Role owner configuration in Identity Governance / Identity Manager integration
search cancel

Role owner configuration in Identity Governance / Identity Manager integration

book

Article ID: 219943

calendar_today

Updated On:

Products

CA Identity Suite CA Identity Governance CA Identity Manager

Issue/Introduction

When a new provisioning role is created using “Request a New Role Definition” (Role Management > Request a New Role Definition) in Identity Governance the Role owner is created correctly within Identity Governance.

There is a mapping in place to configure the owner

This data is then exported to Identity Manager via the connector (of type CA IdentityMinder). VST is showing the data of the owner, as per mapping, correctly

However, upon reviewing the Provisioning Role details in IM, the owner is not set to the one configured on the role level (in Identity Governance) but is the administrator configured on the connector level.

Why is the owner set in Identity Governance not getting to Identity Manager?

Environment

Release : 14.x

Component : GovernanceMinder(Role & Compliance Manager)

Cause

Working as per design.

Resolution

The Owner selected in Identity Governance is only for the approval purposes within Identity Governance and is not the same concept as Identity Manager Owner.

The Owner in Identity Manager is always set to be the user set on the connector level, to connect Identity Governance to Identity Manager (Universe Connector).