and more in a single search tool across platforms. Read the announcement here. |
10/26/2023 04:07 AM
Hello, hope you can help.
We have set up a connection with our Delinea instance. When we import accounts we are seeing that some accounts from Delinea are correlating to our users however we don't have an account correlation rule in place.
I've investigated the global configuration and the settings and it appears that there's nothing that would indicate this behaviour should occur. Similarly there is nothing in the documentation that would indicate this should occur without an account correlation rule in place.
Please could you advise?
Solved! Go to Solution.
10/27/2023 11:56 AM
@Alex_Terry : Would you be able to share the logs during the import timeframe also ImportAccountEntJSON?
10/29/2023 07:03 PM
Share correlation config
10/30/2023 04:30 AM
Hi @rushikeshvartak, @sk. Subbing in for Alex whilst he is away.
I've attached the ImportAccountEntJSON and the logs near the end of job import (if there's more needed or if there's something specific you're looking for, please let us know).
There is no User Account Correlation rule set on the endpoint. We are seeing the mapping occur automatically in the import and we can also see this in the logs: [quartzScheduler_Worker-3] DEBUG rest.RestProvisioningService - Mapping Users to accounts."
Best regards
11/08/2023 07:40 AM - edited 11/08/2023 07:51 AM
@AliW : Looks like in latest version it is by default it is correlating the accounts by matching with username when there is no correlation rule on respective endpoint. We also noticed the similar behaviour in latest version. For me it looks like a bug because nowhere in documentation it is mentioned that by default it correlates the accounts based on username. I would suggest to open a ticket with Saviynt Support to confirm if this is the expected behaviour or a bug
11/09/2023 01:17 AM
Hello @sk @Alex_Terry @AliW,
This is how the system design and it is expected behavior.
By default it will correlating the accounts by matching with username when there is no correlation rule on respective endpoint.
Thanks.
11/09/2023 01:23 AM
Hey @sudeshjaiswal, thanks for the reply. Just one quick follow up:
Can this behaviour be disabled in Saviynt?
11/09/2023 01:32 AM
Hello @Alex_Terry,
No, You wont be able to disable as thats the default behaviour.
If you do not to use the default co-relation rule, you can define your co-relation rule in the endpoint.
Thanks.
11/09/2023 06:45 AM
@sudeshjaiswal : Is this new behaviour in latest version? Because we haven't seen this behaviour in older version
11/09/2023 01:36 AM
Awesome, cheers for clearing that up. Thanks for all the help.