The most common cause for this kind of behavior would be one of the 2 scenarios:
The entitlement hasn’t been linked as an IdentityEntitlement on the Identity (refresh the Identity with the Refresh Identity Entitlements option selected should resolve this issue)
The entitlement has been assigned indirectly via role request/assignment
Note: #1 is also one of the most common reasons entitlements don’t show on an Access Review
Hi
Entitlements are not getting populate in manager user access–>Remove section because the identity selected is not populated with EntitlementGoup. To populate this we need to run refresh identity task with option ‘Refresh Identity Entitlements for all links’. once it is populated we are able to see in remove entitlement.
Upon investigating on this issue, we finally found out why we see this behavior.
In our project we have lot of Roles implemented (Business Roles, IT Roles, and SSO), so all our entitlements that are associated with Roles in IIQ will not populate in the remove access page.
If the entitlement is configured as requestable, IIQ will allow you to search and add through the “Manage User Access”, but it won’t give result while removing.
So the way to remove this entitlements would be if the roles are untagged from user’s cube automatically the entitlement would also get removed.