Groups Exclusion for Entra ID Monitoring

What is a one sentence summary of your feature request?

Enable administrators to efficiently exclude Entra ID groups from Entra ID monitoring in Auditor.

Please describe your idea in detail. What is your problem, why do you feel this idea is the best solution, etc.

Currently, Netwrix Auditor requires users to manually manage accounts exclusions in a static omitUPNlist.txt file. This process becomes extremely tedious and error-prone for organizations that need to exclude hundreds or thousands of accounts or groups.
Proposal is to add support group-based exclusions in Entra ID auditing, allowing customers to omit all accounts that belong to one or more designated Entra ID groups in Netwrix Auditor.

How do you currently solve the challenges you have by not having this feature?

Today, customers need to export Entra ID account lists to CSV, manually copy and paste UPNs into the omitUPNlist.txt file, and redeploy configuration files to apply changes. This manual process is slow, error-prone, and does not scale well for large environments with frequent identity changes.

3 Likes