When submitting an entitlement request for an identity, the system is displaying incorrect policy violations. Specifically, we are experiencing this issue with Entitlement SOD policies. Please note that these policies were added to the identities via the backend.
For example, when requesting an entitlement for Application1, policy violations related to other applications, which the user already has, are being flagged instead. Please refer the below screenshots for the same
Please check your policy configuration details. You may have configured it in combination with other applications. This behavior, where it checks for existing access during a request, is expected.
We are encountering this issue with only some users, even though policies were assigned to all identities through the backend. Is there a way to prevent this policy detection from occurring repeatedly for these specific users?