No new create task after account deletion (csv)

By accident, an account was deleted from a CSV source, but the role is still attached to the identity.

However, no new “create account” task is generated. Is this normal behavior?

I also have another question: When a certification revokes all entitlements from a CSV account, is it normal for the system to create a separate entitlement deletion task for each entitlement, rather than a single task containing all of them?
Is there a way to configure it so that only one task is generated, containing all the entitlements to be removed?

@zeross the role will trigger new account creation if its a connected source since its a file based source it will not trigger account creation task.

Also remove entitlement creates separate task for each entitlement

Thanks

Shantanu

But what can we do about it then?

It’s an automatically assigned business role, it’s still attached, but you cannot trigger the account creation task. So it appears that he has the necessary rights, but in reality, he doesn’t. And no one gets notified about this. Even if you are aware of the issue, there’s nothing you can do to trigger the account creation task again?

For the identity processing, this document might help to explain what is going on:

Role based access is only reviewed when an identity has authoritative source data changes or when there is a change to the role that is applied.

As far as your question on certification, I believe ISC will send the tasks individually.

@zeross regarding entitlement revokation, you’re certifier revoke entitlements directly or they revoke access profiles, roles ?