Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Issue with "Entitlement with New Account" Config

Srujan
New Contributor
New Contributor

Hi Team,

REQUIREMENT: When the user request's for one of the disconnected applications, the user should also get provisioned with one specific AD group. We are able to achieve this in dev environment by adding the AD group in "Entitlement with New Account" tab under disconnected app endpoint.

ISSUE: But when we moved the same configuration to QA environment, it is creating "Add Access" and "New Account" task for the AD (even if the user is having the AD account, it is creating "New Account" task for the same user).

ERROR: Error while creating account in ADSI: Cannot get property url on null object.

Please let me know if you have any suggestions on this.

Best Regards,
Srujan.

4 REPLIES 4

Amit_Malik
Valued Contributor II
Valued Contributor II

Hi Srujan, must be a data issue in QA. can you check if AD account is active and correlated with user

 

Kind Regards,
Amit Malik
If this helped you move forward, please click on the "Kudos" button.
If this answers your query, please select "Accept As Solution".

Hi @Amit_Malik , thanks for the response. I checked the account, it is active and correlated with the user.

NM
Honored Contributor III
Honored Contributor III

@Srujan is the account name rule same in both environment?


If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'

Enable below under Security System 

rushikeshvartak_0-1726154957514.png

 


Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.