'User not in current user scope' error in Identity Portal Access module after enabling Risk - Identity Portal
search cancel

'User not in current user scope' error in Identity Portal Access module after enabling Risk - Identity Portal

book

Article ID: 206964

calendar_today

Updated On:

Products

CA Identity Portal CA Identity Suite

Issue/Introduction

After enabling Risk features in Identity Portal, users may encounter a "User not in current user scope" popup when searching for users within the Access module, even when those users are correctly identified and accessible in Identity Manager.

This issue is typically caused by insufficient attribute configuration on the Access module search screen. This article provides the steps to resolve this behavior by ensuring the correct attributes are included in the search configuration.

Environment

Identity Portal 14.x

Cause

The error occurs because the Risk-enabled Access module search screen requires specific attributes to perform risk evaluation. If essential identifying attributes are missing from the search screen configuration, the system cannot validate the user's scope, leading to the "not in scope" error.

Resolution

To resolve this issue, configure the Access module search screen to include the required identifying attributes:

  1. Navigate to the Portal Administration setup.
  2. Open the Access module configuration settings.
  3. Locate the search screen configuration section.
  4. Add the "User ID" and "Login ID" fields to the search screen attributes.
  5. Save the configuration and perform a test search.

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.