Forum Discussion

Johol62's avatar
Johol62
Copper Contributor
Jul 05, 2023

Azure roles for Group administration

I can't add members and owners to existing Azure groups, Add owner/members is greyed out.
I have the "Group Administrator" and "User Administrator" roles assigned.

There are no problems with groups that I have created myself.

Any clues is appreciated 🙂

 

10 Replies

    • Johol62's avatar
      Johol62
      Copper Contributor
      I have a bounce of permission but not the global administrator.
      Guess that the "Group Administrator" should be sufficient.
      It's the cloud security groups I can't add members/owners to.
      Works fine for our global admins, but that's what we would expect 😉

      • LeonPavesic's avatar
        LeonPavesic
        Silver Contributor

        Hi Johol62,

        you need to have a "Group Owner" (least privilege) and additional "User Administrator" role to be able to manage group membership.

        Least privileged roles by task - Microsoft Entra | Microsoft Learn

        Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily. It also closes the item. If the post was useful in other ways, please consider giving it Like.

        Kindest regards

        Leon Pavesic

Resources