitlement hierarchy which blank that should be delete

How this will overcome means may be can you check account co-relation rule in endpoints config level

Raghu_0-1707820421730.png

 


Thanks,
Raghu
If this reply answered your question, Please Accept As Solution and hit Kudos.