1. Home
  2. Knowledge Base
  3. ⚙️ Features & Use Cases
  4. Group Filtering – Control which Contacts are Synchronized

Group Filtering – Control which Contacts are Synchronized

Overview

The Group Filtering feature of Calliente allows administrators to limit contact synchronization to specific Microsoft Entra ID (formerly Azure AD) groups.
This ensures that only users belonging to specified groups receive contacts on their devices, enhancing the security, privacy, and relevance of synchronized data.

This function is particularly useful in large enterprises or multi-department structures, where not all users need access to the entire directory.


Key Benefits

🔒 Access Control – Only authorized users receive synchronized contacts
📱 Streamlined Synchronizations – Devices only load relevant contacts
🧩 Service Segmentation – Contacts can be filtered by team, role, region, or unit
⚙️ Simple Configuration – Managed entirely via the “admin interface”


How it Works

When Group Filtering is enabled:

  1. Calliente retrieves each user’s group membership via the Microsoft Graph API (GroupMember.Read.All)
  2. The app checks if the user belongs to one of the configured groups
  3. If yes, synchronization is performed — but only for contacts associated with these groups
  4. Users outside the authorized groups receive no synchronized contact data

🔐 No contact data is visible or transmitted to untargeted devices


How to Configure Group Filtering

Currently, configuration is not self-service. It is managed manually by our team based on the information you provide.

Steps to follow:

  1. Identify the Microsoft Entra ID (Azure AD) group IDs you wish to use as filters
  2. Send the list of Group IDs to our support via:
    👉 https://calliente.app/en/contact/
  3. Our team will apply the configuration to your tenant

🔁 Changes will take effect during the next synchronization cycle and can be modified at any time by contacting us again.
✅ Any update is automatically propagated to affected devices.


Security Considerations

  • Group memberships are read-only and securely retrieved via Microsoft Graph
  • The Calliente application does not store complete contact lists — only filtered group IDs and device identifiers
  • The feature respects Microsoft Entra’s Role-Based Access Controls (RBAC)
  • No elevated rights are required beyond the already documented permissions

Usage Examples

ScenarioGroups UsedResult
Synchronize only sales team contactsSales-EU, Sales-NAOnly sales team members receive contacts
Segmentation by office or siteLondon-Office, Berlin-OfficeContacts are filtered by physical location
Restrict synchronization to executive managementExecutives, HR-ManagersOnly these groups receive synchronized data

Need Help?

If you need assistance configuring group filtering or wish to audit your current setup:
👉 Contact our team: https://calliente.app/en/contact/

Was this article helpful?

Related Articles

Scroll to Top