Hello,
I want to understand if this is actually manageable for on-premise environment, or this is intended only for the BC cloud/online option.
We have Windows groups that are synced with Azure AD groups.
In BC we create a user card for the group with type Windows Group, and add permissions.
On the user Card - there are no permissions.
When user logs in through link that uses Windows authentication - all works great - the only downside is the additional credential entering at login.
When we add the Microsoft 365 e-mail in the user card, and he uses a link that uses O365 authentication - in the BC user card we see that the Status becomes Active - so the login was successful, but the user doesn't have any permissions.
Is there a way that BC can read the users Azure AD group memberships and assign permissions to user based on Azure AD group? (in Azure the BC app has been given permissions to read users, group memberships etc.)
Thanks for Your time!
Thanks, Marco,
so it seems this is not working yet like I want to :)
Hello,
This is on the ideas site and also under discussing within product group:
Hope this clarifies.
Hi, Daniele,
we tried this with BC 19.5 with no success.
and also we tried this with latest BC21.2 : learn.microsoft.com/.../authenticating-users-with-azure-ad-openid-connect
The results were the same as described in initial post.
I cannot tell for sure - there is a possibility that we might have configured something wrongly - but tried this several times and the result is always the same. So looking if anyone has succeeded this for on-prem BC.
Sohail Ahmed
1,200
YUN ZHU
1,006
Super User 2025 Season 1
Mansi Soni
864