Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Azure AD Distribution group provisioning to users

New Contributor III
New Contributor III

Hi Team,

Our use case is to provision distribution groups to users in Azure AD.

We are using Azure AD connector for reconciliation and REST connector for provisioning of Azure AD roles & groups - (

We are getting below error :  "....Cannot Update a mail-enabled security groups and or distribution list..."

When I lookup for the error it says API supports read-only for distribution groups.

We have provided permissions to API as per 

Can anyone suggest a solution for this?

Are there any changes that need to be done to the REST connector in the AddAccessJSON for AADgroups?



Saviynt Employee
Saviynt Employee

@necoutinho - I am assuming that you are trying to grant access to distribution groups via "request access" tile on the ARS page.  

The way the O365 mail enabled group provisioning is supported in Saviynt is via Manage AAD group module. Please give it a read and check if this is helpful.


This is via birthright provisioning as well as ARS. The link shared is only working for security groups and not Distribution groups. I have already tested this