nerdexam
Microsoft

SC-900 · Question #6

In a hybrid identity model, what can you use to sync identities between Active Directory Domain Services (AD DS) and a Microsoft Entra tenant?

The correct answer is C. Azure AD Connect. Azure AD Connect (now called Microsoft Entra Connect) is the Microsoft tool specifically built to synchronize on-premises Active Directory Domain Services (AD DS) identities - users, groups, and passwords - to a Microsoft Entra ID (Azure AD) tenant. This enables a hybrid…

Submitted by naveen.iyer· Apr 18, 2026Describe the capabilities of Microsoft Entra ID

Question

In a hybrid identity model, what can you use to sync identities between Active Directory Domain Services (AD DS) and a Microsoft Entra tenant?

Options

  • AActive Directory Federation Services (AD FS)
  • BMicrosoft Sentinel
  • CAzure AD Connect
  • DMicrosoft Entra Privileged Identity Management (PIM)

How the community answered

(51 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    88% (45)
  • D
    8% (4)

Explanation

Azure AD Connect (now called Microsoft Entra Connect) is the Microsoft tool specifically built to synchronize on-premises Active Directory Domain Services (AD DS) identities - users, groups, and passwords - to a Microsoft Entra ID (Azure AD) tenant. This enables a hybrid identity model where users can sign in to cloud services with the same credentials as their on-premises accounts. AD FS (A) provides federated single sign-on but does not sync/copy identity objects to Entra ID. Microsoft Sentinel (B) is a SIEM/SOAR solution unrelated to identity sync. Microsoft Entra PIM (D) manages privileged access elevation, not identity synchronization.

Topics

#Hybrid identity#Identity synchronization#Azure AD Connect#Microsoft Entra ID

Community Discussion

No community discussion yet for this question.

Full SC-900 Practice