Class: AWS.DirectoryService
- Inherits:
-
AWS.Service
- Object
- AWS.Service
- AWS.DirectoryService
- Identifier:
- directoryservice
- API Version:
- 2015-04-16
- Defined in:
- (unknown)
Overview
Constructs a service interface object. Each API operation is exposed as a function on service.
Service Description
AWS Directory Service is a web service that makes it easy for you to setup and run directories in the AWS cloud, or connect your AWS resources with an existing on-premises Microsoft Active Directory. This guide provides detailed information about AWS Directory Service operations, data types, parameters, and errors. For information about AWS Directory Services features, see AWS Directory Service and the AWS Directory Service Administration Guide.
Sending a Request Using DirectoryService
var directoryservice = new AWS.DirectoryService();
directoryservice.acceptSharedDirectory(params, function (err, data) {
if (err) console.log(err, err.stack); // an error occurred
else console.log(data); // successful response
});
Locking the API Version
In order to ensure that the DirectoryService object uses this specific API, you can
construct the object by passing the apiVersion
option to the constructor:
var directoryservice = new AWS.DirectoryService({apiVersion: '2015-04-16'});
You can also set the API version globally in AWS.config.apiVersions
using
the directoryservice service identifier:
AWS.config.apiVersions = {
directoryservice: '2015-04-16',
// other service API versions
};
var directoryservice = new AWS.DirectoryService();
Constructor Summary
-
new AWS.DirectoryService(options = {}) ⇒ Object
constructor
Constructs a service object.
Property Summary
-
endpoint ⇒ AWS.Endpoint
readwrite
An Endpoint object representing the endpoint URL for service requests.
Properties inherited from AWS.Service
Method Summary
-
acceptSharedDirectory(params = {}, callback) ⇒ AWS.Request
Accepts a directory sharing request that was sent from the directory owner account.
-
addIpRoutes(params = {}, callback) ⇒ AWS.Request
If the DNS server for your on-premises domain uses a publicly addressable IP address, you must add a CIDR address block to correctly route traffic to and from your Microsoft AD on Amazon Web Services.
-
addTagsToResource(params = {}, callback) ⇒ AWS.Request
Adds or overwrites one or more tags for the specified directory.
-
cancelSchemaExtension(params = {}, callback) ⇒ AWS.Request
Cancels an in-progress schema extension to a Microsoft AD directory.
-
connectDirectory(params = {}, callback) ⇒ AWS.Request
Creates an AD Connector to connect to an on-premises directory.
-
createAlias(params = {}, callback) ⇒ AWS.Request
Creates an alias for a directory and assigns the alias to the directory.
-
createComputer(params = {}, callback) ⇒ AWS.Request
Creates a computer account in the specified directory, and joins the computer to the directory.
-
createConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Creates a conditional forwarder associated with your AWS directory.
-
createDirectory(params = {}, callback) ⇒ AWS.Request
Creates a Simple AD directory.
-
createLogSubscription(params = {}, callback) ⇒ AWS.Request
Creates a subscription to forward real time Directory Service domain controller security logs to the specified CloudWatch log group in your AWS account.
-
createMicrosoftAD(params = {}, callback) ⇒ AWS.Request
Creates an AWS Managed Microsoft AD directory.
-
createSnapshot(params = {}, callback) ⇒ AWS.Request
Creates a snapshot of a Simple AD or Microsoft AD directory in the AWS cloud.
-
createTrust(params = {}, callback) ⇒ AWS.Request
AWS Directory Service for Microsoft Active Directory allows you to configure trust relationships.
-
deleteConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Deletes a conditional forwarder that has been set up for your AWS directory.
-
deleteDirectory(params = {}, callback) ⇒ AWS.Request
Deletes an AWS Directory Service directory.
-
deleteLogSubscription(params = {}, callback) ⇒ AWS.Request
Deletes the specified log subscription.
-
deleteSnapshot(params = {}, callback) ⇒ AWS.Request
Deletes a directory snapshot.
-
deleteTrust(params = {}, callback) ⇒ AWS.Request
Deletes an existing trust relationship between your AWS Managed Microsoft AD directory and an external domain.
-
deregisterEventTopic(params = {}, callback) ⇒ AWS.Request
Removes the specified directory as a publisher to the specified SNS topic.
-
describeConditionalForwarders(params = {}, callback) ⇒ AWS.Request
Obtains information about the conditional forwarders for this account.
-
describeDirectories(params = {}, callback) ⇒ AWS.Request
Obtains information about the directories that belong to this account.
-
describeDomainControllers(params = {}, callback) ⇒ AWS.Request
Provides information about any domain controllers in your directory.
-
describeEventTopics(params = {}, callback) ⇒ AWS.Request
Obtains information about which SNS topics receive status messages from the specified directory.
-
describeSharedDirectories(params = {}, callback) ⇒ AWS.Request
Returns the shared directories in your account.
-
describeSnapshots(params = {}, callback) ⇒ AWS.Request
Obtains information about the directory snapshots that belong to this account.
-
describeTrusts(params = {}, callback) ⇒ AWS.Request
Obtains information about the trust relationships for this account.
-
disableRadius(params = {}, callback) ⇒ AWS.Request
Disables multi-factor authentication (MFA) with the Remote Authentication Dial In User Service (RADIUS) server for an AD Connector or Microsoft AD directory.
-
disableSso(params = {}, callback) ⇒ AWS.Request
Disables single-sign on for a directory.
-
enableRadius(params = {}, callback) ⇒ AWS.Request
Enables multi-factor authentication (MFA) with the Remote Authentication Dial In User Service (RADIUS) server for an AD Connector or Microsoft AD directory.
-
enableSso(params = {}, callback) ⇒ AWS.Request
Enables single sign-on for a directory.
-
getDirectoryLimits(params = {}, callback) ⇒ AWS.Request
Obtains directory limit information for the current region.
-
getSnapshotLimits(params = {}, callback) ⇒ AWS.Request
Obtains the manual snapshot limits for a directory.
-
listIpRoutes(params = {}, callback) ⇒ AWS.Request
Lists the address blocks that you have added to a directory.
-
listLogSubscriptions(params = {}, callback) ⇒ AWS.Request
Lists the active log subscriptions for the AWS account.
-
listSchemaExtensions(params = {}, callback) ⇒ AWS.Request
Lists all schema extensions applied to a Microsoft AD Directory.
-
listTagsForResource(params = {}, callback) ⇒ AWS.Request
Lists all tags on a directory.
-
registerEventTopic(params = {}, callback) ⇒ AWS.Request
Associates a directory with an SNS topic.
-
rejectSharedDirectory(params = {}, callback) ⇒ AWS.Request
Rejects a directory sharing request that was sent from the directory owner account.
-
removeIpRoutes(params = {}, callback) ⇒ AWS.Request
Removes IP address blocks from a directory.
-
removeTagsFromResource(params = {}, callback) ⇒ AWS.Request
Removes tags from a directory.
-
resetUserPassword(params = {}, callback) ⇒ AWS.Request
Resets the password for any user in your AWS Managed Microsoft AD or Simple AD directory.
-
restoreFromSnapshot(params = {}, callback) ⇒ AWS.Request
Restores a directory using an existing directory snapshot.
-
shareDirectory(params = {}, callback) ⇒ AWS.Request
Shares a specified directory (DirectoryId) in your AWS account (directory owner) with another AWS account (directory consumer).
-
startSchemaExtension(params = {}, callback) ⇒ AWS.Request
Applies a schema extension to a Microsoft AD directory.
-
unshareDirectory(params = {}, callback) ⇒ AWS.Request
Stops the directory sharing between the directory owner and consumer accounts.
-
updateConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Updates a conditional forwarder that has been set up for your AWS directory.
-
updateNumberOfDomainControllers(params = {}, callback) ⇒ AWS.Request
Adds or removes domain controllers to or from the directory.
-
updateRadius(params = {}, callback) ⇒ AWS.Request
Updates the Remote Authentication Dial In User Service (RADIUS) server information for an AD Connector or Microsoft AD directory.
-
updateTrust(params = {}, callback) ⇒ AWS.Request
Updates the trust that has been set up between your AWS Managed Microsoft AD directory and an on-premises Active Directory.
-
verifyTrust(params = {}, callback) ⇒ AWS.Request
AWS Directory Service for Microsoft Active Directory allows you to configure and verify trust relationships.
Methods inherited from AWS.Service
makeRequest, makeUnauthenticatedRequest, waitFor, setupRequestListeners, defineService
Constructor Details
Property Details
Method Details
acceptSharedDirectory(params = {}, callback) ⇒ AWS.Request
Accepts a directory sharing request that was sent from the directory owner account.
addIpRoutes(params = {}, callback) ⇒ AWS.Request
If the DNS server for your on-premises domain uses a publicly addressable IP address, you must add a CIDR address block to correctly route traffic to and from your Microsoft AD on Amazon Web Services. AddIpRoutes adds this address block. You can also use AddIpRoutes to facilitate routing traffic that uses public IP ranges from your Microsoft AD on AWS to a peer VPC.
Before you call AddIpRoutes, ensure that all of the required permissions have been explicitly granted through a policy. For details about what permissions are required to run the AddIpRoutes operation, see AWS Directory Service API Permissions: Actions, Resources, and Conditions Reference.
addTagsToResource(params = {}, callback) ⇒ AWS.Request
Adds or overwrites one or more tags for the specified directory. Each directory can have a maximum of 50 tags. Each tag consists of a key and optional value. Tag keys must be unique to each resource.
cancelSchemaExtension(params = {}, callback) ⇒ AWS.Request
Cancels an in-progress schema extension to a Microsoft AD directory. Once a schema extension has started replicating to all domain controllers, the task can no longer be canceled. A schema extension can be canceled during any of the following states; Initializing
, CreatingSnapshot
, and UpdatingSchema
.
connectDirectory(params = {}, callback) ⇒ AWS.Request
Creates an AD Connector to connect to an on-premises directory.
Before you call ConnectDirectory
, ensure that all of the required permissions have been explicitly granted through a policy. For details about what permissions are required to run the ConnectDirectory
operation, see AWS Directory Service API Permissions: Actions, Resources, and Conditions Reference.
createAlias(params = {}, callback) ⇒ AWS.Request
Creates an alias for a directory and assigns the alias to the directory. The alias is used to construct the access URL for the directory, such as http://<alias>.awsapps.com
.
After an alias has been created, it cannot be deleted or reused, so this operation should only be used when absolutely necessary.
createComputer(params = {}, callback) ⇒ AWS.Request
Creates a computer account in the specified directory, and joins the computer to the directory.
createConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Creates a conditional forwarder associated with your AWS directory. Conditional forwarders are required in order to set up a trust relationship with another domain. The conditional forwarder points to the trusted domain.
createDirectory(params = {}, callback) ⇒ AWS.Request
Creates a Simple AD directory.
Before you call CreateDirectory
, ensure that all of the required permissions have been explicitly granted through a policy. For details about what permissions are required to run the CreateDirectory
operation, see AWS Directory Service API Permissions: Actions, Resources, and Conditions Reference.
createLogSubscription(params = {}, callback) ⇒ AWS.Request
Creates a subscription to forward real time Directory Service domain controller security logs to the specified CloudWatch log group in your AWS account.
createMicrosoftAD(params = {}, callback) ⇒ AWS.Request
Creates an AWS Managed Microsoft AD directory.
Before you call CreateMicrosoftAD, ensure that all of the required permissions have been explicitly granted through a policy. For details about what permissions are required to run the CreateMicrosoftAD operation, see AWS Directory Service API Permissions: Actions, Resources, and Conditions Reference.
createSnapshot(params = {}, callback) ⇒ AWS.Request
Creates a snapshot of a Simple AD or Microsoft AD directory in the AWS cloud.
createTrust(params = {}, callback) ⇒ AWS.Request
AWS Directory Service for Microsoft Active Directory allows you to configure trust relationships. For example, you can establish a trust between your AWS Managed Microsoft AD directory, and your existing on-premises Microsoft Active Directory. This would allow you to provide users and groups access to resources in either domain, with a single set of credentials.
This action initiates the creation of the AWS side of a trust relationship between an AWS Managed Microsoft AD directory and an external domain. You can create either a forest trust or an external trust.
deleteConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Deletes a conditional forwarder that has been set up for your AWS directory.
deleteDirectory(params = {}, callback) ⇒ AWS.Request
Deletes an AWS Directory Service directory.
Before you call DeleteDirectory
, ensure that all of the required permissions have been explicitly granted through a policy. For details about what permissions are required to run the DeleteDirectory
operation, see AWS Directory Service API Permissions: Actions, Resources, and Conditions Reference.
deleteTrust(params = {}, callback) ⇒ AWS.Request
Deletes an existing trust relationship between your AWS Managed Microsoft AD directory and an external domain.
deregisterEventTopic(params = {}, callback) ⇒ AWS.Request
Removes the specified directory as a publisher to the specified SNS topic.
describeConditionalForwarders(params = {}, callback) ⇒ AWS.Request
Obtains information about the conditional forwarders for this account.
If no input parameters are provided for RemoteDomainNames, this request describes all conditional forwarders for the specified directory ID.
describeDirectories(params = {}, callback) ⇒ AWS.Request
Obtains information about the directories that belong to this account.
You can retrieve information about specific directories by passing the directory identifiers in the DirectoryIds
parameter. Otherwise, all directories that belong to the current account are returned.
This operation supports pagination with the use of the NextToken
request and response parameters. If more results are available, the DescribeDirectoriesResult.NextToken
member contains a token that you pass in the next call to DescribeDirectories to retrieve the next set of items.
You can also specify a maximum number of return results with the Limit
parameter.
describeDomainControllers(params = {}, callback) ⇒ AWS.Request
Provides information about any domain controllers in your directory.
describeEventTopics(params = {}, callback) ⇒ AWS.Request
Obtains information about which SNS topics receive status messages from the specified directory.
If no input parameters are provided, such as DirectoryId or TopicName, this request describes all of the associations in the account.
describeSharedDirectories(params = {}, callback) ⇒ AWS.Request
Returns the shared directories in your account.
describeSnapshots(params = {}, callback) ⇒ AWS.Request
Obtains information about the directory snapshots that belong to this account.
This operation supports pagination with the use of the NextToken request and response parameters. If more results are available, the DescribeSnapshots.NextToken member contains a token that you pass in the next call to DescribeSnapshots to retrieve the next set of items.
You can also specify a maximum number of return results with the Limit parameter.
describeTrusts(params = {}, callback) ⇒ AWS.Request
Obtains information about the trust relationships for this account.
If no input parameters are provided, such as DirectoryId or TrustIds, this request describes all the trust relationships belonging to the account.
disableRadius(params = {}, callback) ⇒ AWS.Request
Disables multi-factor authentication (MFA) with the Remote Authentication Dial In User Service (RADIUS) server for an AD Connector or Microsoft AD directory.
enableRadius(params = {}, callback) ⇒ AWS.Request
Enables multi-factor authentication (MFA) with the Remote Authentication Dial In User Service (RADIUS) server for an AD Connector or Microsoft AD directory.
getDirectoryLimits(params = {}, callback) ⇒ AWS.Request
Obtains directory limit information for the current region.
getSnapshotLimits(params = {}, callback) ⇒ AWS.Request
Obtains the manual snapshot limits for a directory.
listIpRoutes(params = {}, callback) ⇒ AWS.Request
Lists the address blocks that you have added to a directory.
listLogSubscriptions(params = {}, callback) ⇒ AWS.Request
Lists the active log subscriptions for the AWS account.
listSchemaExtensions(params = {}, callback) ⇒ AWS.Request
Lists all schema extensions applied to a Microsoft AD Directory.
registerEventTopic(params = {}, callback) ⇒ AWS.Request
Associates a directory with an SNS topic. This establishes the directory as a publisher to the specified SNS topic. You can then receive email or text (SMS) messages when the status of your directory changes. You get notified if your directory goes from an Active status to an Impaired or Inoperable status. You also receive a notification when the directory returns to an Active status.
rejectSharedDirectory(params = {}, callback) ⇒ AWS.Request
Rejects a directory sharing request that was sent from the directory owner account.
resetUserPassword(params = {}, callback) ⇒ AWS.Request
Resets the password for any user in your AWS Managed Microsoft AD or Simple AD directory.
restoreFromSnapshot(params = {}, callback) ⇒ AWS.Request
Restores a directory using an existing directory snapshot.
When you restore a directory from a snapshot, any changes made to the directory after the snapshot date are overwritten.
This action returns as soon as the restore operation is initiated. You can monitor the progress of the restore operation by calling the DescribeDirectories operation with the directory identifier. When the DirectoryDescription.Stage value changes to Active
, the restore operation is complete.
shareDirectory(params = {}, callback) ⇒ AWS.Request
Shares a specified directory (DirectoryId
) in your AWS account (directory owner) with another AWS account (directory consumer). With this operation you can use your directory from any AWS account and from any Amazon VPC within an AWS Region.
When you share your AWS Managed Microsoft AD directory, AWS Directory Service creates a shared directory in the directory consumer account. This shared directory contains the metadata to provide access to the directory within the directory owner account. The shared directory is visible in all VPCs in the directory consumer account.
The ShareMethod
parameter determines whether the specified directory can be shared between AWS accounts inside the same AWS organization (ORGANIZATIONS
). It also determines whether you can share the directory with any other AWS account either inside or outside of the organization (HANDSHAKE
).
The ShareNotes
parameter is only used when HANDSHAKE
is called, which sends a directory sharing request to the directory consumer.
startSchemaExtension(params = {}, callback) ⇒ AWS.Request
Applies a schema extension to a Microsoft AD directory.
unshareDirectory(params = {}, callback) ⇒ AWS.Request
Stops the directory sharing between the directory owner and consumer accounts.
updateConditionalForwarder(params = {}, callback) ⇒ AWS.Request
Updates a conditional forwarder that has been set up for your AWS directory.
updateNumberOfDomainControllers(params = {}, callback) ⇒ AWS.Request
Adds or removes domain controllers to or from the directory. Based on the difference between current value and new value (provided through this API call), domain controllers will be added or removed. It may take up to 45 minutes for any new domain controllers to become fully active once the requested number of domain controllers is updated. During this time, you cannot make another update request.
updateRadius(params = {}, callback) ⇒ AWS.Request
Updates the Remote Authentication Dial In User Service (RADIUS) server information for an AD Connector or Microsoft AD directory.