Azure AD Questions

Hi all,

I am new to One Identity products and possibly looking at purchasing Active Roles to automate new user requests from Service Now but I have a few questions that i hope you can help me with:

Environment

We currently create users on our on premise Active Directory and then sync to Azure AD using AD connect (every 30 minutes).

Questions

1. Is it possible to add users directly to Azure AD groups (cloud only, not on-premise and then synced to AAD using AD connect)

2. Can Active Roles create groups directly in AAD, not on-premise and then synced to AAD using AD connect

3. Our long term strategy is to move away from on-premise Active Directory and go cloud only, can Active Roles create new user accounts directly in Azure AD (not on-premise first and then synced). 

Thanks in advance.

Ashley

Parents Reply
  • Hi

    Thanks for the quick reply. 

    Do you have any links to documentation backing up those points? The reason i ask is that a pre-sales consultant from One Identity said that its not possible to add a new user directly to security groups in AAD or O365 and that it can only add to on-premise groups and synced to AAD but not all of our groups originate on-premise. 

    Do you have any links/additional information on the upcoming release? 

Children
  • The consultant was correct about cloud-only security groups.  The functionality that is in place today is for unified groups.  (Yes, Msft does make this all very confusing)

    I don't have anything I can point you to documents-wise regarding the new release.  Your Sales team may be able to provide you that.