Skip to Content

AZ-900: Which Azure Service Integrates On-Premises Active Directory with Azure Active Directory?

Which Azure service integrates on-premises Active Directory with Azure Active Directory for unified identity management? Learn how Azure AD Connect synchronizes user identities, passwords, and groups across both environments.

Question

A company wants to integrate their on-premises Active Directory with Azure Active Directory to manage user identities across both environments. Which Azure service will help with this integration?

A. Azure Active Directory B2B
B. Azure Key Vault
C. Azure AD Connect
D. Azure AD Domain Services
E. Azure Virtual Machines

Answer

C. Azure AD Connect

Explanation

Azure AD Connect is a tool that integrates on-premises Active Directory with Azure Active Directory, allowing for a unified identity management system across cloud and on-premises environments.

Azure AD Connect is a Microsoft tool specifically designed to synchronize and integrate on-premises Active Directory environments with Azure Active Directory (Azure AD, now known as Microsoft Entra ID). This integration provides a unified identity management system, allowing users to use the same credentials for both on-premises and cloud-based resources.

Key Features

  • User and Group Synchronization: Azure AD Connect synchronizes user accounts, groups, and attributes between on-premises AD and Azure AD, ensuring consistency and seamless access across environments.
  • Password Hash Synchronization: Users can sign in to cloud resources using their on-premises passwords, with password hashes securely synchronized to Azure AD.
  • Single Sign-On (SSO): Provides a seamless sign-on experience, allowing users to authenticate once and access both on-premises and cloud applications without re-entering credentials.
  • Health Monitoring: Azure AD Connect includes monitoring tools to ensure synchronization is working correctly and to alert administrators to potential issues.
  • Support for Advanced Scenarios: It supports multi-forest environments and custom synchronization configurations, making it suitable for complex enterprise setups.

How It Works

  1. Azure AD Connect is installed on a server in your on-premises environment.
  2. It connects to both the on-premises Active Directory and Azure Active Directory, synchronizing objects and credentials as configured.
  3. Changes made in either directory (depending on configuration) can be synchronized to the other, enabling hybrid identity management.

Azure AD Connect enables organizations to integrate their on-premises Active Directory with Azure Active Directory, providing a seamless, unified identity management solution for both cloud and on-premises environments.

Microsoft Azure Fundamentals AZ-900 certification exam practice question and answer (Q&A) dump with detail explanation and reference available free, helpful to pass the Microsoft Azure Fundamentals AZ-900 exam and earn Microsoft Azure Fundamentals AZ-900 certification.