Click HERE to see how Saviynt Intelligence is transforming the industry. |
05/08/2024 01:53 AM
We are trying to request an access for an account which is Suspended from import service. We are getting below error
Fyi, we have enabled 'Disable New Account Request if Account already exists', as an account got suspended from import service, it should allow to make request for access for same account if we enable that, but we are getting error.
Please find the logs as well.
what could be the issue? Any suggestions?
05/08/2024 02:23 AM
1.May i know what status of accout Saviynt and Target system also?
2.Check any request in pending approval page
3.confimr Account status in Accoutn table?
05/08/2024 03:07 AM - edited 05/08/2024 03:10 AM
As this for AD Group based application we have removed that group access for that account, Account status will be active in Parent Active Directory and in Child endpoint it is like 'Suspended from Import service' after running account import job for AD Group based application.
There is no request pending for that account.
Account status is like 'SUSPENDED FROM IMPORT SERVICE'
05/08/2024 03:40 AM
Please share account details screenshot including name & status
05/08/2024 04:07 AM - last edited on 05/08/2024 05:40 AM by Sunil
Please find the screenshot for you info
[This message has been edited by moderator to mask sensitive info]
05/08/2024 04:10 AM
Did you updated account status and name manually ? Via query?
05/08/2024 04:17 AM
No, we just removed the child endpoint group access and ran Account import job for child endpoint.
05/08/2024 05:25 AM
Did you validated removing user mapping from account ?
05/08/2024 05:33 AM
No, we didn't tried.
05/08/2024 06:09 AM
@Venkatesh0510 Similar any account is endpoint level ? status ?
05/08/2024 06:49 AM
please find screenshot below
we tried to request an access we are getting like this
05/08/2024 10:23 AM - edited 05/08/2024 10:34 AM
@Venkatesh0510 : In AccountName rule make sure that Check Unique Account is not selected for Suspended From Import Service. In case if you see ALL by default I would suggest to remove it and select the required status which you want to check for uniqueness and make sure you have not selected Suspended From Import Service status as one of it.
05/08/2024 08:19 PM
Remove check for uniqueness from Account Name rule also share logs in text file format issue persist
05/08/2024 06:07 AM
Removing user mapping from an account that will work, It is manual effort right.
Everytime we can't remove user mapping when user comes to re - request for that access.
If there is any other config to do, please suggest.
fyi, we tested the same thing in another tenant, it is working without removing user mapping only.
05/08/2024 07:07 AM
Hi @Venkatesh0510, can you check status mapping under account name rule and confirm
05/08/2024 08:06 PM
@Venkatesh0510 Can you try one @Saathvik suggested think please