Forum Discussion

StephanGee's avatar
StephanGee
Iron Contributor
Dec 14, 2020
Solved

Teams Aadsync adding and deleting users - known issue but no official documentation

Hi everyone,

 

this is happening a lot and there is still no official document about this.

What exactly does the Teams Aadsync?

 

I have a team where it added 8 users then removed 2. All users were part of a security group. But afaik know there is not "automatic group membership"

The Teams has no "dynamic group membership" defined.

 

So what triggers this behaviour?

 

I need to explain it to our users and the management.

Best regards

Stephan

 

 

  • StephanGee 

    Found the action that triggers that information.

     

    If you want to add the permission to a library but you go with this entry point:

    Then you add some users as "members" - they seem to be added to the AAD group but not yet to Teams.

    Short time later:

     

    Mystery solved 🙂 Thanks for your directions

     

4 Replies

  • Hi, Tony Redmond just posted this https://office365itpros.com/2020/12/14/membership-sync-azuread-teams/

    Does that answer your question? (the underlying workflow).
    • StephanGee's avatar
      StephanGee
      Iron Contributor

      ChristianBergstrom 

      Well. Not really. I already had a look into this.

       

      We have AAD Connect - we get the Office 365 Group synced to our AD but this is a one way sync. So there is no adding to the Azure AD group. (Well users find ways... but normally we teach them to use Teams for this)

       

      The owners added a library to the underlying SharePoint page and then tried to add a security group to that library by breaking inheritance.

      It must have to do something with that action. I am trying to reverse engineer with the audit log (would be easier if it could be scoped to a certain Team though)

      • StephanGee's avatar
        StephanGee
        Iron Contributor

        StephanGee 

        Found the action that triggers that information.

         

        If you want to add the permission to a library but you go with this entry point:

        Then you add some users as "members" - they seem to be added to the AAD group but not yet to Teams.

        Short time later:

         

        Mystery solved 🙂 Thanks for your directions

         

Resources