some machines are not syncing from SCCM to AAD group

haZ 21 Reputation points

i have an SCCM collection synched with Azure AD group .. just some of the machines are not being synched to the Azure AD group while they exist in SCCM collection .
any idea where to start troubleshooting ? all logs on Site server seems ok ( SMS_AZUREAD_DISCOVERY_AGENT.log) .

Microsoft Configuration Manager
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Jason Sandys 31,121 Reputation points Microsoft Employee

    This generally happens when the resource in ConfigMgr doesn't have an AAD ID populated.

    The log for this AAD group sync, starting in 2002, is CollectionAADGroupSyncWorker.log.

    0 comments No comments

  2. Amandayou-MSFT 11,021 Reputation points

    Hi @haZ ,

    When Azure AD Group sync is not working as expected please double check the following areas:

    ->Validate Cloud Management configured successfully
    ->Validate devices are (Hybrid) Azure AD registered (Azure Active Directory user discovery)
    ->Validate SSL communication (Enhanced HTTP)

    And detailed information about checking areas, please refer to the following link:
    Note: This is non-official Microsoft article just for your reference.

    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.