aws-cloudformation / aws-cloudformation/cloudformation-coverage-roadmap
[Resource Type] - [Coverage] - Support enabling directory service data for AWS::DirectoryService::MicrosoftAD
- Dominant language
- No language data
- Stars
- 1.1k
- Forks
- 62
- PR merge metrics
- No merged PRs in 30d
Description
### Name of the resource
AWS::DirectoryService::MicrosoftAD
### Resource name
_No response_
### Description
For the [AWS::DirectoryService::MicrosoftAD](https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-directoryservice-microsoftad.html), if you want to enable user and group management you need to manually call [`EnableDirectoryDataAccess`](https://docs.aws.amazon.com/directoryservice/latest/devguide/API_EnableDirectoryDataAccess.html) via [CLI or console](https://docs.aws.amazon.com/directoryservice/latest/admin-guide/ms_ad_users_groups_mgmt_enable_disable.html#ms_ad_user_group_mgmt_enable).
Ideally, we could extend the properties of the MicrosoftAD resource to allow enabling this on the managed AD resource, or otherwise via the stack template to prevent requiring a manual step / external automation.
### Other Details
_No response_
Contributor guide
Research direction
Start with the AWS::DirectoryService::MicrosoftAD documentation and the linked EnableDirectoryDataAccess API and user-management guidance. Determine whether CloudFormation should expose a MicrosoftAD property or another stack-template mechanism, then verify that directory data access can be enabled without CLI or console steps.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws
- Domain
- cloud, infrastructure
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 30/100