Identity Policy Set Evaluation Behavior During Provisioning Manager Updates - Identity Manager
search cancel

Identity Policy Set Evaluation Behavior During Provisioning Manager Updates - Identity Manager

book

Article ID: 210155

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Suite

Issue/Introduction

This article explains the evaluation behavior of the Identity Policy Set within Identity Manager (IDM) when user settings are modified, specifically regarding how operations performed in the Provisioning Manager impact policy enforcement.

Environment

Identity Manager 14.x

Cause

Operations performed directly via the Provisioning Manager do not trigger the task execution pipeline required to evaluate Identity Policy Sets. Similarly, inbound synchronization updates the user store directly, bypassing the task execution logic that would otherwise trigger policy evaluation.

Resolution

To ensure Identity Policy Sets are correctly evaluated after making changes in the Provisioning Manager:

  1. Complete the required operations within the Provisioning Manager.
  2. Navigate to the User Console in Identity Manager.
  3. Access Tasks > Policies > Synchronize User.
  4. Execute the "Synchronize User" task to trigger the necessary policy evaluation.

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.