Microsoft Entra ID
Provisioning

Microsoft Entra Cloud Sync directory extensions for provisioning to Active Directory

In brief

The article was retitled and updated to focus on provisioning directory extensions to Active Directory with Cloud Sync, including group schema, scoping, and attribute mapping. Links now point to updated Cloud Sync resources and a group-provisioning scenario.

What Entra admins need to know

Administrators should use the updated references when following this guidance. The documented application identifier URI and Tenant Schema Extension App requirement remain included.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Directory extensions for provisioning Microsoft Entra ID to Active Directory

You can use directory extensions to extend the schema of users and groups,your groups and then use thosethese attributes for scoping and attribute mapping. If you're looking for directory extensions when provisioning from Active Directory to Microsoft Entra ID, seeYou can use the same steps that are outlined in the cloud sync directory extensions and custom attributes. doc.

For a step-by-step examples of extendingtutorial on how to extend the schema and then usinguse the directory extension attributesattribute with cloud sync provisioning to Active Directory,AD, see Scenario - Using directory extensions with group provisioning to Active Directory. That article covers both users and groups.

Ways to create directory extensions

You can create directory extensions in Microsoft Entra ID in several different ways. The following table provides links and additional information.

Method Description URL
MicrosoftMS Graph Create extensions using Microsoft GraphGRAPH Create extensionProperty
PowerShell Create extensions using PowerShell New-MgApplicationExtensionProperty
Using cloud sync and Microsoft Entra Connect Create extensions using Microsoft Entra Connect Create an extension attribute using Microsoft Entra Connect

Next step

[!div class="nextstepaction"] Use directory extensions when provisioning to Active Directory

Related contentAdditional resources

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…