No more typing reviews! Try our Samantha, our new voice AI agent.

AWS Directory Service vs AWS IAM Identity Center comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 2, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Directory Service
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
18th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
16
Ranking in other categories
No ranking in other categories
AWS IAM Identity Center
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
8th
Average Rating
8.6
Reviews Sentiment
6.9
Number of Reviews
12
Ranking in other categories
Single Sign-On (SSO) (9th)
 

Mindshare comparison

As of June 2026, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of AWS Directory Service is 1.1%, down from 1.5% compared to the previous year. The mindshare of AWS IAM Identity Center is 1.5%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS) Mindshare Distribution
ProductMindshare (%)
AWS IAM Identity Center1.5%
AWS Directory Service1.1%
Other97.4%
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

Akram Zaki - PeerSpot reviewer
IT Specialist at FlairsTech
Hybrid directory service has streamlined global server access and supported reliable daily operations
Some features in AWS Directory Service are not automated and are not scriptable, so they require manual work. In today's world where everything is pretty much automated and scriptable using AI, this is a downside. The price is another concern. AWS is really expensive. They provide an awesome service in general, but it's still expensive, very expensive. AD Connector is an application which connects my own Active Directory to AWS Directory Service or AWS infrastructure. There is a bit of latency which is bound by the AD Connector availability. If the AD Connector is having issues, there is a bit of latency, but in general, it's way better than Microsoft Azure. Still, it could be better. The migration was a bit challenging and required intensive planning and migration time. That is always a hassle. No matter which cloud environment you're moving into, the migration is sensitive because you're generally moving from on-premise to a cloud environment, so there is downtime and there are unexpected issues and errors. It needs very careful planning before doing the migration itself. AWS Directory Service is lacking a few things which could be better. Single sign-on federation is missing. SCIM provisioning is not available. In my company, we use other services for SSO federation, SCIM provisioning, and authentication because of these gaps. I would like AWS Directory Service to enroll a multi-factor authentication method. I would like to have an SSO federation where users, if we're hosting applications in AWS, would not need to log in to each application. Single sign-on would log in the user to their account and from there they can open all their applications without requiring a login each time. One of the other cons in AWS is that directories cannot span multiple regions because it's a region-bound architecture. This requires several directories for multi-region deployment. This is the case on my end because my company has several branches all over the world, so it requires several deployments.
MO
Web developer at King of CMS Consulting
Centralized access control has improved team collaboration but still needs a simpler onboarding
One of the best features AWS IAM Identity Center offers is the permission set, which is one of the best. Then there are the temporary credentials via SSO, the multi-account governance, and the centralized identity management. Those are good features that I believe assist developers, and another feature I can say is one of the best is the improved security with temporary credentials. The feature I find myself relying on the most day-to-day would be the centralized identity management and multi-account governance. It allows me to check what other developers are doing and since I am the admin, I can also revoke the access they have to the AWS accounts.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The support is very good. I would rate the technical support as a nine out of ten."
"This solution does what we want to achieve."
"AWS is very helpful and very useful for the infrastructure because that's how you can manage your Microsoft Office 365 user accounts with AWS-managed Microsoft Active Directory Services."
"I like the manageability, as Activate Connect makes it easier to assign information and to manage the resources in the network."
"The most valuable feature of this solution is the security of my customers and my customers' customers."
"This is a managed directory service (by AWS) that offers a hands-free solution for our team as we are not required to hire or train people to manage Active Directory features and high availability backups, there is no security patching required on an operating system level or Active Directory malware attack, and we are able to easily integrate other AWS services."
"It's a pretty good solution in terms of performance with good availability and minimal downtime."
"Technical support is very knowledgeable and responds very quickly."
"IAM provides significant benefits when properly deployed."
"The product is easy for beginners to learn and use."
"We efficiently use AWS to create multiple user privileges and permissions, making it very scalable and supportive of our clients' operations."
"IAM Identity Center provides micro-level control over resources, services, and users, allowing organizations to grant specific access and privileges safely."
"The most valuable feature of AWS IAM Identity Center is the ability to provide a structured approach to access management through a single dashboard."
"Overall, IAM Identity Center is a great service, currently rated at nine out of ten."
"I highly recommend AWS IAM Identity Center to new users, especially for storage and deployment services like EC2, which are cost-efficient and scalable."
"AWS IAM Identity Center offers a secure and centralized way to manage access and permissions."
 

Cons

"The AWS Directory Service should be easier to integrate."
"AWS is really expensive. They provide an awesome service in general, but it's still expensive, very expensive."
"Accessing the data needs improvement."
"I'd like to see some additional features, similar to what Azure has."
"I've encountered challenges, particularly with Amazon WorkDocs, which is being deprecated. This has made it necessary to find an alternative document management solution that can handle editing, sharing, and workflow management for documents like Word files and PDFs."
"Our only complaint is that you cannot integrate your Exchange server. Or, if you are planning to install an Exchange server on your Amazon EC2 instance, then you need to configure Active Directory on EC2 instance. We would like for this limitation to be lifted."
"I'd rate the solution at a six out of ten, simply based on the cost. It's very expensive."
"We had a problem with the schema uploading and setting up the directory when we are migrating our users from on-premises to cloud infrastructure."
"In the product, two groups cannot have the same name...In general, the tool does not allow for the duplication of names."
"I think AWS IAM Identity Center can be improved by making it beginner-friendly. It was very hard for me to navigate initially because the UI was very complicated."
"IAM is challenging to manage in complex environments. Enhancements could include automation tools or a centralized dashboard for managing roles and policies across multiple accounts, simplifying the process."
"There is a desire to see integration or adoption of time-based user creation features within AWS IAM Identity Center."
"I would like to see more flexibility in the features as sometimes it doesn't meet my expectations."
"IAM is challenging to manage in complex environments."
"Integrating AWS IAM Identity Center with other applications sometimes presents challenges."
"I have opened support tickets and received responses, although not always resolving my queries fully. I would appreciate a live chat option with technical support for quicker resolutions."
 

Pricing and Cost Advice

"The pricing depends because with AWS there are two types of directory objects: 30,000 and 500,000. It varies. AWS provides the pricing calculators so we can get an estimate from there as per the company requirement of how many users and objects that we need to create. So we can go to that portal, put in the data, and get the quotation. There are no extra licensing fees. It's all included."
"The pricing is reasonable."
"AWS' pricing is fair, and costs can be cut if you look carefully at when you're using it."
"We pay an annual subscription fee."
"The product is cheap since it is available on the cloud."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
12%
Computer Software Company
10%
Performing Arts
9%
Government
9%
Financial Services Firm
13%
Construction Company
11%
Manufacturing Company
8%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise3
Large Enterprise5
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise4
Large Enterprise4
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Directory Service?
The pricing is very good because it is low and there is no management cost. You do not need to hire any system administrator to manage your Active Directory.
What needs improvement with AWS Directory Service?
Some features in AWS Directory Service are not automated and are not scriptable, so they require manual work. In today's world where everything is pretty much automated and scriptable using AI, thi...
What advice do you have for others considering AWS Directory Service?
I would like AWS Directory Service to enroll a multi-factor authentication method. I would like to have an SSO federation where users, if we're hosting applications in AWS, would not need to log in...
What is your experience regarding pricing and costs for AWS IAM Identity Center?
AWS provides the lowest pricing among other service providers like Azure, Google, Oracle. It is cost-effective, and they use a pay-as-you-go model.
What needs improvement with AWS IAM Identity Center?
I think AWS IAM Identity Center can be improved by making it beginner-friendly. It was very hard for me to navigate initially because the UI was very complicated. I had to do a lot of research and ...
What is your primary use case for AWS IAM Identity Center?
My main use case for AWS IAM Identity Center is hosting and redirecting web services that I want to use as localhost, but then I have to reroute it. What I did was create a permission set and use i...
 

Also Known As

AWS Managed Microsoft AD
AWS Single Sign On, AWS SSO
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Find out what your peers are saying about AWS Directory Service vs. AWS IAM Identity Center and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.