Security - AWS Directory Services Flashcards
What is AWS Cloud Directory?
cloud-native directory services for cloud applications that need hierachical data with complex relationships
What is Amazon Cognito?
federated sign-up and sign-in functionality that scales millions of users; best for developing consumer apps and SaaS
What is AWS directory services for Microsoft AD?
AWS fully managed Microsoft AD running on Windows 2012 R2; best for enterprises that host Microsoft and require LDAP for Linux apps
What is AWS connector?
allow on-premise users to log into AWS services with existing credentials and allows EC2s to join the domain; best for sign-on for on-prem employees
What is Simple AD?
low scale, low cost samba AD; best for simple user directory and or LDAP compatibility
What is the difference between AD connector and Simple AD?
AD connector must have existing AD, exising AD users can access AWS assets and support radius based MFA; Simple AD is a stand-alone AD; support user accounts, groups, policies and domains, kerberos based SSO, no MFA and no trust relationships