Browse through the questions and answers listed below or filter and sort to narrow down your results.
2
answers
0
votes
33
views
asked 16 days ago
1
answers
0
votes
11
views
asked 2 months ago
2
answers
0
votes
55
views
asked 2 months ago
0
answers
0
votes
25
views
asked 3 months ago
Notifications for MAD automated backups
Is there a way to receive notifications when a backup is completed as part of the automated backups for Managed Active Directory? I have reviewed the CloudTrail logs for the "CreateSnapshot" but as far as I can tell this event is never called when creating the backups
Accepted AnswerAWS Directory Service
1
answers
0
votes
5
views
asked 4 months ago
1
answers
1
votes
25
views
asked 5 months ago
AWS Microsoft Active Directory - how to access the domain controllers to define groups and users
Hi there, just created my AWS Microsoft Active Directory (Standard edition). I know this has created 2 virtual MS Server 2012 in different availability zones, but I can see no way to connect to either to start setting up? I remember reading in the documentation that 2 user connections were allowed to each server for this reason
Accepted AnswerAWS Directory Service
2
answers
0
votes
10
views
asked 5 months ago
1
answers
0
votes
7
views
asked 5 months ago
Can we extend OnPrem to Managed AD with trust then do migration with ADMT
Hi Guys,
We have our Domain Controllers running on Microsoft AD hosted on EC2 instances. It has lot of users and conputers authenticating against it.
Now the goal is to make your environment compatible for AWS applications and integration, seamless Domain join of new EC2s and lastly to retire EC2 hosted DCs.
In order to achieve this, can we extend our EC2 AD to AWS Managed AD with AD trust and then migrate all objects and passwords with ADMT tool and then demote EC2 AD?? Is this a good solution?
Accepted AnswerAWS Directory Service
1
answers
0
votes
28
views
asked a year ago
Which solution to implement, Migrating to ManagedAD or Connector or Trust?
Hi Friends,
I am bit new to this AWS Managed AD. Please suggest me the best solution based on below requirements / situation.
I have an EC2 instance where I am running Microsoft Windows AD with approx. 500 users and 50 domain joined computers. Now I want my existing users to use AWS hosted applications with their same credentials and I want other EC2 also to get domain joined and also want to use AWS resources.
Presently EC2 AD is synced with Okta, but later on Okta will get synced from AWS managed AD (if required) or operate as it is.
1. Now with this requirements what is the best solutions?? Entirely Migrating to Managed AD, or AD Connector or trust between EC2 AD and Managed AD.
2. Also in order to achieve the above goal if we at all have to migrate from EC2 AD to AWS Managed AD (with ADMT tool) , **Can we keep the same domain name in AWS Managed AD as EC2 Windows AD?**
3. Or its not required, we can simply extend our EC2 AD to Managed AD (with different domain name) with AD Trust??
4. Also whats the ideal situation where we migrate from OnPrem AD to AWS Managed AD with tools like ADMT.??
PS. A detailed answer would be appreciated rather than sharing AWS tutorials links.
Edited by: Swaprakash on Jul 8, 2021 1:54 AM
Accepted AnswerAWS Directory Service
4
answers
0
votes
25
views
asked a year ago
Joining an AWS Managed Microsoft AD to an existing domain
Hi,
Im new to AWS MM AD. We have an amazon direct connect to connect our on-premise and AWS VPCs. I have a few questions.
can we create an AWS managed microsoft AD that has the same domain name as our existing?
can we create an aws manage microsoft AD and join it to our existing microsoft AD?
can we create an aws managed microsoft AD in the same VPC as our on premise EC2 instance of Microsoft AD?
In managing aws managed microsoft AD do we need a jump machine to do that?
Accepted AnswerAWS Directory Service
4
answers
0
votes
29
views
asked a year ago
Can new ADMX Policy Template be imported to Simple AD or Managed AD?
Does Simple AD or Managed Microsoft AD support importing custom admx/adml templates?
A 3rd-party app in my environment includes a custom_app.admx/.adml files so app settings can be managed via Windows GPO. I wish to manage this app's settings using GPO linked to my AD Domain which means the admx should be imported to the DC.
Traditionally when I had full control of my Domain Controllers, I could import the admx to my DC.
https://docs.aws.amazon.com/directoryservice/latest/admin-guide/directory_simple_ad.html
https://docs.aws.amazon.com/directoryservice/latest/admin-guide/directory_microsoft_ad.html
Accepted AnswerAWS Directory Service
2
answers
0
votes
11
views
asked 2 years ago
Is simple AD PCI compliant?
This post
https://aws.amazon.com/blogs/security/aws-adds-12-more-services-to-its-pci-dss-compliance-program/
Indicates AWS Directory Service for Microsoft and AD Connector is PCI compliant... does this include simple AD????
Accepted AnswerAWS Directory Service
2
answers
0
votes
1
views
asked 3 years ago
AWS Directory Service unable to resolve EFS dns name
Hello,
I am using AWS Directory Service and therefore my VPC has the required custom DHCP options. This seems to be causing my EFS dns name to not resolve:
$ sudo mount -t efs fs-981781a1:/ efs
Failed to resolve "fs-981781a1.efs.ap-southeast-2.amazonaws.com" - check that your file system ID is correct.
$ sudo mount -t nfs4 -o nfsvers=4.1,rsize=1048576,wsize=1048576,hard,timeo=600,retrans=2,noresvport fs-981781a1.efs.ap-southeast-2.amazonaws.com:/ efs
mount.nfs4: Failed to resolve server fs-981781a1.efs.ap-southeast-2.amazonaws.com: Name or service not known
However, specifying the EFS target ip address does work:
sudo mount -t nfs4 -o nfsvers=4.1,rsize=1048576,wsize=1048576,hard,timeo=600,retrans=2,noresvport 10.0.14.62:/ efs
Any help would be appreciated.
Thanks!
Accepted AnswerAWS Directory Service
3
answers
0
votes
89
views
asked 3 years ago
1
answers
0
votes
1
views
asked 3 years ago