Hello @GJoe · As of now, we just support onPremisesSamAccountName attribute to pass group name in the groups claim. Since we don't have sAmAccountName attribute for Azure AD (Cloud only) group, only object ID can be passed for those groups in the token. This is mentioned in the first 2 bullet points and the note under this section of the document you referred to. You may post an idea regarding this feature at our Feedback Portal, which is monitored by the product team. Kindly share the link to your feedback in this thread as well.
-----------------------------------------------------------------------------------------------------------
Please "Accept the answer" if the information helped you. This will help us and others in the community as well.