Entra ID Group Mappings

Map Azure Entra ID groups to dashboard workgroups. Members of a mapped group are automatically provisioned on first login — no manual user creation needed.

Configured Mappings

No group mappings configured yet. Add one below.
Loading…
Display Name Entra Group Object ID Workgroup Default Permissions

Add Group Mapping

Section Read Write Delete

Auto-provisioned users will have unrestricted access (same as admins without the admin flag).

How it works

  • Users sign in via Sign in with Microsoft on the login page.
  • Their Entra group memberships are checked against this table.
  • Matching users are auto-created and assigned the corresponding workgroup(s).
  • If a user is in multiple mapped groups they receive all matching workgroups.
  • Workgroup assignments are re-synced from Entra on every login.

Required App Registration setup

  • Token configuration → Add groups claim → Security groups
  • API permissions → Microsoft Graph → Delegated: openid, profile, email