Which solution will meet these requirements with the MOST operational efficiency?

1 Comment

  1. Jeremy
    Author

    I reckon the answer is:
    In the CloudFormation template, update the launch template to include specific tags that propagate on launch. Create an AWS::SSM::Association resource to associate the AWS-JoinDirectoryServiceDomain Automation runbook with the EC2 instances that have the specified tags. Define the required parameters to join the AWS Managed Microsoft AD directory. Attach the AmazonSSMManagedInstanceCore and AmazonSSMDirectoryServiceAccess AWS managed policies to the IAM role that the EC2 instances use.

Leave a Reply

Your email address will not be published. Required fields are marked *

four × 3 =