WAF SafeLine Package Pro is a production-ready AMI that contains the core Linux components, in a secure image. Packaged by SistemasTEC, this solution enables infrastructure and DevOps teams to gain real-time visibility into server health, application performance, and security threats from a unified platform.
WAF SafeLine Package Pro is a production-ready AMI that lets you quickly get started with a SafeLine WAF service that offers good performance, allowing you to configure web applications and redirect traffic to unconventional ports within your infrastructure.
It includes SSL auto-configuration with Let's Encrypt certificates and the latest versions of Docker.
This open-source solution is packaged by SistemasTec. Learn how to install, configure, and manage it at https://sistemastec.mx/#soporte. For implementation issues, contact our support team at https://sistemastec.mx/#contacto.
d
Trademarks: This software is packaged by SistemasTec. The trademarks mentioned in this offer are the property of their respective companies, and their use does not imply any affiliation with or endorsement by them.
Key Capabilities:
SafeLine WAF provides an additional security layer for your web-facing applications, helping protect against common web threats. Combined with Zabbix monitoring, you gain visibility into both infrastructure health and security events.
Why use SistemasTec certified applications?
SistemasTec certified images are always up-to-date, secure, and ready to use.
Use Case Example:
An operations team managing web servers across multiple availability zones can deploy this AMI to centralize all hosts while simultaneously protecting public-facing applications with WAF SafeLine. The pre-configured instance begins collecting metrics immediately after agent deployment, while the WAF component inspects incoming HTTP traffic for malicious patterns.
Included Components:
WAF SafeLine (web application firewall)
Secure Linux base operating system
Let's Encrypt SSL certificate support
Pre-configured production settings
Getting Started:
Launch the AMI on your chosen EC2 instance
Configure WAF SafeLine rules for your web applications
Highlights
WAF SafeLine Package Pro Optimized default security configurations for allowed instances, Pre-configured for production environments with security-hardened defaults.
upports Let's Encrypt SSL certificates for encrypted communications. Built on a secure Linux base with optimized default security configurations. SistemasTEC certified images are always up-to-date and security-hardened, providing a ready-to-deploy foundation for production monitoring and web application protection workloads on AWS.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the EC2 instance type that runs this self-hosted web application firewall. Each dimension maps to a specific instance size across several families: burstable options (t2, t3, t3a), general-purpose options (m5, m5a, m5d, m5dn, m5n, m5ad, m5zn), and compute-focused options (c8i, c8i-flex). Larger instances carry more vCPU and memory, so the hourly rate scales with the size you pick. Metal variants provide bare-metal capacity. Charges accrue only while an instance runs, so your cost tracks actual usage.
Top-of-mind questions for buyers
What do I actually get with each hourly instance charge?
You get one running EC2 instance of the size you pick, preloaded with the self-hosted web application firewall. It runs as a reverse proxy on your own infrastructure. The firewall filters HTTP and HTTPS traffic to block malicious requests before they reach your backend applications.
Am I charged when the instance is stopped or paused?
Hourly charges accrue only while an instance runs. A stopped or paused instance stops the software charge. Stopped instances may still incur underlying AWS storage fees for attached volumes, but the software meters running time only.
How do I choose between the burstable, general-purpose, and compute instance families?
Burstable families (t2, t3, t3a) suit light or variable traffic. General-purpose families (m5 and variants) balance vCPU and memory for steady workloads. Compute-focused families (c8i, c8i-flex) favor traffic-heavy filtering. The hourly rate rises with instance size, so match capacity to your expected traffic volume.
sistemastec.mx
Helpful?
Vendor refund policy
No apply
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Default version
Additional details
Usage instructions
Once your instance is running, enter the public DNS provided by Amazon into your browser. You will see the SafeLine application. You can also configure your own DNS name or this url: https://[ip]:9443/. Refer to our documentation at https://sistemastec.mx/blog/comunidad-3/sistemastec-package-for-waf-1 to obtain your password. You can change the username and password in the application settings. You can also access your instance via SSH using the username 'ec2-user' and your Amazon private key. For additional setup instructions and FAQs, visit https://sistemastec.mx/blog/comunidad-3/
Support
Vendor support
SistemasTEC provides support for WAF SafeLine Package Pro through the following channels:
Documentation and Self-Service
Access setup guides, configuration documentation, and troubleshooting resources at https://sistemastec.mx/#soporte
Contact Support
For implementation issues, configuration assistance, or technical questions, reach the SistemasTEC support team at https://sistemastec.mx/#contacto
Scope of Support
Support covers installation and deployment assistance, initial configuration guidance, troubleshooting of image-specific issues, and general usage questions related to the packaged components.
For refund requests or billing issues related to your AWS Marketplace subscription, please contact the SistemasTEC support team through the contact page above.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
All in one solution to reduce risk from code to runtime. Wiz Go includes 300 Cloud Advanced workloads, 150 Defend Ingestion Units (GBs), 100 Runtime Sensors, and 50 Code Active Developers per month.
Aabasoft CloudPro Suite is a managed support services for AWS compute, storage , networking, serverless, deployment with security and compliance. The services includes migration, account monitoring, cost optimization, DevOps, WAR recommendations with AWS best practices.
safeZONE delivers a fully managed, multi-account AWS environment built on AWS Organizations and OpenTofu. safeINIT handles architecture, security guardrails, cost optimization, and governance — so your team focuses on building, not managing infrastructure.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.