Currently we have Radiant Logic connected to IIQ using the LDAP connector. We have both an Application account and group aggregations setup. Both the Account and Group aggregations worked when when setup the app. Now only the account aggregation is working. We run the account aggregation and it pulls in users and entitlements. When we run the group aggregation it is clearing out all the entitlements the account aggregation pulled in.
We do need to have both aggregations work as we will have some entitlements that will not be associate to a user that we need to make sure get pulled in using the group aggregation.
Looking to see if anyone has ran into this before. We have had a ticket open with sailpoint now for a couple of weeks and no one has been able to point us to what might be causing this.
Just a couple questions to get clarity on your issue.
Are you promoting the entitlements to managed attribute during account aggregation?
Is the group aggregation providing you with all the entitlements in the application, including the one which was pulled in via account aggregation.?
Are you promoting the entitlements to managed attribute during account aggregation? Yes, we are
Is the group aggregation providing you with all the entitlements in the application, including the one which was pulled in via account aggregation.? It is