
AWS Directory Service
AWS Directory Service
AWS Directory Service API provides managed Microsoft Active Directory or integrates on-prem AD with AWS services.
Fully managed Microsoft AD (no self-installed Windows Server)
Windows/AD ecosystem customers only
CreateMicrosoftAD for managed AD (or CreateDirectory for Simple AD). Configure VPC + subnets. EC2 joins the domain.
Uptime · 30-day window
GitHub activity
About this API
AWS Directory Service addresses enterprises' need to migrate Microsoft ecosystem (Windows, AD, Exchange, Office) to AWS. Two main products: AWS Managed Microsoft AD (true Microsoft AD, AWS runs Windows Server for you) and Simple AD (Samba-based AD-compatible, cheaper but limited). Most common is Managed Microsoft AD — enterprise EC2 Windows instances join this domain, sign in with domain accounts, apply GPOs, do domain file sharing. Trust relationships with on-prem AD enable hybrid-cloud identity. Combined with AWS IAM Identity Center, AD accounts can log into AWS console, SSO to third-party SaaS. Core AWS service for Windows-heavy enterprises.
What you can build
- 1Enterprises extend on-prem AD to AWS (domain trust)
- 2Domain-join for EC2 Windows instances
- 3Auth backend for WorkSpaces and similar services
- 4Managed LDAP
Strengths & limitations
Strengths
- Fully managed Microsoft AD (no self-installed Windows Server)
- Deep integration with AWS Windows workloads
- Domain trust with on-prem AD supported
Limitations
- Windows/AD ecosystem customers only
- Some advanced GPO features are limited
Example request
curl https://github.com/mermade/aws2openapi/<endpoint>Getting started
CreateMicrosoftAD for managed AD (or CreateDirectory for Simple AD). Configure VPC + subnets. EC2 joins the domain.
FAQ
Managed AD vs. Simple AD?+
Need full Microsoft AD features: Managed AD. Just basic LDAP/auth: Simple AD (cheaper).
Technical details
- Auth type
- unknown
- Pricing
- unknown
- Protocols
- REST
- SDKs
- python, javascript, go, java, csharp
- Response time
- 12 ms
- Last health check
- 5/12/2026, 7:36:33 AM
More from Amazon Web Services
AWS IAM Access Analyzer API analyzes IAM resource policies for over-privileged access or external access — proactively surfaces security risks.
Amazon Chime SDK API embeds real-time audio/video calling and chat into apps (meetings, messaging, PSTN calls).
Amazon CloudFront is the AWS CDN and edge service — accelerates static and dynamic content delivery, a standard for web performance.
Amazon CloudSearch is AWS's managed search service (gradually superseded by OpenSearch Service).
CloudWatch Application Insights API auto-detects application problems — intelligently identifies anomalies (slow SQL queries, memory leaks), reducing manual alarm configuration.
AWS Cognito Identity Pools API issues temporary AWS credentials to frontend apps — identity federation, guest users, direct AWS resource access.
Amazon Cognito User Pools deliver managed user signup, login, password reset, and MFA for applications.
Amazon Connect Contact Lens API uses AI to analyze Amazon Connect calls in real time — sentiment, keywords, compliance detection, auto-summary.