Forum Discussion
SpiShane
Mar 23, 2023Copper Contributor
AD group not fully synching Online
We have been setting up SharePoint Online for a few months now, and typically what we have been doing for ease of supporting going forward is setting up local AD Groups and giving those AD groups permissions within the SharePoint sites.
However with a recent AD group; looking on the Admin side of things it appears the AD group that is synched from on-prem to online, is only getting some of the members synched over. Ideas on what might be keeping everyone from moving over? I wasn't involved in the synch setup; but if there is anything I can look at, or point out to the AD admins it would be helpful.
- are all the members of that groups are also synced to Azure AD ?
- SpiShaneCopper ContributorYes, those members are, and I can add them to the SharePoint site directly. It is just within the AD groups they are in, they seem to be dropped or not synched over.
your issue is with the primary group of the users because Azure AD Connect doesn't support synchronizing Primary Group memberships to Azure AD. refer to the below article to change the primary
group of the users that are not synchronizing as members with the group
it's recommended to change the primary group to Domain Users.
Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily.