aws-cloudformation / aws-cloudformation/cloudformation-coverage-roadmap

[Resource Type] - [Coverage] - Support enabling directory service data for AWS::DirectoryService::MicrosoftAD

Open
#2,162 0 comments 2 reactions 0 assignees View on GitHub
Coverage
Dominant language
No language data
Stars
1.1k
Forks
62
PR merge metrics
No merged PRs in 30d

Description

### Name of the resource

AWS::DirectoryService::MicrosoftAD

### Resource name

_No response_

### Description

For the [AWS::DirectoryService::MicrosoftAD](https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-directoryservice-microsoftad.html), if you want to enable user and group management you need to manually call [`EnableDirectoryDataAccess`](https://docs.aws.amazon.com/directoryservice/latest/devguide/API_EnableDirectoryDataAccess.html) via [CLI or console](https://docs.aws.amazon.com/directoryservice/latest/admin-guide/ms_ad_users_groups_mgmt_enable_disable.html#ms_ad_user_group_mgmt_enable).

Ideally, we could extend the properties of the MicrosoftAD resource to allow enabling this on the managed AD resource, or otherwise via the stack template to prevent requiring a manual step / external automation.

### Other Details

_No response_

Contributor guide

Open the contributing guide

Research direction

Start with the AWS::DirectoryService::MicrosoftAD documentation and the linked EnableDirectoryDataAccess API and user-management guidance. Determine whether CloudFormation should expose a MicrosoftAD property or another stack-template mechanism, then verify that directory data access can be enabled without CLI or console steps.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
cloud, infrastructure
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.