Users authenticating via Embedded Entitlements Manager (EEM) report that configured security policies for BusinessArea and JobstreamV2 are not being applied in the AAI Web UI, despite a successful "Resource Check" within the EEM UI.
Observed behaviors include:
*) or specific resource paths seem to be ignored by the AAI web interface.There are two primary causes for this behavior in version 24.4.0:
Jobstream resource class to the new JobstreamV2 class. If old, enabled policies still exist in EEM for the legacy Jobstream class, AAI may remain locked on the deprecated authorization path, which returns "DENIED" for all Web UI resource checks.If the environment was upgraded from AAI 24.3 or earlier, you must run the migration script to clean up orphaned policies:
enableAndDeleteEEMPolicies.sh (Linux) or .bat (Windows).If the issue is specifically with Jobstream visibility:
This will be fixed in AAI 26.0