06-25-2020 08:18 PM
@domari Hello,
Yes you understood correctly.
The thing is to be able to use LDAP or LDAP-S to connect to AzureAD you will need to use an intermediate called Azure AD Domain Services which requires a pay-to-use subscription. We want to reduce our cloud ans SaaS subscriptions footprint to a minimum and it would make us go the wrong way tho.
It seems like, as of today, being able to pull out groups mapping directly from AzureAD is not possible.