If an access profile is deleted - is access automatically removed from the identity?
I think you are looking for identity-security-cloud but you tagged identityiq , if yes please update the tag.
The answer is no, any time an access object (role or access profile) is deleted from ISC, the access is kept on the identity. You have to purposefully remove the access by performing an access request removal to get rid of the access.
The access profile must not be in use if you want to delete it. Otherwise you may not be able to delete it.
And by “in use” @kdfreeman means not used in an role or lifecycle state.
Great point, @kdfreeman . I’d like to add some additional information to it
If access profile is added in any provisioning, it won’t go delete. When you are trying to delete it, you will get notification as follow.
-
When you try to delete it -
-
When the Access Profile in use -
This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.