IDCS Not Re-enforcing Group Policy Post-Clone
Summary
After a PROD -> NonProd clone of an ERP environment, IDCS is not re-enforcing users or group policy in that environmentContent
When we clone from PROD into a non-prod ERP environment, all of the security roles and users in the target environment are wiped out and replaced with those from PROD. This is “expected” but has unintended consequences. Since we use IDCS to create and manage users and roles in the environment, we need to spend significant time re-connecting all the IDCS groups to the in-environment roles as well as synchronizing IDCS’ knowledge of the list of users in the environment. Even after the configurations are done, IDCS does not attempt to re-apply any access or re-create any users that should
1