Solis Renewable Technologies has an on-premises Active Directory Domain Services (AD DS) forest with 5,400 users. The company is designing a hybrid identity solution to integrate with a new Microsoft Entra ID tenant.
The solution must satisfy the following requirements:
- Users must be able to sign in using their existing on-premises credentials.
- Users must be able to reset their own passwords on-premises via the cloud portal.
- Authentication must continue to function even if the network connection between the on-premises datacenter and Azure is temporarily lost.
- The infrastructure complexity and administrative overhead of the identity sync solution must be minimized.
Which hybrid identity synchronization and authentication design should you recommend?
- Microsoft Entra Connect with Password Hash Synchronization (PHS) and Password Writeback enabled.Cevap
- BMicrosoft Entra Connect with Pass-through Authentication (PTA) and Password Writeback enabled.
- CActive Directory Federation Services (AD FS) with federation and Password Writeback enabled.
- DMicrosoft Entra Connect with Password Hash Synchronization (PHS), with self-service password reset (SSPR) enabled in Microsoft Entra ID but Password Writeback disabled.