Issues with Entra ID group Advance filtering

Hello,

We have an Entra SaaS configuration, we have tried advanced filtering which works when we remove owner and manager attributes from schemas. But we would like to keep the owner and manager attributes and still use NE operator in group filtering.

Is there a way we could utilize advanced filtering without removing these attributes in ISC?

Unfortunately this is a limitation that Microsoft would need to fix.

”The Azure API does not support the advanced query filters while also using an expanded attribute such as manager in the URL. When using the advanced filters, ensure that you remove the manager attribute from the account schema and remove the owners attribute from the group schema.”

We were on the same boat as you. We had a requirement to bring B2B users from entraID and use it as Authoritative source however due to this limitation we decided to use servicenow source as an authoritative as it was synched to entra.