I have very strange behavior with one resource/WF at my customer. The
customer has one resource which must be approved (contains custom WF).
This resource is used in several permission roles. And these permission
roles are in relation ship with some business roles (not important i
guess). And now the strange behavior. If user gets a business role
(let's say BR1) then the WF from the our resource is started. But if the
user gets another business role (BR2) then the resource is automatically
granted. And really I do not know why. I have double checked it several
times but I do not see any mistake in the configuration. I checked also
object by LdapBrowser because we migrated IDM during a weekend.
Do you have any idea why one role assignment starts a WF from a resource
but second role does not start it and it is automatically approved?


