Directory Service
- 3 types of Directory service
- AWS Managed Microsoft AD
- Hybrid solution
- Users can be from
AWS DirectoryandOn premise Directory - Both
AWS DirectoryandOn premise Directoryare connected through aTRUSTconnection - This
TRUSTconnection can be set up usingVPNorDirect Connect
- AD Connector
- Directory Gateway (Proxy)
- Users managed by only
On premise AD - Redirect to the
On premise AD - Allows MFA
- Simple AD
ADcompatible service by AWS- Can not join with
On premise AD
Microsoft Active Directory
- Available in any windows server with
AD Domain Service - Combination of Objects, like
- User Accounts
- Computers
- Printers
- File Shares
- Security Groups
- Objects are organized in
Trees - A group of
TreesareForest ADhas feature- Centralized Security Management
- Create Account
- Assigning Permission