VeloSpire Logistics has an on-premises Active Directory Domain Services (AD DS) domain that syncs to a single Microsoft Entra ID tenant. You are designing a hybrid identity solution. The solution must meet the following requirements:
- Users must be able to authenticate to cloud resources using their on-premises credentials.
- If the on-premises network or domain controllers experience an outage, users must still be able to sign in to cloud services.
- Cloud-initiated password changes via self-service password reset (SSPR) must be written back to the on-premises AD DS environment.
- The on-premises infrastructure footprint and management overhead must be minimized.
Which hybrid identity synchronization and authentication method should you recommend?
- Microsoft Entra Connect with Password Hash Synchronization (PHS) and password writeback enabledCevap
- BMicrosoft Entra Connect with Pass-through Authentication (PTA) and password writeback enabled
- CActive Directory Federation Services (AD FS) and Microsoft Entra Connect with password writeback enabled
- DMicrosoft Entra Connect with Password Hash Synchronization (PHS) and password writeback disabled