Glossary

Group Writeback

An Entra Connect feature that writes cloud Microsoft 365 Groups back to on-premises Active Directory.

Group writeback is the Entra Connect / Entra Cloud Sync feature that synchronises cloud Microsoft 365 Groups back to on-premises Active Directory, allowing on-prem applications to consume cloud groups via standard AD membership. Without group writeback, Microsoft 365 Groups exist only in Entra ID and aren't visible to on-prem services. With it, those groups appear in AD (as distribution-list-style or security-style objects) and can be referenced in on-prem ACLs, application authentication, and group policy. Required for scenarios where cloud-created groups need to gate on-prem resource access. Configured in Entra Connect; supports specific group types based on the current Microsoft implementation.