Access Policy Harvesting (AP Harvest) not Harvesting/Linking Accounts and Entitlements Provisioned by Request
(Doc ID 2712299.1)
Last updated on JANUARY 19, 2022
Applies to:
Identity Manager - Version 12.2.1.3.0 to 12.2.1.4.0 [Release 12c]Information in this document applies to any platform.
Symptoms
In an Oracle Identity Manager (OIM) environment accounts and entitlements can be provisioned by different means.
One of them is by the approval of a Request.
Below example shows a user who got his/her account and entitlement assigned by an approval request
An admin user after creating an access policy for the application associated to the above account and entitlement,
making the user a member of the role associated to the access policy,
and running the Evaluate User Policies schedule job
expects that the account and entitlement get harvested.
However on looking at the provisioning mechanism associated to the account (OIU table) and to the entitlement (ENT_ASSIGN table) they are still the same
Cause
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Symptoms |
Cause |
Solution |
References |