Managed AD, Multi Region, Limited to 5 : How to use same domain in more regions?

1

We have hundreds of machines spread across 12 regions. We started implementing AWS Directory Service Managed AD with multi-region Replication and ran up against the 5 region limit (why the limit if I'm willing to pay for the additional regions?). We'd like to have all of the instances in the same domain as we are a global organization and use machines around the world for sales, service and support of our software products.

What is the best practice and architecture (and how) to get domain services into the remaining 7 regions?

3개 답변
1
수락된 답변

The limit of 5 regions is a soft limit. Please open a support case to request a limit increase.
https://docs.aws.amazon.com/awssupport/latest/user/case-management.html#creating-a-support-case

profile pictureAWS
답변함 2년 전
0

Hi Metageek,

I understand you have hundreds of machines spread across 12 regions and want to use the same domain in the 12 regions.You further more want to know the best practice and architecture of AWS domain services.

Please note Multi-Region replication can be used to automatically replicate your AWS Managed Microsoft AD directory data across multiple Regions.

AWS Managed Microsoft AD is available in two editions, Standard and Entrerprise. Link [1].

However Multi-Region replication is only supported for Enterprise Edition of AWS Managed Microsoft AD. Please be on the lookout for feature realize on this link [2] because this feature is unavailable in the following regions:

• Africa (Cape Town) af-south-1 • Asia Pacific (Hong Kong) ap-east-1 • Europe (Milan) eu-south-1 • Middle East (Bahrain) me-south-1

I hope this helps.

Reference

[1] https://docs.aws.amazon.com/directoryservice/latest/admin-guide/what_is.html

[2] https://aws.amazon.com/new/

Karabo
답변함 2년 전
  • Thanks for the general information on directory services. As I've said, I've already deployed to 5 regions so I'm beyond the basics.

-1

https://docs.aws.amazon.com/directoryservice/latest/admin-guide/ms_ad_directory_sharing.html While you can increase the soft limit You can consider this - share a single directory with other trusted AWS accounts within the same organization or share the directory with other AWS accounts that are outside your organization. You can also share your directory when your AWS account is not currently a member of an organization.

AWS
답변함 2년 전
  • Directory sharing is a Regional feature of AWS Managed Microsoft AD. You can not use sharing in regions where the directory does not exist.

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인