openapi: 3.0.0
info:
version: 2015-04-16
x-release: v4
title: 'AWS Directory Service #X Amz Target=DirectoryService 20150416.AcceptSharedDirectory #X Amz Target=DirectoryService 20150416.AcceptSharedDirectory #X Amz Target=DirectoryService 20150416.CreateTrust API'
description:
Directory Service is a web service that makes it easy for you to setup and run directories in the Amazon Web Services cloud, or connect your Amazon Web Services resources with an existing self-managed Microsoft Active Directory. This guide provides detailed information about Directory Service operations, data types, parameters, and errors. For information about Directory Services features, see Directory Service and the Directory Service Administration Guide.
Amazon Web Services provides SDKs that consist of libraries and sample code for various programming languages and platforms (Java, Ruby, .Net, iOS, Android, etc.). The SDKs provide a convenient way to create programmatic access to Directory Service and other Amazon Web Services services. For more information about the Amazon Web Services SDKs, including how to download and install them, see Tools for Amazon Web Services.
Directory Service for Microsoft Active Directory allows you to configure trust relationships. For example, you can establish a trust between your Managed Microsoft AD directory, and your existing self-managed Microsoft Active Directory. This would allow you to provide users and groups access to resources in either domain, with a single set of credentials.
This action initiates the creation of the Amazon Web Services side of a trust relationship between an Managed Microsoft AD directory and an external domain. You can create either a forest trust or an external trust.
responses: '200': description: Success content: application/json: schema: $ref: '#/components/schemas/CreateTrustResult' '480': description: EntityAlreadyExistsException content: application/json: schema: $ref: '#/components/schemas/EntityAlreadyExistsException' '481': description: EntityDoesNotExistException content: application/json: schema: $ref: '#/components/schemas/EntityDoesNotExistException' '482': description: InvalidParameterException content: application/json: schema: $ref: '#/components/schemas/InvalidParameterException' '483': description: ClientException content: application/json: schema: $ref: '#/components/schemas/ClientException' '484': description: ServiceException content: application/json: schema: $ref: '#/components/schemas/ServiceException' '485': description: UnsupportedOperationException content: application/json: schema: $ref: '#/components/schemas/UnsupportedOperationException' requestBody: required: true content: application/json: schema: $ref: '#/components/schemas/CreateTrustRequest' parameters: - name: X-Amz-Target in: header required: true schema: type: string enum: - DirectoryService_20150416.CreateTrust tags: - '#X Amz Target=DirectoryService 20150416.CreateTrust' components: parameters: X-Amz-Date: name: X-Amz-Date in: header schema: type: string required: false X-Amz-SignedHeaders: name: X-Amz-SignedHeaders in: header schema: type: string required: false X-Amz-Credential: name: X-Amz-Credential in: header schema: type: string required: false X-Amz-Content-Sha256: name: X-Amz-Content-Sha256 in: header schema: type: string required: false X-Amz-Algorithm: name: X-Amz-Algorithm in: header schema: type: string required: false X-Amz-Signature: name: X-Amz-Signature in: header schema: type: string required: false X-Amz-Security-Token: name: X-Amz-Security-Token in: header schema: type: string required: false schemas: ClientException: {} IpAddr: type: string pattern: ^(?:(?:25[0-5]|2[0-4][0-9]|[01]?[0-9][0-9]?)\.){3}(?:25[0-5]|2[0-4][0-9]|[01]?[0-9][0-9]?)$ DirectoryId: type: string pattern: ^d-[0-9a-f]{10}$ TrustType: type: string enum: - Forest - External CreateTrustResult: type: object properties: TrustId: allOf: - $ref: '#/components/schemas/TrustId' - description: A unique identifier for the trust relationship that was created. description: The result of a CreateTrust request. CreateTrustRequest: type: object required: - DirectoryId - RemoteDomainName - TrustPassword - TrustDirection title: CreateTrustRequest properties: DirectoryId: allOf: - $ref: '#/components/schemas/DirectoryId' - description: The Directory ID of the Managed Microsoft AD directory for which to establish the trust relationship. RemoteDomainName: allOf: - $ref: '#/components/schemas/RemoteDomainName' - description: The Fully Qualified Domain Name (FQDN) of the external domain for which to create the trust relationship. TrustPassword: allOf: - $ref: '#/components/schemas/TrustPassword' - description: The trust password. The must be the same password that was used when creating the trust relationship on the external domain. TrustDirection: allOf: - $ref: '#/components/schemas/TrustDirection' - description: The direction of the trust relationship. TrustType: allOf: - $ref: '#/components/schemas/TrustType' - description: The trust relationship type.Forest is the default.
ConditionalForwarderIpAddrs:
allOf:
- $ref: '#/components/schemas/DnsIpAddrs'
- description: The IP addresses of the remote DNS server associated with RemoteDomainName.
SelectiveAuth:
allOf:
- $ref: '#/components/schemas/SelectiveAuth'
- description: Optional parameter to enable selective authentication for the trust.
description: Directory Service for Microsoft Active Directory allows you to configure trust relationships. For example, you can establish a trust between your Managed Microsoft AD directory, and your existing self-managed Microsoft Active Directory. This would allow you to provide users and groups access to resources in either domain, with a single set of credentials.
This action initiates the creation of the Amazon Web Services side of a trust relationship between an Managed Microsoft AD directory and an external domain.
TrustId: type: string pattern: ^t-[0-9a-f]{10}$ DnsIpAddrs: type: array items: $ref: '#/components/schemas/IpAddr' SelectiveAuth: type: string enum: - Enabled - Disabled UnsupportedOperationException: {} ServiceException: {} TrustDirection: type: string enum: - 'One-Way: Outgoing' - 'One-Way: Incoming' - Two-Way EntityDoesNotExistException: {} TrustPassword: type: string pattern: ^(\p{LD}|\p{Punct}| )+$ minLength: 1 maxLength: 128 format: password InvalidParameterException: {} RemoteDomainName: type: string pattern: ^([a-zA-Z0-9]+[\\.-])+([a-zA-Z0-9])+[.]?$ EntityAlreadyExistsException: {} securitySchemes: hmac: type: apiKey name: Authorization in: header description: Amazon Signature authorization v4 x-amazon-apigateway-authtype: awsSigv4 externalDocs: description: Amazon Web Services documentation url: https://docs.aws.amazon.com/ds/ x-hasEquivalentPaths: true