Azure AD dynamic groups
Dynamic groups are a way to create rules and filters that can be used to automatically populate group memberships. The ThoughtFarmer Employee Directory Connector (EDC) does not support these types of rules within the EDC itself. However, many Identity Providers support this within their system. Azure AD is one of them.
With Azure AD dynamic groups, admins can create rules that will allow for automatic membership based on a set of criteria. ThoughtFarmer can then sync with these dynamic groups to pull in members just like any other group.
Configuration of dynamic groups
To create dynamic groups, simply follow the directions to Create or edit a dynamic group in Azure Active Directory.
You can use their rule builder to create complex logic that the dynamic groups can be based on.
Synchronization considerations
Dynamic groups on the Azure AD side are not immediate. Changes may not be reflected until the rules have been processed. According to their documentation this may be up to a 24 hour period. Be aware of this limitation and timing when planning change propagation from Azure to ThoughtFarmer. You can always check the status of the processing on the Azure AD side. Once the rule is processed then the group membership is available to be synced with ThoughtFarmer via the scheduled group sync task, or triggered manually.
Comments
0 comments
Please sign in to leave a comment.