and more in a single search tool across platforms. Read the announcement here. |
02/12/2024 06:58 PM
There is an AD logical app that has only entitlement. Few users are provisioned to that logical app by added to that single AD group on the target.
During certification, a certifier decided to have few users removed from the logical AD app. When this was successfuly done on the target through Saviynt and the account import was run, the account import failed with the below error message:
The following has been verified:
1. User has actually been removed from the group on the target
2. The user longer has the entitlement on both the logical AD and parent AD apps.
3. Saviynt has an account for the user on the logical AD app.
Any thoughts on:
1. Why would the account import fail with the above error message?
2. What can be done to overcome the error message?
02/12/2024 11:11 PM
check reference key in accounts table
select accountkey,name,REFERENCED_ACCOUNTKEY,REFERENCED_ACCOUNTNAME from accounts
02/13/2024 02:44 AM
Hi @krecpond
Some time duplicate entry's will come even active account available in saviynt also.need delete and make it status 'Suspended from import'
Below endpointkey is '2723' and accountname 'sxm1067' check status of account and delete. if have two account same name below situation check entitlement hierarchy which blank that should be delete
How this will overcome means may be can you check account co-relation rule in endpoints config level