Configure Password Hash Synchronization

Choose Authentication Method for Azure AD Hybrid Identity Solution

Question

You have a Microsoft 365 subscription and are planning to install AD Connect to support an Active Directory hybrid identity solution.

Your company are using a 3rd party authentication solution that requires smartcards.

You need to choose an authentication method for the Azure AD hybrid identity solution.

What do you do? Solution: You configure Password hash synchronization.

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B.

Correct Answer: B

Password hash synchronization is not compatible with 3rd MFA solutions or smartcards.

Password hash synchronization synchronizes your AD DS user accounts with Microsoft 365 and manages your users on-premises.

Hashes of user passwords are synchronized from your AD DS to Azure AD so that the users have the same password on-premises and in the cloud.

Reference:

To know more about Password hash synchronization, please refer to the link below:

The given scenario requires an Azure AD hybrid identity solution to be implemented for a company that is using a 3rd party authentication solution that requires smartcards. In this case, the authentication method to be chosen for the Azure AD hybrid identity solution depends on the specific requirements of the 3rd party authentication solution.

Password hash synchronization is a feature in Azure AD Connect that synchronizes users' password hashes from an on-premises Active Directory environment to the Azure AD environment. This feature allows users to use the same password to sign in to both on-premises and cloud-based resources. However, it does not directly support smartcard-based authentication.

If the 3rd party authentication solution requires smartcards for authentication, then password hash synchronization would not be an appropriate choice for the Azure AD hybrid identity solution. Instead, the company would need to consider using other authentication methods that support smartcard-based authentication, such as Active Directory Federation Services (AD FS) or pass-through authentication.

In conclusion, the given solution of configuring password hash synchronization as the authentication method for the Azure AD hybrid identity solution may not be appropriate if the 3rd party authentication solution requires smartcards. The correct answer would be B. No, and the company should explore other authentication methods that support smartcard-based authentication.