This product has charges associated with it for hardening, security configuration, and support.
Jaeger is the CNCF-graduated distributed tracing platform, shipped here as a single self-contained Go binary that runs the collector, query service and web UI together (all-in-one). Unlike bare Jaeger AMIs that expose the query UI with no authentication, bind every port to all interfaces, and lose traces on restart with in-memory storage, this Lynxroute build is ready out of the box: an nginx TLS perimeter with HTTP basic auth generated at first boot, the query UI bound to loopback, persistent local Badger storage, OTLP ingest on dedicated ports, UFW firewall pre-configured, and a CIS Level 1 hardened Ubuntu 24.04 LTS base.
Apache-2.0 license - fully auditable, no vendor lock-in.
This is a repackaged software product wherein additional charges apply for hardening, security configuration, and support.
WHAT IS JAEGER
Jaeger is a CNCF-graduated, open-source distributed tracing platform used to monitor and troubleshoot transactions across microservices. This image runs Jaeger v2 as a single self-contained Go binary in all-in-one mode: an OpenTelemetry-native collector, a query service, and a React web UI in one process. Applications send spans over OTLP (gRPC on 4317, HTTP on 4318); operators search traces, inspect service dependency graphs, view Gantt-style timelines, and perform root-cause and latency analysis in the UI. Traces are persisted locally with an embedded Badger key-value store, so they survive restarts and reboots with a configurable retention window. Any OpenTelemetry SDK or Collector can export to it, and the same image scales out to Cassandra or Elasticsearch backends when volume grows. Apache-2.0 license, no vendor lock-in.
WHAT THIS AMI ADDS
Security hardening:
HTTP basic-auth credentials generated at first boot - no anonymous access to the UI
nginx TLS perimeter on 443, self-signed at build, one command to a CA-signed certificate
Query UI, query gRPC, health and metrics endpoints bound to 127.0.0.1 only
Persistent Badger storage (not the default ephemeral in-memory store)
UFW firewall - SSH 22, HTTPS 443, OTLP 4317/4318 only
fail2ban, AppArmor
CVE scan - every image is scanned for vulnerabilities before release
OS hardening (CIS Level 1):
CIS Ubuntu 24.04 LTS Level 1 benchmark applied via ansible-lockdown
CIS Conformance Report at /etc/lynxroute/cis-report.html
CIS Tailored Profile at /usr/share/doc/lynxroute/CIS_TAILORED_PROFILE.md
Highlights
Jaeger security baked in: HTTP basic-auth password generated at first boot, nginx TLS perimeter on 443, query UI and admin endpoints bound to loopback only - unlike bare Jaeger AMIs that serve the query UI with no authentication and bind every port to all interfaces.
CIS Level 1 hardened Ubuntu 24.04 LTS: auditd, fail2ban, AppArmor, SSH key-only, IMDSv2 enforced. CVE-scanned before every release. SBOM (CycloneDX) and CIS Conformance Report included.
OpenTelemetry-native tracing: OTLP gRPC and HTTP ingest, trace search, service dependency graphs and latency analysis, with persistent local Badger storage that survives reboots. Apache-2.0 license - fully auditable, no vendor lock-in.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 5 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
You pay by the hour based on the EC2 instance size you choose to run this hardened Jaeger image. Five instance options are available: t3.small, t3.medium, and t3.large use burstable capacity for lighter or variable workloads, while m6i.large and m6i.xlarge offer steady general-purpose compute for heavier tracing loads. Pricing scales with the compute size you select, so larger instances cost more per hour. All options ship the same software image; the choice reflects the CPU and memory you need, not different feature sets. Billing runs through AWS on top of your normal EC2 charges.
Top-of-mind questions for buyers
What resources does each instance option give me, and how is one billing hour counted?
Each option maps to an EC2 instance size with set CPU and memory. The t3 sizes use burstable capacity for variable loads; m6i sizes provide steady compute. Billing counts each hour the instance runs. Partial hours follow standard AWS EC2 metering rules for the instance you launch.
Am I charged the software fee when my instance is stopped or paused?
The hourly software fee meters running time only. A fully stopped instance stops accruing software charges. You may still pay underlying AWS storage fees for the attached volume while stopped. Charges resume when you start the instance again.
Do the larger instance options include extra software features, or just more compute?
All five options ship the same hardened image. The software includes CIS Level 1 hardening, CVE scanning, a bundled SBOM, and a CIS Conformance Report. Choosing a larger instance gives you more CPU and memory, not added features. Pick the size that matches your tracing load.
lynxroute.com
Helpful?
Vendor refund policy
We do not offer refunds for this product. AWS infrastructure charges (EC2, EBS, data transfer) are billed separately by AWS and are not refundable by us.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Open Security Group - allow TCP 443 from your IP (Jaeger UI). Allow TCP 4317 (OTLP gRPC) and TCP 4318 (OTLP HTTP) only from the subnets or security groups of the services that send traces; keep both OTLP ports closed to the public internet.
Open https://<PUBLIC_IP>/ in your browser - accept the self-signed certificate warning
Authenticate with HTTP Basic Auth: user "admin", password from the credentials file
Point your application's OpenTelemetry exporter at this instance: OTLP gRPC at <PUBLIC_IP>:4317 or OTLP HTTP at http://<PUBLIC_IP>:4318. Traces appear in the UI Search view within seconds.
The admin password for the web UI is generated at first boot and saved to /root/jaeger-credentials.txt.
Traces are persisted locally with Badger at /var/lib/jaeger/badger and survive reboots (default retention 7 days). This single-node image targets development, testing and small-team environments; for high-volume production configure Cassandra or Elasticsearch in /etc/jaeger/config.yaml.
Replace the self-signed TLS certificate with a CA-signed certificate for production use: sudo certbot --nginx -d YOUR_DOMAIN
Lynxroute is not affiliated with the Cloud Native Computing Foundation or The Linux Foundation - this AMI packages the Apache-2.0 open-source Jaeger distribution as a self-hosted EC2 service. "Jaeger" is a trademark of The Linux Foundation.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Unlock insights into the market for Jaeger-LeCoultre watches with pricing and trading patterns in the secondary markets via auctions and online sales. It contains 25+ years of historical and real-time sales records across vendors in the primary markets within North America, Europe and Asia. This institutional-grade dataset delivers the precision and depth required for sophisticated investment analysis, market research, and strategic decision-making.
mplement comprehensive observability for your Amazon EKS platform using AWS EKS Blueprints with Terraform to deploy Prometheus, Grafana, and OpenTelemetry/Jaeger, gaining complete visibility into system performance and reducing MTTR by 70%.
Enhance your software development efficiency by leveraging our service to set up an Internal Developer Platform (IDP) built on AWS EKS. We utilize robust, battle-tested tools such as ArgoCD, GitLab, ECR, Grafana, Jaeger, Loki, and Prometheus to establish a strong foundation tailored to your development needs. Additionally, we empower your team with the knowledge and skills needed to independently enhance and customize the platform as your requirements evolve.
Implement Istio service mesh on Amazon EKS to improve microservices communication, enhance observability, and strengthen security, resulting in 5x faster deployments, 99.9% service availability, and 2x improved scalability.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.