Microsoft Azure Fundamentals (AZ-900)Describe Azure identity, security, and networkingMedium
A company is implementing a hybrid cloud solution and needs to extend its on-premises Active Directory to Azure Active Directory (Azure AD) to synchronize user identities. This will allow users to use their existing on-premises credentials to access Azure resources. Which Azure AD tool should be used for this synchronization?
- AAzure AD B2C
- BAzure Multi-Factor Authentication (MFA)
- CAzure AD Domain Services
- DAzure AD Connect
Show answer & explanationAnswer & explanation
Correct answer: D. Azure AD Connect
Azure AD Connect is a Microsoft tool designed to meet and accomplish your hybrid identity goals. It synchronizes users, groups, and other directory objects from an on-premises Active Directory to Azure Active Directory.
Why the other options are wrong
- A. Azure AD B2C is for customer-facing applications, not on-premises AD synchronization.
- B. Azure Multi-Factor Authentication (MFA) adds a layer of security for sign-ins, but doesn't synchronize identities.
- C. Azure AD Domain Services provides managed domain services in Azure, not for synchronizing on-premises AD.
Azure AD Connect
A Microsoft tool for synchronizing on-premises Active Directory identities with Azure Active Directory.
- Enables hybrid identity scenarios.
- Synchronizes users, groups, and contacts.
- Supports password hash synchronization, pass-through authentication, and federation with ADFS.
Memory trick: AD Connects your on-prem to the cloud.