Kestrel Dynamics has an on-premises Active Directory Domain Services (AD DS) forest. You are designing a hybrid identity solution that integrates the AD DS forest with a new Microsoft Entra ID tenant. The solution must meet the following requirements:
* Users must be able to sign in to cloud services using their on-premises credentials.
* Users must be able to authenticate to Microsoft Entra ID even if the on-premises network or AD DS domain controllers are completely offline.
* Users must be able to reset their passwords in the cloud, and the changes must immediately write back to the on-premises AD DS.
* Administrative overhead and infrastructure costs must be minimized.
Which two components should you include in the hybrid identity design? (Select two).
- Password Hash Synchronization (PHS)Answer
- Password writeback enabled in Microsoft Entra ConnectAnswer
- CActive Directory Federation Services (AD FS)
- DPass-through Authentication (PTA)