AWS Directory Service Active Directory Connector - Access Amazon WorkSpaces with Common Access Cards

This whitepaper is for historical reference only. Some content might be outdated and some links might not be available.

AWS Directory Service Active Directory Connector

Create an AD Connector

Before starting this procedure, make sure you have completed the prerequisites identified in AD Connector Prerequisites.

To connect to your existing directory with AD Connector:

  1. In the AWS Directory Service console navigation pane, choose Directories and then choose Set up directory.

  2. On the Select directory type page, choose AD Connector, and then choose Next.

  3. On the Enter AD Connector information page, provide the following information:

    • Select Directory size. Choose either the Small or Large size option. For more information about sizes, see Active Directory Connector.

    • Enter Directory description information.

    • Click Next.

  4. On the Choose VPC and subnets page, select the following information:

    • Select VPC from the VPC dropdown.

    • Select two subnets for the domain controllers from the subnet dropdowns. The two selected subnets must be in different Availability Zones.

    • Click Next.

  5. On the Connect to AD page, provide the following information:

    • Directory DNS name — The fully qualified name of your existing directory, such as corp.example.com.

    • Directory NetBIOS name — The short name of your existing directory, such as CORP.

    • DNS IP addresses — The IP address of at least one DNS server in your existing directory. These servers must be accessible from each subnet specified in the next section.

    • Service account username — The user name of a user in the existing directory. This service account name was created in the Create service account and delegate privileges section. For more information about this service account, see AD Connector Prerequisites.

    • Service account password — The password for the existing user.

    • Confirm password — Retype the password for the existing user.

  6. Click Next.

  7. On the Review & create page, review the directory information and make any necessary changes. When the information is correct, choose Create directory. It takes several minutes for the directory to be created. When the directory is created, the Status value changes to Active.