Home > User Management > Manage Groups
Export to PDFWhen you click a tenant name on the User management page, you switch to the tenant level. On the User management > Groups page of a specific tenant, you can find groups in different types and perform operations to manage groups.
Microsoft 365 Groups
Distribution groups
Security groups
Mail-enabled security groups
Application groups
In a hybrid tenant, each group list, except for Microsoft 365 Groups, includes a Source column that explicitly identifies the origin of each group.
Cloud – Indicates that the group is stored and managed exclusively within Microsoft Entra ID (cloud-only), with no on-premises association.
On-premises – Indicates that the group is hosted and managed in an on-premises Active Directory (AD) environment, without synchronization to the cloud.
Hybrid – Indicates that the group is synchronized between an on-premises AD and Microsoft Entra ID. This synchronization is typically managed via directory synchronization tools like Azure AD Connect. During Azure AD Connect setup, administrators can choose which organizational units (OU) to synchronize with the cloud. If a newly created group (security group or distribution group) resides in an OU designated for synchronization, the group will be classified and managed as a hybrid group.