Overview
StigReady Base for RHEL 9: STIG-aligned disk layout and EC2 cloud hardening on official media (v0.1.1), boot-verified on AWS Nitro. Published SBOM and CVE scan per build. Foundation before CIS/STIG remediation or StigReady Applied.
Who this is for: Platform engineers and integrators who need a repeatable EC2 foundation with the STIG filesystem layout already in place - before applying your own profiles or subscribing to a scored StigReady Applied image.
What you get (StigReady Base tier):
- Separate mounts for /home, /tmp, /var, /var/log, /var/log/audit, /var/tmp (applied at install; not retrofittable after launch)
- EC2 cloud baseline: IMDSv2 required, no pre-installed SSH authorized_keys, PermitRootLogin and password SSH disabled, host keys regenerated on first boot
- Built from official OS install media; patched at build time
- Boot-verified on real AWS EC2 Nitro before release
- Per-version evidence (SBOM + CVE scan): see Support below
Getting started:
- Subscribe and launch in EC2 with your SSH key.
- Connect as ec2-user; restrict security group TCP/22 to trusted IPs.
- See https://stigready.com for documentation.
Support: support@stigready.com | https://stigready.com
Listing copy revision: 2026-07-29b
Not affiliated with or endorsed by DISA, DoD, NIST, CIS, Red Hat, or Canonical. All trademarks are the property of their respective owners.
Bring Your Own License (BYOL): you must hold appropriate Red Hat subscription rights for instances you run. StigReady does not provide commercial licenses for Red Hat products. Red Hat, Inc. holds the Red Hat trademarks.
Highlights
- STIG disk layout at install - cannot be retrofitted after launch
- Published SBOM + CVE scan per build version
- BYOL - bring your own Red Hat subscription
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Cost/hour |
|---|---|
t4g.medium Recommended | $0.02 |
t4g.micro | $0.02 |
t4g.small | $0.02 |
t4g.large | $0.02 |
t4g.xlarge | $0.02 |
t4g.2xlarge | $0.02 |
m6g.large | $0.02 |
m6g.xlarge | $0.02 |
m6g.2xlarge | $0.02 |
m6g.4xlarge | $0.02 |
Vendor refund policy
No refunds except as required by law.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (Arm) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
StigReady Base RHEL 9 v0.1.1. AMI name: stigready-base-rhel9-aarch64-v0.1.1. Public catalog: https://stigready.com/catalog.json . Base tier: STIG-aligned disk layout and cloud hardening only - not a fully remediated DISA STIG or CIS profile score. See StigReady Applied listings for scored remediation.
Additional details
Usage instructions
Subscribe in AWS Marketplace, then launch in EC2 with your SSH key pair. Connect via SSH as ec2-user. Open TCP port 22 only to trusted IP ranges in your security group (avoid 0.0.0.0/0 in production). This AMI requires IMDSv2-compatible instance metadata settings at launch. Documentation: https://stigready.com . Per-build SBOM and CVE scan metadata is listed in the public catalog at https://stigready.com/catalog.json (full factory evidence bundles are not web-public).
Resources
Vendor resources
Support
Vendor support
Listing copy revision: 2026-07-29b. Contact support@stigready.com and see https://stigready.com for documentation, evidence bundle access, and listing/version questions. Public product catalog:
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.