Skip to main content
Question

Dynamic AD Groups for Content

  • October 30, 2024
  • 3 replies
  • 33 views

Forum|alt.badge.img+1

Hello,

We set up a new Metallic environment recently. We are backing up Exchange/OneDrive for a small subset of people. I added these people to a Static AD group created in OnPrem AD. Now I realise that a Dynamic AD group would be better. I see that if I convert the Static group to a Dynamic group, all members will be removed. I found that I already have a Dynamic AD group that I can use. Can I start using the Dynamic group instead of the Static group? The screenshot may make more sense.

Regards

Fergus

 

3 replies

Damian Andre
Vaulter
Forum|alt.badge.img+23
  • Vaulter
  • 1287 replies
  • October 30, 2024

Welcome!

Yes, it appears dynamic security groups are supported for content selection:

 


Forum|alt.badge.img+1
  • Author
  • Byte
  • 3 replies
  • October 30, 2024

Thanks Damian,

In the screenshot, I am using a static security group, can I remove that group and add my dynamic group instead without causing any issues?

Regards

Fergus


Arvind
Vaulter
Forum|alt.badge.img+3
  • Vaulter
  • 24 replies
  • December 12, 2024

Good Day ​@FergusM,

When you are referring Dynamic Group, I guess you are referring to this: https://learn.microsoft.com/en-us/entra/identity/users/groups-create-rule.

If yes, it should be supported. 


So, here’s how it works just incase it helps better understand the scenario.

There is an Discovery happening every 24 hours once for any Office365 workloads, and it will discover all the user account’s under the AD Group assigned (Irrespective of Dynamic or Static), and when checking let’s imagine you have 100 User’s and next day the user’s list have increased to 150 User’s, so they will be adding 50 new user’s to existing 100 list and next day the user’s list is decreased to 100 User’s again, so it will reduce back to 100 User’s for backup’s, but those 50 User’s data that was backed up earlier will stay based on the retention being defined, but only the User’s part of the AD Group will be protected, so whether it’s Static or Dynamic we do sync with AAD to check the user’s list whenever discovery happens.

Hope this helps in clarifying your question here, let me know if any questions or concerns! 


Reply


Cookie policy

We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.

 
Cookie settings