Connecting On-Premise Active Directory Services to AWS

Connect On-Premise Active Directory Services to AWS

Prev Question Next Question

Question

Which of the below options is the most suited for connecting your on-premise Active directory services to AWS? Choose an answer from the options below.

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Answer - C.

The below diagram shows how to use the AD directory connect service for using existing on-premises directory with AWS services.

For an example of setup of AD connector, please visit the below URL:

http://docs.aws.amazon.com/workspaces/latest/adminguide/prep_connect.html

The most suitable option for connecting an on-premises Active Directory service to AWS depends on various factors, such as security, scalability, and compatibility requirements. However, out of the given options, the best choice is usually AWS Directory Service for Microsoft Active Directory (Enterprise Edition) or AD Connector, depending on the specific use case.

AWS Directory Service for Microsoft Active Directory (Enterprise Edition) provides a managed Microsoft Active Directory (AD) service in the AWS cloud, which allows you to use your existing on-premises credentials to access AWS resources. It integrates with your on-premises AD infrastructure using a secure VPN connection or AWS Direct Connect. This option is suitable for hybrid environments where you need to extend your existing on-premises AD to AWS.

On the other hand, AD Connector is a lightweight service that allows you to use your existing on-premises AD infrastructure with AWS services. It does not require any changes to your existing AD infrastructure and works by forwarding AD requests to your on-premises AD domain controllers. This option is suitable for scenarios where you want to use AWS services, such as Amazon WorkSpaces, Amazon AppStream 2.0, or AWS Managed Microsoft AD, but do not need to extend your on-premises AD to AWS.

Simple AD is a directory service that is compatible with Microsoft Active Directory, but it is not a full-featured AD service. It is suitable for small-scale deployments that do not require complex AD features or scalability.

Therefore, the correct answer to the question is B. AWS Directory Service for Microsoft Active Directory (Enterprise Edition) or C. AD Connector, depending on the specific requirements of the use case. Option D is incorrect because it suggests that any of the options can be used regardless of the specific requirements, which is not true.