You should be able to modify the attribute mappings as detailed here: https://learn.microsoft.com/en-us/entra/identity/hybrid/cloud-sync/how-to-configure-entra-to-active-directory#attribute-mapping
Azure AD Cloud Sync Group Writeback
Hello All,
When we sync cloud groups from Entra to AD using Cloud Sync, group names get appended with objectID, wanted to if it's by design or we can change to it just display the name?
2 answers
Sort by: Most helpful
-
-
Givary-MSFT 34,891 Reputation points Microsoft Employee
2024-06-20T07:46:53.7466667+00:00 @AS Thanks you for reaching out to us, apologies for the delay in response I wanted to make sure repro the above-mentioned scenario in my lab - When we sync cloud groups from Entra to AD using Cloud Sync, group names get appended with objectID, wanted to if it's by design or we can change to it just display the name?
The object guid is appended by design to prevent multiple groups matching to the same object in AD. The mapping can be updated but make sure the final DN (generated from CN and parentDN) is unique.
Default mappings configuration:
To Achieve your requirement changed the mappings as mentioned below:
After the above changes, able to sync the security group (from entra id to on-premise ad), able to sync the group with proper display name (without any number appended).
Note: Above changes are not recommended unless there is strong purpose to achieve the above outcome. The original expression is provided/designed after through discussion, hence changing this is not recommended.
Let me know if you have any further questions, feel free to post back.
Please remember to "Accept Answer" if answer helped, so that others in the community facing similar issues can easily find the solution.