Thank you for reaching out.You will need to
- Create an Entra login on the primary and on the geo-secondary servers for your Entra group.
- Create a user for this login in each database on the primary server and grant this user the necessary permissions in each database.
- Drop the login on the primary server.
Please be aware that in case of a geo-failover, the Entra group will have access to the new primary.
For more information about Entra logins, they should see Microsoft Entra server principals - Azure SQL Database & Azure SQL Managed Instance & Azure Synapse Analytics | Microsoft Learn.
Regards,
Oury