Entra ID Group Mappings

Map Azure Entra ID groups to dashboard workgroups. Members of a mapped group are automatically provisioned on first login — no manual user creation needed.

Configured Mappings

No group mappings configured yet. Add one below.
Loading…
Display Name Entra Group Object ID Workgroup Default Permissions

Add Group Mapping

Section

Auto-provisioned users will have unrestricted access (same as admins without the admin flag).

How it works

  • Users sign in via Sign in with Microsoft on the login page.
  • Their Entra group memberships are checked against this table.
  • Matching users are auto-created and assigned the corresponding workgroup(s).
  • If a user is in multiple mapped groups they receive all matching workgroups.
  • Workgroup assignments are re-synced from Entra on every login.

Required App Registration setup

  • Token configuration → Add groups claim → Security groups
  • API permissions → Microsoft Graph → Delegated: openid, profile, email