Overview
Atlantis web dashboard
The Atlantis locks and jobs dashboard, served behind an nginx reverse proxy with per-instance HTTP Basic authentication on port 80.
Atlantis web dashboard
OpenTofu plan round-trip proof
Service and engine status
This is a repackaged open source software product wherein additional charges apply for cloudimg support services.
Why This AMI Instead of Self-Deploying?
Atlantis is a popular open source server that automates OpenTofu and Terraform pull request workflows: it listens for webhooks from your Git provider and runs plan and apply on your pull requests, posting the plan output back to the PR and locking the workspace so two changes cannot touch the same state at once. Deploying it yourself means installing the binary, choosing and installing an infrastructure-as-code engine, writing systemd units, hardening a reverse proxy, generating secure passwords, and maintaining the stack. This AMI eliminates that effort - a pre-hardened Atlantis server is running within minutes of launch, backed by 24/7 expert support with a one-hour average response for critical issues.
OpenTofu Bundled, Not Terraform
This image ships the OpenTofu command-line engine (Mozilla Public License 2.0) and configures Atlantis to drive it. OpenTofu is a fully open source, drop-in replacement for Terraform. Terraform itself moved to the Business Source License in version 1.6, whose terms restrict competing hosted offerings, so this image deliberately bundles OpenTofu rather than a restrictively-licensed Terraform binary. If you prefer to run your own Terraform, you can install it and repoint the engine.
Secure By Default
Many pre-built images ship with shared or default passwords - a common vulnerability that exposes instances immediately after launch. This image eliminates that risk:
- A unique web password is generated for every instance on its first boot
- It is stored in a root-only file, inaccessible to unprivileged users
- The web UI is refused without credentials and reached only through an authenticated reverse proxy on port 80
- The application listens on loopback and is never exposed directly
- No shared or default password ships in the image
A continuous-delivery server that can run apply against your cloud is a high-value target, so access to the web UI is gated behind HTTP Basic authentication with the per-instance password.
You Connect Your Own Repositories
Atlantis orchestrates your infrastructure only after you connect it to your own version control. The image ships ready for you to add your GitHub, GitLab, Bitbucket or Azure DevOps credentials, webhook secret and repository allowlist in a single configuration file, then point a webhook from your repository at the instance. Until you do, the server runs and serves its dashboard but acts on no repository - nothing is automated behind your back. The user guide walks through connecting a repository step by step.
Proven Plan Engine
Every instance ships with a self-test that runs a real OpenTofu plan through the same engine Atlantis drives, proving the plan machinery works end to end before you ever connect a repository - not merely that a web page loads.
cloudimg Support
24/7 technical support by email and live chat with a one-hour average response for critical issues. Our engineers help with deployment, connecting Git providers and webhooks, repository allowlists, workflow customization, OpenTofu, TLS termination and upgrades.
Use Cases
- GitOps pull request automation for infrastructure-as-code changes
- A self-hosted, in-your-own-VPC plan and apply approval gate for cloud infrastructure
- Team review of infrastructure changes with plan output posted directly on pull requests
All product and company names are trademarks or registered trademarks of their respective holders. Use of them does not imply any affiliation with or endorsement by them.
Highlights
- Atlantis, the open source pull request automation server for Terraform and OpenTofu, preinstalled and hardened behind an nginx reverse proxy with HTTP Basic authentication on port 80, with the OpenTofu engine bundled and ready
- Secure by default: a unique web password is generated on every instance at first boot and stored in a root only file, the web UI is refused without credentials, and no shared or default password ships in the image
- Connect your GitHub, GitLab, Bitbucket or Azure DevOps repository and webhook to run plan and apply automatically on pull requests, with 24/7 expert support from cloudimg
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Free trial
- ...
Dimension | Description | Cost/hour |
|---|---|---|
m5.large Recommended | m5.large | $0.08 |
t2.micro | t2.micro instance type | $0.04 |
t3.micro | t3.micro instance type | $0.04 |
d3.4xlarge | d3.4xlarge instance type | $0.24 |
g6.4xlarge | g6.4xlarge instance type | $0.24 |
t3.small | t3.small instance type | $0.04 |
m5ad.8xlarge | m5ad.8xlarge instance type | $0.24 |
c8ine.8xlarge | c8ine.8xlarge instance type | $0.24 |
r6a.48xlarge | r6a.48xlarge instance type | $0.24 |
r8in.large | r8in.large instance type | $0.08 |
Vendor refund policy
Refunds available on request.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Initial release of the Atlantis pull request automation server with the OpenTofu engine bundled.
Additional details
Usage instructions
Connect via SSH on port 22 as the default login user for your operating system variant (the user guide lists it per variant; on Ubuntu it is 'ubuntu'). The Atlantis web UI is served by nginx on port 80: browse to http://<instance-public-ip>/ and sign in as user 'admin'. Retrieve the generated web password with: sudo cat /root/atlantis-credentials.txt. Atlantis runs on loopback port 4141 and is reached only through the authenticated nginx proxy on port 80. To connect your repositories, edit /etc/atlantis/atlantis.env and set your VCS credentials (ATLANTIS_GH_USER, ATLANTIS_GH_TOKEN, ATLANTIS_GH_WEBHOOK_SECRET or the GitLab / Bitbucket / Azure DevOps equivalents), replace the deny-all ATLANTIS_REPO_ALLOWLIST with your own (for example github.com/your-org/*), then run: sudo systemctl restart atlantis. Add a webhook in your repository pointing at http://<instance-public-ip>/events (content type application/json, secret set to your webhook secret, events: pull requests, pushes, issue comments). The OpenTofu engine is bundled at /usr/local/bin/tofu and Atlantis is configured to drive it. The user guide covers first sign-in, connecting a Git provider, the plan round-trip self-test, and enabling HTTPS.
Resources
Vendor resources
Support
Vendor support
cloudimg provides 24/7 technical support for this product by email and live chat.
Response Times
Critical issues receive a one-hour average response. Our engineers are available around the clock to help resolve problems that block your infrastructure automation workflow.
What We Help With
- Deployment and initial configuration
- Connecting GitHub, GitLab, Bitbucket or Azure DevOps repositories and webhooks
- Repository allowlists and workflow customization
- OpenTofu and Terraform engine configuration
- TLS termination setup with AWS load balancers
- Backup strategies and data recovery
- Scaling and performance tuning
- Software updates and patch guidance
- Troubleshooting and issue resolution
- Refund requests
How to Reach Us
Email: support@cloudimg.co.uk Live chat: Available 24/7
We respond to all inquiries and work with you until your issue is resolved. If you need help at any stage - from first launch to ongoing maintenance - our team is here to assist.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
![NOAA 3-D Surge and Tide Operational Forecast System for the Atlanti[...]](https://d1ewbp317vsrbd.cloudfront.net/e927e5d9-2b9d-43c1-bb0d-8a51c1842140.png)