Azure AD Connect synchronization rules - Filtering: which AD objects are synchronized to

แชร์
ฝัง
  • เผยแพร่เมื่อ 1 ก.พ. 2025

ความคิดเห็น • 5

  • @patriklemos420
    @patriklemos420 ปีที่แล้ว

    Great Video! but Would mind to explain how to stop sync attributes like Company name, Department and Job Tittle from AD, in order to manage directly in AAD?

    • @dawavaz
      @dawavaz 11 หลายเดือนก่อน

      Did you ever sort this out? Looking for the same answer..

    • @oxfordcomputertraining
      @oxfordcomputertraining  9 หลายเดือนก่อน

      Sorry for the delay - Users that are synchronized to the cloud using Microsoft Entra Connect are termed “on-premises mastered”, and this gives us a clue as to the fact that certain attributes for these sync’ed users can’t be edited in the cloud. The only way to update these attribute values is via synchronization from AD.
      So while it is possible to prevent attribute values such as JobTitle from synchronizing to Microsoft Entra ID (see this excellent article learn.microsoft.com/en-us/entra/identity/hybrid/connect/how-to-connect-sync-change-the-configuration#do-not-flow-an-attribute), you still don’t gain the ability to edit them directly in Microsoft Entra ID, and if you attempt to update them using the Graph module, it will fail with “Unable to update the specified properties for on-premises mastered Directory Sync objects or objects currently undergoing migration.

    • @dawavaz
      @dawavaz 9 หลายเดือนก่อน +1

      @@oxfordcomputertraining That's a bummer - Thank you so much for your reply.

    • @oxfordcomputertraining
      @oxfordcomputertraining  9 หลายเดือนก่อน

      @@dawavaz No problem 🙂 Sorry we couldn't give you better news!