The Zurich release has arrived! Interested in new features and functionalities? Click here for more

Azure AD Group Membership not syncing

aushdgf
Tera Contributor

Hello all,

 

I have on prem AD users and groups syncing to AAD, which I then provision to SNOW. Everything from AD to AAD is syncing correctly, however I am unable to get group memberships to sync over to SNOW.

 

I have the Scope option in AAD for the SNOW app set to "Sync all users and groups" and have assigned a couple of groups under Users and Groups to the SNOW app.

Screenshot 2022-10-12 100526.png

Screenshot 2022-10-12 100659.png

 

However the provisioning only shows 2 groups being sync'd over. If I provision on demand, the group will sync over, but with no members.

Screenshot 2022-10-12 100829.png

What am I missing? Shouldn't all users regardless of if they are assigned to SNOW or not be provisioned based on the scoping settings?

1 REPLY 1

Kit Cheong
Giga Guru

In the group's Attribute Mapping add an entry for 'members'.

 

Group attribute mapping.png