Microsoft Azure Fundamentals (AZ-900)Describe Azure identity, security, and networkingMedium

A company is implementing a hybrid cloud solution and needs to extend its on-premises Active Directory to Azure Active Directory (Azure AD) to synchronize user identities. This will allow users to use their existing on-premises credentials to access Azure resources. Which Azure AD tool should be used for this synchronization?

  1. AAzure AD B2C
  2. BAzure Multi-Factor Authentication (MFA)
  3. CAzure AD Domain Services
  4. DAzure AD Connect
Show answer & explanation

Correct answer: D. Azure AD Connect

Azure AD Connect is a Microsoft tool designed to meet and accomplish your hybrid identity goals. It synchronizes users, groups, and other directory objects from an on-premises Active Directory to Azure Active Directory.

Why the other options are wrong

  • A. Azure AD B2C is for customer-facing applications, not on-premises AD synchronization.
  • B. Azure Multi-Factor Authentication (MFA) adds a layer of security for sign-ins, but doesn't synchronize identities.
  • C. Azure AD Domain Services provides managed domain services in Azure, not for synchronizing on-premises AD.

Azure AD Connect

A Microsoft tool for synchronizing on-premises Active Directory identities with Azure Active Directory.

  • Enables hybrid identity scenarios.
  • Synchronizes users, groups, and contacts.
  • Supports password hash synchronization, pass-through authentication, and federation with ADFS.

Memory trick: AD Connects your on-prem to the cloud.

More Describe Azure identity, security, and networking questions