

# Manage users and groups with an Amazon EC2 instance
<a name="ms_ad_manage_users_groups_ec2"></a>

 This section includes procedures for managing users and groups with an Amazon EC2 instance that's joined to your Amazon Managed Microsoft AD. 

 We recommend managing users and groups with an Amazon EC2 instance if the Directory Service Data API doesn't support your use case. For more information, see the [Amazon Directory Service Data API Reference](https://docs.amazonaws.cn/directoryservicedata/latest/DirectoryServiceDataAPIReference/Welcome.html). 

**Note**  
 Before you complete any of the procedures in the following topics, you must install the Active Directory administration tools. For more information, see [Install the Active Directory administration tools](https://docs.amazonaws.cn/directoryservice/latest/admin-guide/ms_ad_install_ad_tools.html). 

**Topics**
+ [Installing Active Directory Administration Tools for Amazon Managed Microsoft AD](ms_ad_install_ad_tools.md)
+ [Creating an Amazon Managed Microsoft AD user](ms_ad_manage_users_groups_create_user.md)
+ [Delete a user's account with an Amazon EC2 instance](ms_ad_manage_users_groups_delete_user.md)
+ [Resetting an Amazon Managed Microsoft AD user password](ms_ad_manage_users_groups_reset_password.md)
+ [Creating an Amazon Managed Microsoft AD group](ms_ad_manage_users_groups_create_group.md)
+ [Adding an Amazon Managed Microsoft AD user to a group](ms_ad_manage_users_groups_add_user_to_group.md)