本题库由云计算狂魔微信公众号分享。
【SAA-C03助理级解决方案架构师认证】
A company is migrating applications to AWS. The applications are deployed in different accounts. The company manages the accounts centrally by using AWS Organizations. The company's security team needs a single sign-on(SS0) solution across all the company's accounts. The company must continue managing the users and groups in its on-premises self-managed Microsoft Active Directory.Which solution will meet these requirements?
A : Enable AWS Single Sign-On (AWSSSO) from the AWS SSO console. Create a one-way forest trust or a one-way domain trust to connect the company's self-managed Microsoft Active Directorywith AWS SSO by using AWS Directory Service for Microsoft Active Directory.
B : Enable AWS Single Sign-On (AWSSSO) from the AWS SSO console.Create a two-way forest trust to connect the company's self- managed Microsoft Active Directory with AWS SSO by using AWS Directory Service for Microsoft Active Directory.
C : Use AWS Directory Service. Create a two-way trust relationship with the company's self- managed Microsoft Active Directory.
D : Deploy an identity provider (ldP) on premises. Enable AWS Single Sign-On(AWSSSO) from the AWS SS0 console.