exam questions

Exam CSCP All Questions

View all questions & answers for the CSCP exam

Exam SC-100 topic 3 question 20 discussion

Actual exam question from APICS's CSCP
Question #: 20
Topic #: 1
[All CSCP Questions]

You have an on-premises network that has several legacy applications. The applications perform LDAP queries against an existing directory service.
You are migrating the on-premises infrastructure to a cloud-only infrastructure.
You need to recommend an identity solution for the infrastructure that supports the legacy applications. The solution must minimize the administrative effort to maintain the infrastructure.
Which identity service should you include in the recommendation?

  • A. Azure Active Directory (Azure AD) B2C
  • B. Azure Active Directory Domain Services (Azure AD DS)
  • C. Azure Active Directory (Azure AD)
  • D. Active Directory Domain Services (AD DS)
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
PlumpyTumbler
Highly Voted 1 year, 1 month ago
Selected Answer: B
https://docs.microsoft.com/en-us/azure/active-directory-domain-services/overview
upvoted 15 times
...
CertShooter
Highly Voted 10 months, 1 week ago
Selected Answer: B
Azure AD DS is a managed service that provides domain services such as domain join, group policy support, and LDAP and Kerberos-based authentication for cloud-based applications. It allows you to use your Azure AD directory as a managed domain without the need to set up, maintain, and secure an on-premises domain controller. This can help reduce the administrative effort required to maintain the infrastructure and ensure that the legacy applications continue to function as expected. Other identity services, such as Azure Active Directory (Azure AD) or Azure Active Directory (Azure AD) B2C, may not be as suitable for this scenario because they do not provide the same level of support for legacy applications that rely on LDAP and Kerberos-based authentication. Similarly, using an on-premises Active Directory Domain Services (AD DS) instance would require maintaining additional infrastructure and may not be as cost-effective or efficient as using a managed service like Azure AD DS.
upvoted 8 times
...
zellck
Most Recent 5 months, 1 week ago
Selected Answer: B
B is the answer. https://learn.microsoft.com/en-us/azure/active-directory-domain-services/overview Azure Active Directory Domain Services (Azure AD DS) provides managed domain services such as domain join, group policy, lightweight directory access protocol (LDAP), and Kerberos/NTLM authentication. You use these domain services without the need to deploy, manage, and patch domain controllers (DCs) in the cloud. An Azure AD DS managed domain lets you run legacy applications in the cloud that can't use modern authentication methods, or where you don't want directory lookups to always go back to an on-premises AD DS environment. You can lift and shift those legacy applications from your on-premises environment into a managed domain, without needing to manage the AD DS environment in the cloud.
upvoted 2 times
...
awssecuritynewbie
8 months, 1 week ago
Selected Answer: B
Azure Active Directory (Azure AD) supports this pattern via Azure AD Domain Services (AD DS). It allows organizations that are adopting a cloud-first strategy to modernize their environment by moving off their on-premises LDAP resources to the cloud. The immediate benefits will be: Integrated with Azure AD. Additions of users and groups, or attribute changes to their objects are automatically synchronized from your Azure AD tenant to AD DS. Changes to objects in on-premises Active Directory are synchronized to Azure AD, and then to AD DS.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago