Which action will resolve this access issue?
Create a new group. Add users to the new group to provide access.
Correct the time on the Active Directory domain controllers.
Remove the account. Re-add the account to the organization that is integrated with IAM Identity Center.
Correct the permissions on the Active Directory group so that IAM Identity Center has read access.
Explanations:
Creating a new group and adding users will not resolve the issue unless the permissions are correct in the existing group.
The time on the Active Directory domain controllers may affect authentication, but this is not directly related to the issue of access denial via IAM Identity Center.
Removing and re-adding the account does not address the underlying issue of permissions on the Active Directory group.
IAM Identity Center needs read access to the Active Directory group. Correcting the permissions ensures IAM Identity Center can properly access and validate user membership for authentication.