Hi Guys,
We have different access policies to provision an account and roles.
role1 assign to access policy1 -- It will provision the user to AD account.
role2 assign to access policy2 -- It will assigns entitlements to AD account
These poilcies are role based access policies.
So if user1 provisions to role1 then OIM triggers access policy1 and provision to an AD account. The account is getting provisioned and i can see in the target system.
If user2 provisions to role2 then OIM triggers access policy2 and trying to creating same AD account and its failing. But it should not provision another account. Not sure why evaluate user policies is trying to create another account.
Today i ran the entitlement list job and catalog sync job to get the roles from a target system.
Please help me out.