If more than one Active Roles configuration is managing the same domain, Group family members are being removed by a dynamic group process if the cross domain membership is enabled for the dynamic group built-in policy.
This happens if the Active Roles configurations are version ActiveRoles Server 6.9 and Active Roles 7.x, or if they are both version Active Roles 7.x.
STATUS
This is being tracked as Defect ID 668247 and is resolved by implementing a registry key on all Active Roles 7.x Active Roles Administration hosts.
© 2021 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy