Skip to content

Azure does not sync member users from nested ad groups if source is not cloud #317

@vincentd-of

Description

@vincentd-of

We have a Entra ID setup where we have nested groups. For example:

aggregated = group1 + group2

Where group1 and group2 have member users, while aggregated doesn't.

The expectation is that the resulted sync towards OpenShift has all three groups available and that the aggregated group would have the members of both group1 and group2 assigned.

However, we observe that for the aggregated group this only works when its source is 'Cloud'. If the aggregated group source is 'Windows Server AD', it will have no memberships at all.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions