Try our new research platform with insights from 80,000+ expert users

AWS Directory Service vs AWS IAM Identity Center comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 2, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Directory Service
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
18th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
16
Ranking in other categories
No ranking in other categories
AWS IAM Identity Center
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
7th
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
11
Ranking in other categories
Single Sign-On (SSO) (8th)
 

Mindshare comparison

As of January 2026, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of AWS Directory Service is 1.2%, down from 1.9% compared to the previous year. The mindshare of AWS IAM Identity Center is 1.5%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS) Market Share Distribution
ProductMarket Share (%)
AWS IAM Identity Center1.5%
AWS Directory Service1.2%
Other97.3%
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

Akram Zaki - PeerSpot reviewer
IT Specialist at FlairsTech
Hybrid directory service has streamlined global server access and supported reliable daily operations
Some features in AWS Directory Service are not automated and are not scriptable, so they require manual work. In today's world where everything is pretty much automated and scriptable using AI, this is a downside. The price is another concern. AWS is really expensive. They provide an awesome service in general, but it's still expensive, very expensive. AD Connector is an application which connects my own Active Directory to AWS Directory Service or AWS infrastructure. There is a bit of latency which is bound by the AD Connector availability. If the AD Connector is having issues, there is a bit of latency, but in general, it's way better than Microsoft Azure. Still, it could be better. The migration was a bit challenging and required intensive planning and migration time. That is always a hassle. No matter which cloud environment you're moving into, the migration is sensitive because you're generally moving from on-premise to a cloud environment, so there is downtime and there are unexpected issues and errors. It needs very careful planning before doing the migration itself. AWS Directory Service is lacking a few things which could be better. Single sign-on federation is missing. SCIM provisioning is not available. In my company, we use other services for SSO federation, SCIM provisioning, and authentication because of these gaps. I would like AWS Directory Service to enroll a multi-factor authentication method. I would like to have an SSO federation where users, if we're hosting applications in AWS, would not need to log in to each application. Single sign-on would log in the user to their account and from there they can open all their applications without requiring a login each time. One of the other cons in AWS is that directories cannot span multiple regions because it's a region-bound architecture. This requires several directories for multi-region deployment. This is the case on my end because my company has several branches all over the world, so it requires several deployments.
MA
Sr DevOps Engineer at HTC Global
Helped our organization by providing a unified dashboard to manage permissions and access controls
The most valuable feature of AWS IAM Identity Center is the ability to provide a structured approach to access management through a single dashboard. This single-pane management allows users to manage access control and permissions centrally. It provides the least privilege-based access control, which limits users to only the operations they need to perform without interfering with unrelated configurations.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"AWS Directory Service is secure."
"AWS has eliminated the downtime we waste when our on-premises resources go down."
"The most valuable feature of AWS Directory Service is cost-cutting features."
"I like the manageability. Activate Connect makes it easier to assign information and to manage the resources in the network."
"We like the fact that it's got such great redundancy."
"The most valuable feature is that because it's all in the cloud, you don't need to manage the infrastructure."
"The pricing is very good because it is low and there is no management cost."
"We can provide specific access to people based on what they need from our accounts."
"The most valuable feature of AWS Identity Center is its ability to centrally create permission templates, known as permission sets, which define AWS IAM roles."
"I highly recommend AWS IAM Identity Center to new users, especially for storage and deployment services like EC2, which are cost-efficient and scalable."
"AWS IAM Identity Center offers a secure and centralized way to manage access and permissions."
"The product is easy for beginners to learn and use."
"The features of AWS IAM Identity Center that I appreciate are single sign-on and multi-factor authentication, and we can manage all authentication aspects while integrating it with third-party applications."
"The features of AWS IAM Identity Center that I appreciate are single sign-on and multi-factor authentication, and we can manage all authentication aspects while integrating it with third-party applications."
"AWS IAM Identity Center has helped our organization by providing a unified dashboard to manage permissions and access controls."
"The solution helps us manage access in a time-efficient manner and offers reliable integration for our services, avoiding security breaches and maintaining operational efficiency."
 

Cons

"The group policy can be improved."
"Currently, there is no option to integrate our on-premises Cisco AWS Directory Service, requiring some manual configuration."
"I would like to grant partial access to a table contained in a database without having to provide full access to the whole database."
"I would like to see better integration with other business solutions."
"The solution lacks certain features."
"Accessing the data needs improvement."
"Currently, there is no option to integrate our on-premises Cisco AWS Directory Service, requiring some manual configuration. If AWS Active Directory Service provided additional domain controller functionalities, like other on-premises Active Directory, it would be very helpful."
"AWS Directory Service needs to improve processing."
"The configuration with other tools can be hard."
"There is a desire to see integration or adoption of time-based user creation features within AWS IAM Identity Center."
"Integrating AWS IAM Identity Center with other applications sometimes presents challenges."
"The initial setup isn't very easy, around four on a scale of one to ten. It permits setting up policies that might not be entirely secure if improperly configured, which can lead to issues later."
"I have opened support tickets and received responses, although not always resolving my queries fully. I would appreciate a live chat option with technical support for quicker resolutions."
"I would like to see more flexibility in the features as sometimes it doesn't meet my expectations."
"Greater visualization for security policies would be beneficial."
"Focusing on further allowing customization and flexibility in developing solutions as a solution architect or developer would enhance user experience."
 

Pricing and Cost Advice

"The pricing is reasonable."
"The pricing depends because with AWS there are two types of directory objects: 30,000 and 500,000. It varies. AWS provides the pricing calculators so we can get an estimate from there as per the company requirement of how many users and objects that we need to create. So we can go to that portal, put in the data, and get the quotation. There are no extra licensing fees. It's all included."
"We pay an annual subscription fee."
"AWS' pricing is fair, and costs can be cut if you look carefully at when you're using it."
"The product is cheap since it is available on the cloud."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Performing Arts
11%
Government
10%
Manufacturing Company
8%
Financial Services Firm
13%
Manufacturing Company
10%
Comms Service Provider
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise3
Large Enterprise5
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise3
Large Enterprise4
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Directory Service?
The pricing is very good because it is low and there is no management cost. You do not need to hire any system administrator to manage your Active Directory.
What needs improvement with AWS Directory Service?
Accessing the data needs improvement. Additionally, integration and compatibility with other AWS ( /products/amazon-aws-reviews ) services, network open LDAP, support for on-premise and cloud envir...
What advice do you have for others considering AWS Directory Service?
I would rate AWS Directory Service nine out of ten. Users need to be aware of how the system works locally to adapt easily to the integration and setup.
What do you like most about AWS IAM Identity Center?
The product is easy for beginners to learn and use.
What is your experience regarding pricing and costs for AWS IAM Identity Center?
AWS provides the lowest pricing among other service providers like Azure, Google, Oracle. It is cost-effective, and they use a pay-as-you-go model.
What needs improvement with AWS IAM Identity Center?
The tech support for AWS is time-consuming, as we have experienced this issue. However, I am not aware of many other cases.
 

Also Known As

AWS Managed Microsoft AD
AWS Single Sign On, AWS SSO
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Find out what your peers are saying about AWS Directory Service vs. AWS IAM Identity Center and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.