question

AConfusedUser avatar image
0 Votes"
AConfusedUser asked JamesTran-MSFT edited

Azure AD connector UpdateUser- write back to on prem?

I am looking at using the Azure AD Connector for Power Automate.
https://docs.microsoft.com/en-us/connectors/azuread/#update-user

If I update an account using this, will it sync back to my on premise AD?

azure-ad-connect
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

AndyDavid avatar image
0 Votes"
AndyDavid answered AndyDavid commented
· 2
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

To use the Azure AD connector it needs the Graph API permissions of Group.ReadWrite.All
User.ReadWrite.All
Directory.ReadWrite.All

Can those be granted to only scope to specific groups?

Would the Azure AD connector application using it have to get permissions domain / tenant wide or could it be scoped to just specific AD objects?

0 Votes 0 ·

Any scoping is done within AADConnect.
Groups can only be scoped as part of a pilot

https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-configure-filtering#group-based-filtering



1 Vote 1 ·