Skip to content

Commit d01e128

Browse files
authored
Merge pull request #190658 from rolyon/rolyon-users-groups-setting-update-v3
[Azure AD roles] Security Groups setting v3
2 parents 79617c1 + be0ca94 commit d01e128

File tree

1 file changed

+2
-11
lines changed

1 file changed

+2
-11
lines changed

articles/active-directory/enterprise-users/groups-self-service-management.md

Lines changed: 2 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,7 @@ ms.service: active-directory
1010
ms.subservice: enterprise-users
1111
ms.workload: identity
1212
ms.topic: how-to
13-
ms.date: 07/27/2021
13+
ms.date: 03/22/2022
1414
ms.author: curtand
1515
ms.reviewer: krbain
1616
ms.custom: "it-pro;seo-update-azuread-jan"
@@ -40,7 +40,7 @@ Groups created in | Security group default behavior | Microsoft 365 group defaul
4040

4141
## Make a group available for user self-service
4242

43-
1. Sign in to the [Azure AD admin center](https://aad.portal.azure.com) with an account that's been assigned the Global Administrator or Privileged Role Administrator role for the directory.
43+
1. Sign in to the [Azure portal](https://portal.azure.com) or [Azure AD admin center](https://aad.portal.azure.com) with an account that's been assigned the Global Administrator or Privileged Role Administrator role for the directory.
4444

4545
1. Select **Groups**, and then select **General** settings.
4646

@@ -71,9 +71,6 @@ The group settings enable to control who can create security and Microsoft 365 g
7171

7272
![Azure Active Directory security groups setting change.](./media/groups-self-service-management/security-groups-setting.png)
7373

74-
> [!NOTE]
75-
> The behavior of these settings recently changed. Make sure these settings are configured for your organization. For more information, see [Why were the group settings changed?](#why-were-the-group-settings-changed).
76-
7774
The following table helps you decide which values to choose.
7875

7976
| Setting | Value | Effect on your tenant |
@@ -89,12 +86,6 @@ Here are some additional details about these group settings.
8986
- If you want to enable some, but not all, of your users to create groups, you can assign those users a role that can create groups, such as [Groups Administrator](../roles/permissions-reference.md#groups-administrator).
9087
- These settings are for users and don't impact service principals. For example, if you have a service principal with permissions to create groups, even if you set these settings to **No**, the service principal will still be able to create groups.
9188

92-
### Why were the group settings changed?
93-
94-
The previous implementation of the group settings were named **Users can create security groups in Azure portals** and **Users can create Microsoft 365 groups in Azure portals**. The previous settings only controlled group creation in Azure portals and did not apply to API or PowerShell. The new settings control group creation in Azure portals, as well as, API and PowerShell. The new settings are more secure.
95-
96-
The default values for the new settings have been set to your previous API or PowerShell values. There is a possibility that the default values for the new settings are different than your previous values that controlled only the Azure portal behavior. Starting in May 2021, there was a transition period of a few weeks where you could select your preferred default value before the new settings took effect. Now that the new settings have taken effect, you are required to verify the new settings are configured for your organization.
97-
9889
## Next steps
9990

10091
These articles provide additional information on Azure Active Directory.

0 commit comments

Comments
 (0)