Hello, We are evaluating Syncope to be our provisioning engine, I could not find a way to achieve following MUST HAVE requirement in our project:
Associate MULTIPLE target resource entitlements (ex. ldap groups) to a ROLE: such that user assigned to the role will be provisioned corresponding resource entitlements. Observation: Single Resource entitlement can be synchronized (reconciled) as ROLE in syncope and assigned to the user. Corresponding feature in proprietory software --> Oralce Identity Manager: Access Policy IBM Tivoli Identity Manager: Provisioning Policy Thanks
