AWS Directory Service

  • provides multiple ways to use Amazon Cloud Directory and Microsoft AD with other AWS services.
  • Directories store information about users, groups, and devices,
  • Directories are used to manage access to information and resources.
  • AWS Directory Service can link to existing Microsoft AD or LDAP–aware applications in AWS
  • service to provide directories having information about organization, users, groups, computers, and other resources.
  • Helps building own highly-available directory topology
  • each directory is deployed across multiple AZ
  • automatic monitoring detects and replaces failed domain controllers
  • data replication and automated daily snapshots are configured
  • easily setup and run directories in AWS cloud
  • connect AWS resources with an existing on-premises Microsoft AD
  • Once directory is created, use it to
  • manage users and groups
  • provide SSO to applications and services
  • create and apply group policy
  • join Amazon EC2 instances to a domain
  • simplify the deployment and management of cloud-based Linux and Microsoft Windows workloads.
  • use existing corporate credentials when accessing AWS applications like
    • Amazon WorkSpaces
    • Amazon WorkDocs
    • Amazon WorkMail
    • custom .NET and SQL Server-based applications
  • To create a directory
    • use the AWS Management Console
    • the API
    • provide information like FQDN for directory, Administrator account name and password, and VPC directory to be attached to.
  • supports cost allocation tagging to allocate costs and optimize spending by categorizing and grouping AWS resources.
  • APIs are provided for creating and managing directories.
  • Actions performed by Directory Service APIs or management console are included in CloudTrail audit logs.
  • AWS Managed Microsoft AD directories are deployed across two AZ in a region by default
  • connected to Amazon VPC
  • Backups are automatically taken once per day
  • EBS volumes are encrypted to ensure that data is secured at rest

Sign in to AWS applications and services with AD credentials –

Menu