What is Microsoft Active Directory (AD)?

image.png

Imagine you join a company. IT gives you ONE username and password. You sit at ANY computer in the office, type that username and password — you're logged in. You can access the printer, shared files, everything — based on what your role allows.

AD is basically a database that stores:

Admin sits on the Domain Controller and decides:


AWS Directory Services — 3 Options

When you move to AWS, you need to decide how to handle your users and AD. AWS gives you 3 options depending on your situation.

1. AWS Managed Microsoft AD

image.png

If you already have an AD in your office, both can talk to each other via a "trust" connection — so office users and AWS users can access each other's resources.

How many ADs exist here? → 2

Use when: You want a proper AD in AWS, and you may or may not have an office AD already.