Aws Directory Service
Aws Directory Service
Aws Directory Service
• AWS Directory Service makes it easy to set up and run directories in the AWS Cloud, or connect your AWS resources with an existing on-
premises Microsoft Active Directory.
• AWS Directory Service provides multiple directory choices for customers who want to use existing Microsoft AD or Lightweight Directory Access
Protocol (LDAP)
• Prerequisites
2
AWS Managed Microsoft AD
• AWS Directory Service lets you run Microsoft Active Directory (AD) as a managed service.
• you can run directory-aware workloads in the AWS Cloud, including Microsoft SharePoint and custom .NET and SQL Server-
based applications.
You cannot create a AWS Managed Microsoft AD using 198.18.0.0/15 address space.
3
Active Directory Connector
• AD Connector is a directory gateway with which you can redirect directory requests to your on-premises Microsoft
AD without caching any information in the cloud.
• The VPC must be connected to your existing network through a virtual private network (VPN) connection or AWS
Direct Connect.
4
Simple AD
• Simple AD is a standalone managed directory that is powered by a Samba 4 Active Directory Compatible Server.
It is available in two sizes
Small - Supports up to 500 users.
Large - Supports up to 5,000 users
• Simple AD provides a subset of the features offered by AWS Managed Microsoft AD, including the ability to
manage user accounts and group memberships, create and apply group policies, securely connect to Amazon EC2
instances ,SSO.
• However, Simple AD does not support features such as multi-factor authentication (MFA), trust relationships with
other domains, Active Directory Administrative Center, PowerShell support, Active Directory recycle bin.
5
BOM