Please help with our scenario.
We have AzureAD connector from which we reconcile Accounts to Saviynt.
We want users to request entitlements on AzureAD account only when it is reconciled and visible under their accounts. That means users should not be able request AzureAD as a new account if it is not in their provisioned accounts list.
You may Explore the option at the endpoint level for your usecase.