Deploy a new Active Directory domain controller 2019, to setup a new domain/forest or add to an existing domain.
Provide Active Directory and DNS services to servers, users and applications running in AWS
Active Directory Features
The perfect solution for providing Active Directory domain services to your servers in AWS
Enable Hybrid Active Directory using existing AD with your AWS tenant
Provide Group Polices (GPOs) to your servers, Users in AWS
Provide AD authentication services to your applications
Extend onprem Active Directory into AWS. Replicate onprem AD to new AD servers in AWS
Provide DNS name resolution to your servers & applications in AWS
Provide Single Sign On (SSO) for users logging into servers, services in AWS using Active Directory
This Windows Server 2019 VM comes pre loaded with the Active Directory Domain Services role, DNS server role, remote administration tools for AD, DNS and the required Powershell modules.
Upon powering up the ec2 VM the first time launch the DC promo wizard from server manager and start the setup of your new domain controller. Choose to setup a new domain or join this DC to an existing Active Directory Domain
Highlights
Provide Active Directory domain services to your servers, users and applications in AWS
Provide AD Group Policies (GPOs) to your servers in AWS. Secure your server logins and restrict server operating systems using Active Directory group policies.
Enable Hybrid Active Directory with your AWS environment or Azure AD
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the software running on your chosen EC2 instance type. There is no upfront commitment. Each dimension maps to a specific instance size, so your rate scales with the compute, memory, and hardware you select. Smaller shared instances carry lower hourly rates, while large, memory-optimized, GPU, high-performance, and bare-metal instances cost more per hour. You pick the instance that fits your Active Directory Domain Controller 2019 workload, and billing tracks the hours you run it. AWS infrastructure charges for the instance apply separately from this software rate.
Top-of-mind questions for buyers
What does one hourly unit cover for the Active Directory Domain Controller 2019 software?
Each hourly unit covers one running EC2 instance of the type you select, billed per hour it runs. One instance runs one domain controller virtual machine. The rate reflects that instance's compute, memory, and hardware. Stopped instances do not accrue this software charge, though AWS storage fees may still apply.
Am I charged when a domain controller instance is stopped, such as a standby for disaster recovery?
The software rate meters running hours only. A fully stopped instance does not accrue software charges. If you keep a standby domain controller powered off for disaster recovery, you avoid the hourly software fee. AWS may still bill for attached storage on the stopped instance.
If I run several domain controllers for replication, how does that affect my bill?
Each domain controller runs on its own EC2 instance and bills separately by the hour. Running multiple controllers for replication adds each instance's hourly software rate to your invoice. The instance type you pick for each controller sets its own rate, so totals depend on the sizes you choose.
cloudinfrastructureservices.co.uk+1
Helpful?
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Latest OS Patches installed. Simply run Windows update to install latest Microsoft OS patches
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Deployment of Active Directory 2019 domain controller with capability to establish new domain/forest or integrate with existing domains for providing authentication and directory services to servers, applications and users in AWS
Group Policy Management
Support for Group Policy Objects (GPOs) to enforce security policies, restrict server operating systems, and manage server logins across AWS infrastructure
DNS Server Role
Integrated DNS server role for providing name resolution services to servers and applications running in AWS environment
Hybrid Active Directory Integration
Capability to enable hybrid Active Directory configuration by replicating on-premises Active Directory to AWS or integrating with Azure AD for unified identity management
Single Sign-On Authentication
Single Sign-On (SSO) functionality enabling users to authenticate to servers and services in AWS using Active Directory credentials
Cloud Directory Identity Management
Centralize access across all identities with integrations to AWS Identity Center, Google Workspace, Microsoft 365, Active Directory, HRIS platforms, and network infrastructure resources
Single Sign-On and Multi-Factor Authentication
Frictionless, secure access to AWS resources and over 900 pre-built applications with automated user provisioning to Amazon IAM Identity Center and group-based permissions
Cross-Operating System Server and Device Management
Deploy, manage, and remotely assist AWS servers and corporate devices across Windows, macOS, iOS, Linux, AWS Linux AMIs, and Android from a single cloud platform
Passwordless and Conditional Access
Enable phishing-resistant access with passwordless SSO, password management, and conditional access controls to ensure only specific users on trusted devices and networks can access AWS resources
Unified Platform with Zero Trust Capabilities
Combine cloud directory identity management, access management, and cross-OS server and device management with enhanced IAM and device management controls to support Zero Trust security goals
Single Sign-On (SSO)
Automatically synchronizes users across multiple directories to enable one-click access to corporate applications on-premises and in the cloud with enforced security policies and self-service password reset capabilities.
Multi-Factor Authentication (MFA)
Supports multiple authentication methods including passwordless authentication, passkeys, one-time passcodes, push notifications, biometric data, and security keys with real-time reporting and monitoring of authentication events.
Adaptive Authentication
Delivers multi-layer, context-aware and risk-based protection to minimize common attacks and enforce contextual access security policies based on user behavior and risk assessment.
Identity Lifecycle Management
Provides role-based user provisioning engine with granular access permissions, least-privileged access controls, and automated user account provisioning across applications and AWS services.
Directory Integration
Acts as a secure cloud-based directory with integration capabilities for Active Directory, LDAP, G Suite and other external directories, plus pre-built connectors with thousands of third-party web applications and AWS services including AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge.
Internal Active Directory manages devices and logins much simpler than other options.
Reviewed on Apr 16, 2026
Review provided by G2
What do you like best about the product?
The simplicity of controlling devices and maintaining security for our network is a big plus. Deploying our group policies and assigning printers, etc., is straightforward. It just makes life easier, and it’s all handled internally with no cloud access to worry about from a security standpoint.
What do you dislike about the product?
Sometimes group policies take a while to deploy to all endpoints. It could take a week or two to see some of the policies get applied.
What problems is the product solving and how is that benefiting you?
We have integrated Active Directory with Action1 service. Free for up to 200 endpoints. This keeps drivers and security patches updated while AD takes care of the rest. Deployment was simple but you need to have patience as it does take time for all devices to come onboard.
Kashif H.
This Domain Controller completely control the worrkstations and laptops.
Reviewed on Mar 02, 2022
Review provided by G2
What do you like best about the product?
I most like the group policy and USB control feature of this product.
What do you dislike about the product?
I don't dislike anything in this product. All this is working properly.
What problems is the product solving and how is that benefiting you?
First of all, I had applied the group policy on all laptops and workstations that belongs to my organization's domain, and through this policy, I had blocked those USB ports to secure my organization's data. I am also applying the logon. batch on users' workstations and laptops. We are also using this to completely control and join our domain. After this product, I completely restricted my organization's users. I am also controlling the wifi users through group policy.
Recommendations to others considering the product:
I recommend this product to every organization.
Bhavana G.
Active Directory Domain Controller 2019 is optimal for my Domain management
Reviewed on Nov 03, 2021
Review provided by G2
What do you like best about the product?
Active Directory Domain Controller 2019 greatly responds to my authentication on request with less latency and convergence time. It forms up a fabulous way of hierarchy in organizing end-user requests and ensure their data integrity and security of them. It not only protects my organization's Domain from vulnerabilities but also uses DCs to detects the cyberattacks that are in progress.
What do you dislike about the product?
Active Directory Domain Controller 2019 is significant upgrade when comparing it's capabilities in managing multi-user processing requests with 2016 version. I like using Active Directory Domain Controller 2019 for my workspace.
What problems is the product solving and how is that benefiting you?
Active Directory Domain Controller 2019 offers brilliant evaluations and validations when it comes to user data and who acces the domain. It holds custom data on the network, which improves content delivery of packet routes efficiently. Also, there is a centralized user management policy that grants specific admin to over view the payload of the domain and enforce locked-down is case of any threat attack to improve domain security.