What is AWS Directory Service?
AWS Directory Service provides managed directory services in the AWS cloud. The service enables the use of Microsoft Active Directory without having to operate your own domain controllers. Existing on-premises directories can be seamlessly connected to AWS.
The service is available in three variants: AWS Managed Microsoft AD for full Active Directory, AD Connector as a proxy to existing directories, and Simple AD for basic directory requirements.
Core Features
- AWS Managed Microsoft AD: Fully managed Microsoft Active Directory with multi-AZ deployment
- AD Connector: Proxy for authentication requests to on-premises Active Directory without cloud replication
- Trust Relationships: Bidirectional trusts between AWS Managed AD and on-premises directories
- Seamless Integration: Support for WorkSpaces, RDS, QuickSight, Connect, and other AWS services
- Automatic Patching: Microsoft provides security updates, AWS applies them automatically
Typical Use Cases
Hybrid Identity: Organizations connect their on-premises Active Directory with AWS to provide employees unified access to cloud resources and applications.
AWS WorkSpaces: Virtual Desktop Infrastructure (VDI) with WorkSpaces requires an Active Directory. Managed Microsoft AD provides the foundation without additional infrastructure.
Legacy Applications: .NET applications and Windows-based workloads that require Active Directory for authentication can run in AWS without modifications.
Benefits
- No operation of own domain controllers required
- Automatic multi-AZ deployment for high availability
- Native integration with AWS services and Windows workloads
- Flexible connection to existing on-premises directories
Integration with innFactory
As an AWS Reseller, innFactory supports you with AWS Directory Service: hybrid identity architecture, trust configuration, migration from on-premises AD, and integration with AWS services.
Typical Use Cases
Frequently Asked Questions
What is AWS Directory Service?
AWS Directory Service provides multiple options for managed Microsoft Active Directory in the AWS cloud. AWS Managed Microsoft AD is a fully managed Active Directory that can be connected to on-premises AD.
Which directory types are available?
There are three options: AWS Managed Microsoft AD (full AD), AD Connector (proxy to on-premises AD), and Simple AD (Samba-based directory for basic requirements).
Can I connect my on-premises AD?
Yes, AWS Managed Microsoft AD can establish a trust relationship with your on-premises Active Directory. AD Connector forwards authentication requests directly to your existing AD without replicating data in the cloud.