Aws Directory Service

Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 6

AWS Directory Service

• AWS Directory Service makes it easy to set up and run directories in the AWS Cloud, or connect your AWS resources with an existing on-
premises Microsoft Active Directory.

• AWS Directory Service provides multiple directory choices for customers who want to use existing Microsoft AD or Lightweight Directory Access
Protocol (LDAP)

• AWS Directory Service includes several directory types


 AWS Managed Microsoft AD 
AD Connector
Simple AD

• The Top 3 major benefits of Active Directory Domain Services are:


 Centralized resources and security administration.
Single logon for access to global resources.
Simplified resource location.

• Prerequisites

– A basic understanding of Amazon EC2 is essential to using AWS Directory Service.


– At least two subnets.( must be in a different Availability Zone)
– VPC must have default hardware tenancy.
1
AWS Directory Service

2
AWS Managed Microsoft AD
• AWS Directory Service lets you run Microsoft Active Directory (AD) as a managed service.

• you can run directory-aware workloads in the AWS Cloud, including Microsoft SharePoint and custom .NET and SQL Server-
based applications.

• AWS Managed Microsoft AD is available in two editions.


Standard Edition
Enterprise Edition

 You cannot create a AWS Managed Microsoft AD using 198.18.0.0/15 address space.

3
Active Directory Connector
• AD Connector is a directory gateway with which you can redirect directory requests to your on-premises Microsoft
AD without caching any information in the cloud.

• AD Connectors and your on-premises AD domains have a 1-to-1 relationship.

• The VPC must be connected to your existing network through a virtual private network (VPN) connection or AWS
Direct Connect.

• AD Connector cannot be shared with other AWS accounts.

4
Simple AD
• Simple AD is a standalone managed directory that is powered by a Samba 4 Active Directory Compatible Server.
 It is available in two sizes
Small - Supports up to 500 users.
Large - Supports up to 5,000 users

• Simple AD provides a subset of the features offered by AWS Managed Microsoft AD, including the ability to
manage user accounts and group memberships, create and apply group policies, securely connect to Amazon EC2
instances ,SSO.

• However, Simple AD does not support features such as multi-factor authentication (MFA), trust relationships with
other domains, Active Directory Administrative Center, PowerShell support, Active Directory recycle bin.

5
BOM

You might also like