Your company’s network contains two Active Directory forests, with two domains configured per forest. All workstations are domain-joined and have Windows 10 installed. You have created a Microsoft Azure Active Directory (Azure AD) tenant in preparation for configuring Hybrid Azure AD join for the workstations. You want to make sure that the tenant can be discovered by the workstations. Which of the following should you create in each forest?
A. A migration endpoint.
B. A new conditional access policy.
C. A new trust relationship.
D. A new service connection point (SCP).