Aventis Logistics is designing a hybrid identity solution to integrate their on-premises Active Directory Domain Services (AD DS) forest of 6,200 users with a Microsoft Entra ID tenant. The design must satisfy the following requirements:
- Users must be able to sign in to Azure resources using their current on-premises passwords.
- Users must be able to perform self-service password resets from the cloud, and these updates must immediately synchronize back to the on-premises directory.
- The sign-in service must remain operational for users even if the network link between the on-premises datacenter and Azure is temporarily offline.
- On-premises server infrastructure and administrative overhead must be minimized.
Which two components should you include in the hybrid identity design? (Select two.)
- Password Hash Synchronization (PHS) as the hybrid identity authentication methodCevap
- Microsoft Entra self-service password reset (SSPR) with password writeback enabledCevap
- CPass-Through Authentication (PTA) as the hybrid identity authentication method
- DActive Directory Federation Services (AD FS) as the hybrid identity authentication method