What does this privilege control? Is this privilege granting rights within IDM itself or is IDM suppose to provision rights to a target system like SAP or AD? I ask because if it's within IDM, I could see why the trace log is so short. If by adding this privilege IDM is supposed to provision rights out to an external system, I would then check to make sure the account / system privileges are properly applied to this user and then check the modify task that's suppose to fire off as a result of adding a privilege to external systems. If all you're getting back is 7 lines, the core of your issue is, why aren't the tasks that actually do the work being executed? I wish I was sitting in front of your system so I could look through it and determine what's going wrong but unfortunately, that costs money.
↧
Re: remove privileges not allowed
↧