Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Active Directory: Child Endpoint needs to be Active after running Recon Job "AD account Import".

kavitakamtekar4
New Contributor II
New Contributor II

Hi Team,

We have Parent- Child AD setup in our environment. We are performing group assignment and group removal operations on Child Endpoint. We are facing an issue, when we remove group from Child Endpoint through ARS, the group is getting removed and Child Endpoint also gets Inactive after running recon job "account import". However, the requirement is to keep this Child account(endpoint) as "Active" even after the group from the account is removed and the recon job is executed.

FYI -We are not seeing any impact on Parent account after running AD account import i.e Parent Account is "Active".  

Additionally, the request for Child Endpoint is from ARS.

 

1 REPLY 1

rushikeshvartak
All-Star
All-Star
  • If its last entitlement then status will be inactive.
  • Please share status threshold configs

Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.