We have a collection with users and a collection with groups. We assign a simple application to a collection with users, that seems to be fine, we can see the app in the application catalog. We then assign the same app to a collection with just a security group in the collection, the members of that security group cannot see the app in the application catalog.
I am trying to trace what the server does when a the request user policy comes in, to see if there is a disconnect between the assignments and the members of the group.
Any ideas how to debug/troubleshoot this issue?