You have the following Azure Active Directory (Azure AD) tenants
• Contosoonmicrosoft.com Linked to a Microsoft Office 365 tenant and syncs to an Active Directory forest named contoso.com by using password hash synchronization
• Contosoazure onmicrosoft.com Linked to an Azure subscription named Subscription1.
You need to ensure that you can assign the users in contoso.com access to the resources in Subscription1.
What should you do?
A . Configure contosoxHVTttcrosoft.com to use pass-through authentication.
B . Associate Subscription1 to contoso.onmicrosoft.com Reassign all the roles in Subscnption1.
C . Deploy a second Azure AD Connect server and sync contoso.com to contosoazure.
onmicrosoft.com.
D . Configure Active Directory federation Services (AD FS) federation between contosoazure.onmicrosoft.com and contoso.com.
Answer: C
Explanation:
Azure AD Connect allows you to quickly onboard to Azure AD and Office 365.
Note: The most common topology is a single on-premises forest, with one or multiple domains, and a single Azure AD tenant. For Azure AD authentication, password hash synchronization is used. The express installation of Azure AD Connect supports only this topology.
Reference: https://docs.microsoft.com/en-us/azure/active-directory/hybrid/plan-connect-topologies
Leave a Reply