Domain Join Linux Aws
To seamlessly join a linux machine to my aws managed active directory domain i will need an account that has permissions to join instances into the domain.
Domain join linux aws. To get started please see our blog or our documentation about domain joining linux instance to simple ad. Enter the password for the account when prompted. Ssm parameter store is used to store credentials and other domain. For more information about delegating these privileges see delegate directory join privileges for aws managed microsoft ad.
This makes it even easier to manage amazon ec2 instances in the aws cloud. Terraform automation tool is used to automate the creation process of the ssm documents and ssm parameter stores in aws account. In addition to amazon ec2 windows instances you can also join certain amazon ec2 linux instances to your aws directory service for microsoft active directory directory. Linux instances unable to join domain or authenticate ubuntu 14 04 16 04 and 18 04 instances must be reverse resolvable in the dns before a realm can work with microsoft ad.
The new capability automates the previously manual approach for integrating linux based ec2 instances to your aws directory service for microsoft active directory aws managed microsoft ad or to an existing on premises active directory ad using ad connector. You can now join your amazon ec2 for linux instances to a domain configured with aws directory service seamlessly. For more information see seamlessly joining a windows instance to an aws directory service domain in the amazon ec2 user guide for windows instances. With aws directory service you can target an active directory domain managed on premises or within aws.
How to connect your on premises active directory to aws using ad connector takes you. The following linux instance distributions and versions are supported. If you need to perform seamless domain join across multiple aws accounts you can optionally choose to enable directory sharing. While members of the aws delegated administrators have sufficient privileges to join machines to the domain i have created a service account that has the minimum privileges required.