Thanks that worked perfectly!
In an effort to adhere better to the way in which GovernanceMinder adds groups, is there alternative way add groups via the assignment of a role/template combo? I've experimented a bit with this in the past day and although the group is successfully added to the endpoint account, it looks as though per template assigned idm is attempting a create on the endpoint. I say attempting because after our 'birthright' role is added, each subsequent role/template pair results in the error:
"Exception encountered: Global 'Userid' provisioning role memberships added successfully, Associated accounts creations added successfully. Associated accounts creation or update failed: ( ... failures: 1)"
Thanks
Link