We have identified an unexpected behavior in access requests processed through the SailPoint IdentityNow for Service Catalog v3.2 integration.
Issue 1: These requests involve multi-level approvals configured as follows:
Level 1 (L1): Approval in ServiceNow
Level 2 (L2) and Level 3 (L3): Approvals in Identity Security Cloud (ISC)
Observed Behavior
After L1 approval, the expected behavior occurs: L2 approvals configured in ISC are correctly created in ServiceNow via the catalog integration. However, once L2 approvals are completed, additional L3 approvals are being generated, even though no L3 approval is configured. These unexpected L3 approvals are exact duplicates of the L2 approvers in the observed cases. Once these duplicated L3 approvals are approved, the request is immediately cancelled, and the approval state in ServiceNow is set to Rejected, despite all approvals being granted. Even though these requests are marked as cancelled, the respective access is still being provisioned.