Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Avoid Account Deletion When Account Lost All Access from Logical Endpoints

New Contributor III
New Contributor III


I'm trying to stay accounts in logical endpoints even though account lost all access of logical endpoint. Logical endpoint has been declared in endpoints_filter of an AD connection.

Sequence would be

1) sample_a account has been created in logical endpoint A since sample_a got an access to logical endpoint.

2) Before the next import, sample_a lost all the access from logical endpoint due to a certain reason.

3) After import, sample_a account has been deleted. **BUT, I wanted to retain the account as active even though the account doesn't have any access to logical endpoint.

Is it possible? Or any suggestions here?



You can manage same in status threshold config flag inactivateAccountsNotInFile set to true


sample json

"statusAndThresholdConfig": {
"statusColumn": "customproperty30",
"activeStatus": ["512","active"],
"deleteLinks": true,
"accountThresholdValue": 1000,
"correlateInactiveAccounts": false,
"inactivateAccountsNotInFile": true

refer doc

Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.