
Overview
A production-shaped WordPress stack that is ready to serve over HTTPS minutes after launch. Per-instance secrets are generated on first boot, and Amazon CloudWatch and AWS Systems Manager agents come pre-configured so you can monitor your site and database from day one.
WordPress is the most popular free and open source content management system on the internet. This AMI packages the latest WordPress release with Apache, MariaDB, PHP, phpMyAdmin, and essential AWS integrations into a single, ready-to-deploy service on Amazon EC2.
What is Included
- WordPress (latest release) on Apache - mod_rewrite and mod_ssl enabled, dedicated HTTP and HTTPS virtual hosts, AllowOverride All for permalinks, and PHP with curl, gd, xml, mbstring, zip, intl, and imagick extensions
- MariaDB - Local database server for WordPress data storage
- phpMyAdmin - Web-based database management using your WordPress DB credentials
- Postfix - Outbound mail server for WordPress notifications and transactional email
- SFTP access - Secure file management with write access to the document root
- Amazon Linux 2 - Base operating system
Security and Per-Instance Credential Generation
No secrets are baked into the image. A first-boot service handles all credential generation:
- Creates the database and DB user with a random password
- Writes wp-config.php with fresh WordPress salts
- Issues a per-instance self-signed TLS certificate (swap in your own or run certbot)
- Grants the cloud admin user SFTP write access to the site
- Records all credentials in /opt/wordpress/default-wordpress-credentials.txt
Security hardening measures include:
- Key-based SSH only - no password authentication
- Root login disabled
- HTTPS enabled by default with a unique per-instance TLS certificate
- No AWS credentials stored on the image
AWS Integration
Amazon CloudWatch Agent - Pre-configured to ship Apache access and error logs, SSL access and error logs, MariaDB error log, syslog, and auth.log to CloudWatch Logs (under /solvedevops/wordpress/* with 30-day retention). Publishes CPU, memory, disk, TCP, and process metrics under the SolveDevOps/WordPress namespace.
AWS Systems Manager - SSM Agent installed and enabled for Session Manager, Run Command, and Patch Manager.
Attach an IAM instance role with CloudWatchAgentServerPolicy and AmazonSSMManagedInstanceCore to enable these integrations.
Quick Start
- Launch your new instance on Amazon EC2. Open TCP ports 80 and 443 (and 22 for SFTP) in your security group. The instance takes approximately 3 minutes to bootstrap on first boot.
- Connect to the instance using https://your-instance-ip and complete the WordPress setup wizard.
- Access credentials for phpMyAdmin and MariaDB at /opt/wordpress/default-wordpress-credentials.txt.
- Review the Message of the Day (MOTD) for URLs, credential file location, certificate replacement steps, and CloudWatch details.
Key file locations:
- Site files: /var/www/wordpress
- Apache vhost: /etc/apache2/sites-available/wordpress.conf
- TLS cert: /etc/ssl/certs/wordpress-selfsigned.crt
- TLS key: /etc/ssl/private/wordpress-selfsigned.key
- CloudWatch config: /opt/aws/amazon-cloudwatch-agent/etc/amazon-cloudwatch-agent.d/wordpress.json
Full root access is provided.
Use Cases
Whether you are launching a personal blog, a business website, or a content-heavy publishing platform, this AMI provides a complete WordPress environment with built-in observability and security defaults. The pre-configured CloudWatch and Systems Manager integrations make it suitable for teams that need production-level monitoring from the start.
Highlights
- Secure by default. On first boot, the AMI generates a unique database password, fresh WordPress salts, and a per-instance self-signed TLS certificate. HTTPS is enabled immediately with dedicated HTTP and HTTPS virtual hosts. SSH is key-based only with root login disabled. Swap in your own certificate or run certbot at any time.
- Built-in observability from day one. Amazon CloudWatch Agent is pre-configured to ship Apache access and error logs, MariaDB error logs, syslog, and auth logs to CloudWatch Logs with 30-day retention. CPU, memory, disk, TCP, and process metrics publish under a dedicated namespace. AWS Systems Manager Agent enables Session Manager, Run Command, and Patch Manager without opening SSH to the internet.
- Complete WordPress stack with operational tooling included. WordPress on Apache with mod_rewrite and mod_ssl, PHP with curl, gd, xml, mbstring, zip, intl, and imagick extensions, MariaDB, phpMyAdmin, Postfix for outbound mail, and SFTP access to the document root. A message-of-the-day quick-start guide shows URLs, credential locations, certificate replacement steps, and CloudWatch details on first login.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
- ...
Dimension | Cost/hour |
|---|---|
t3.large Recommended | $0.014 |
t2.micro | $0.014 |
t3.micro | $0.014 |
c4.4xlarge | $0.014 |
g5.8xlarge | $0.014 |
t3a.small | $0.014 |
d2.8xlarge | $0.014 |
c5.4xlarge | $0.014 |
t3a.micro | $0.014 |
c4.2xlarge | $0.014 |
Vendor refund policy
Cancel Anytime
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Introducing WordPress 7 and latest Security Patches for Ubuntu 26.04, WordPress, PHP, PHPAdmin, MariaDB and Apache
Additional details
Usage instructions
Quick Start:
- Launch your new instance on Amazon EC2. Be sure to select the right instance size that will support your projects. (Instance will take 3mins to Bootstrap the first time)
- Using your browser, connect to the instance using http://ip.ad.dre.ss and you will be greeted with the WordPress setup page.
- Access details for PHPMyAdmin, MariaDB are stored on your instance in /opt/wordpress/default-wordpress-credentials.txt
- Further notes on how to add SSL, Upgrade instructions can be accessed here - https://solvedevops.com/docs/wordpress-phpmyadmin-mariadb-on-aws
Resources
Vendor resources
Support
Vendor support
Support
Vendor support is available via email at support@solvedevops.com . For documentation including SSL setup and upgrade instructions, visit the getting started guide linked in the additional resources section below. Full root access is provided so you can customize the instance as needed.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.