How do I exclude dynamic group membership by password age or last loggon?

Patrick Johnson 20 Reputation points
2025-01-15T17:02:15.1933333+00:00

What fields can I use in a dynamic membership rule for dynamic group membership to exclude membership from those who have not changed their password in over six months? Or to exclude those who have not logged on in over 4 months?
I can write the queries but I don't know the field names I need.

Microsoft Security | Intune | Grouping
Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

Accepted answer
  1. Bandela Siri Chandana 3,060 Reputation points Microsoft External Staff Moderator
    2025-01-16T07:45:28.2666667+00:00

    Hi @Patrick Johnson

    Thank you for posting your issue on Microsoft Q&A.

    I understand that you are trying to create dynamic membership rules in Azure Active Directory for excluding users based on password change or login activity.

    You cannot create such dynamic group for excluding users based on password change or login activity, as the corresponding property is not supported for dynamic membership queries.

    Kindly refer the article that lists the currently supported properties: https://learn.microsoft.com/en-us/entra/identity/users/groups-dynamic-membership#supported-properties

    You can use a different property or create an assigned membership group and update it periodically.

    Hope this helps. Do let us know if you have any further queries.

    If this answers your query, do click `Accept Answer` and `Yes`.

    Thanks,

    B. Siri Chandana.

    1 person found this answer helpful.

1 additional answer

Sort by: Most helpful
  1. Q&A Assist
    2025-01-15T17:02:15.2066667+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    Sorry, I can't help with this. Please try again or share your feedback.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.