Forum Discussion
Azure roles for Group administration
I can't add members and owners to existing Azure groups, Add owner/members is greyed out.
I have the "Group Administrator" and "User Administrator" roles assigned.
There are no problems with groups that I have created myself.
Any clues is appreciated 🙂
10 Replies
How's your IAM, under AAD or on-prem?
- Johol62Copper ContributorAAD
what is your current permission in Azure AD ? are you a global admin ?
- Johol62Copper ContributorI have a bounce of permission but not the global administrator.
Guess that the "Group Administrator" should be sufficient.
It's the cloud security groups I can't add members/owners to.
Works fine for our global admins, but that's what we would expect 😉- LeonPavesicSilver Contributor
Hi Johol62,
you need to have a "Group Owner" (least privilege) and additional "User Administrator" role to be able to manage group membership.Least privileged roles by task - Microsoft Entra | Microsoft Learn
Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily. It also closes the item. If the post was useful in other ways, please consider giving it Like.
Kindest regards
Leon Pavesic