Information about local Active Directory groups
The Federation tab shows information about the local Active Directory user account that is linked to the Microsoft Entra ID user account.
Assignments to Microsoft Entra ID groups that are synchronized with the local Active Directory are not allowed in One Identity Manager. These groups cannot be requested through the web portal. You can only manage these groups in your locally. For more information, see the Microsoft Entra ID documentation from Microsoft.
Table 40: Local Active Directory group data
Synchronization with local Active Directory enabled |
Specifies whether synchronization with a local Active Directory is enabled. |
Last synchronization |
Time of the last Microsoft Entra ID group synchronization with the local Active Directory. |
SID of local group |
Security ID of the local Active Directory group. |
Adding Microsoft Entra ID groups to Microsoft Entra ID groups
Use this task to add a group to another group. This means that the groups can be hierarchically structured.
To assign groups directly to a group as members
-
In the Manager, select the Microsoft Entra ID > Groups category.
-
Select the group in the result list.
-
Select the Assign groups category.
-
Select the Has members tab.
-
Assign child groups in Add assignments.
TIP: In the Remove assignments pane, you can remove the assignment of groups.
To remove an assignment
- Save the changes.
To add a group as a member of other groups
-
In the Manager, select the Microsoft Entra ID > Groups category.
-
Select the group in the result list.
-
Select the Assign groups task.
-
Select the Is member of tab.
-
In the Add assignments pane, assign parent groups.
TIP: In the Remove assignments pane, you can remove the assignment of groups.
To remove an assignment
- Save the changes.
Assigning Microsoft Entra ID administrator roles to Microsoft Entra ID groups
This task only available for groups with the Assignable to administrator roles option enabled.
To assign administrator roles to a group
-
In the Manager, select the Microsoft Entra ID > Groups category.
-
Select the group in the result list.
-
Select the Assign administrator roles task.
-
In the Add assignments pane, assign administrator roles.
TIP: In the Remove assignments pane, you can remove assigned administrator roles.
To remove an assignment
- Save the changes.
Assigning owners to Microsoft Entra ID groups
A group owner can edit group properties.
To assign owners to a group
-
In the Manager, select the Microsoft Entra ID > Groups category.
-
Select the group in the result list.
-
Select the Assign owner task.
-
Select the table containing the owner from the Table drop-down at the top of the form. You have the following options:
-
In the Add assignments pane, assign owners.
TIP: In the Remove assignments pane, you can remove assigned owners.
To remove an assignment
- Save the changes.