Azure AD Cloud Sync Group Writeback

AS 0 Reputation points
2024-06-11T07:33:25.5466667+00:00

Hello All,

When we sync cloud groups from Entra to AD using Cloud Sync, group names get appended with objectID, wanted to if it's by design or we can change to it just display the name?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,579 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Vasil Michev 100.1K Reputation points MVP
    2024-06-11T17:17:56.53+00:00

  2. Givary-MSFT 30,841 Reputation points Microsoft Employee
    2024-06-20T07:46:53.7466667+00:00

    @AS Thanks you for reaching out to us, apologies for the delay in response I wanted to make sure repro the above-mentioned scenario in my lab - When we sync cloud groups from Entra to AD using Cloud Sync, group names get appended with objectID, wanted to if it's by design or we can change to it just display the name?

    The object guid is appended by design to prevent multiple groups matching to the same object in AD. The mapping can be updated but make sure the final DN (generated from CN and parentDN) is unique.

    Default mappings configuration:

    User's image

    To Achieve your requirement changed the mappings as mentioned below:
    User's image

    After the above changes, able to sync the security group (from entra id to on-premise ad), able to sync the group with proper display name (without any number appended).

    User's image

    Note: Above changes are not recommended unless there is strong purpose to achieve the above outcome. The original expression is provided/designed after through discussion, hence changing this is not recommended.

    Let me know if you have any further questions, feel free to post back.

    Please remember to "Accept Answer" if answer helped, so that others in the community facing similar issues can easily find the solution.