MFA for AWS Managed Microsoft AD


Here , in Multi-factor authentication prerequisites it is said that : To support multi-factor authentication with your AWS Managed Microsoft AD directory, you must configure either your on-premises or cloud-based Remote Authentication Dial-In User Service (RADIUS) server in the following way so that it can accept requests from your AWS Managed Microsoft AD directory in AWS. Does the AWS provide "cloud-based Remote Authentication Dial-In User Service (RADIUS) server" service? Or we really need to setup something our own? Cant we have the same MFA solution, as in the default for AWS SSO "Aws sso identity store"?

1 Answer
Accepted Answer

For Managed AD you must deploy a RADIUS server, you can do so on an EC2 instance in your environment if you'd like but it doesn't have a native solution built in.

profile pictureAWS
answered 2 years ago

