This is a repackaged open source software product wherein additional charges apply for seller hardening and maintenance. Oracle Linux 9 AMI ready to run on EC2 with SELinux enforcing, hardened SSH, fail2ban, CloudWatch Agent, AIDE, chrony, SSM Agent and AWS CLI v2.
This is a repackaged open source software product wherein additional charges apply for seller hardening, preconfiguration, and maintenance.
Oracle Secure Enterprise Linux 9 is built for teams that want a clean Oracle Linux start on EC2, without spending the first hours on basic security and AWS tooling. The seller applied a practical security and operations baseline so instances start ready for production-style use.
What is included:
SELinux configured in enforcing mode to strengthen mandatory access control
Hardened SSH baseline with key-based authentication only, root login disabled, and restricted session settings
fail2ban pre-configured to protect SSH against brute-force authentication attempts
Amazon CloudWatch Agent pre-installed and pre-configured for system metrics and log collection
AIDE pre-initialized to help detect unexpected changes on critical system files
chrony configured for reliable time synchronization
AWS Systems Manager (SSM) Agent pre-installed for centralized instance management
AWS CLI v2 pre-installed for everyday AWS command-line operations
Cloud-optimized sysctl tuning for typical EC2 network and memory behavior
Built-in os-status utility for a quick view of services, resources, and security posture
Use this AMI as a solid starting point for application servers, admin hosts, and general Oracle Linux 9 workloads on Amazon EC2.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for this hardened Oracle Linux 9 image, billed per running EC2 instance. There is one software rate per instance type, and it applies on top of standard AWS infrastructure charges. Pricing scales with the instance you choose. Smaller shared instances like t2.micro or m1.small carry lower hourly rates. Larger compute, memory, storage, GPU, and bare-metal instances such as x8i.metal-96xl or p5.48xlarge carry higher rates. You are charged only for the hours each instance runs, with no upfront commitment or fixed term.
Top-of-mind questions for buyers
What does one hourly software rate cover for a given instance type?
Each rate covers the hardened Oracle Linux 9 image running on one EC2 instance of that type, charged per hour. A virtual machine runs its own operating system separately from other machines on the same host. Each running instance is billed individually on top of AWS infrastructure charges.
Am I charged the software rate when an instance is stopped or paused?
The hourly software rate applies only while an instance runs. Stopped or paused instances do not accrue software charges. You may still pay standard AWS storage fees for attached volumes, but the software meter counts running hours only. There is no upfront commitment or fixed term.
What drives my total cost when I run several different instance types?
Each running instance bills at its own hourly software rate, tied to its instance type. The rates add together across all active instances. Larger compute, memory, storage, GPU, or bare-metal instances carry higher rates than smaller shared instances. Your total scales with both the number of instances and their sizes.
www.tiovit.com
Helpful?
Vendor refund policy
The instance can be terminated at anytime to stop incurring charges. No refund available.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Oracle Secure Enterprise Linux 9 Hardened Baseline 1.0 - latest
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Initial hardened release for Oracle Linux 9.
This version includes seller-applied technical additions:
SELinux configured in enforcing mode
SSH hardening with key-based authentication only and root login disabled
fail2ban pre-configured for SSH protection
Amazon CloudWatch Agent pre-installed and pre-configured
AIDE file integrity monitoring initialized
chrony, AWS Systems Manager Agent, and AWS CLI v2 included
cloud-optimized sysctl tuning
os-status utility for quick service and security checks
Additional details
Usage instructions
Once the instance is running, connect to it using a Secure Shell (SSH) client with the configured SSH key. The default username is 'cloud-user'
Info regarding virtual machines
The operating system does not save any sensitive information for the customers. The customer is responsible for saving any information, sensitive or not.
The data saved on the volumes is not encrypted by default.
All instance authentication must use key pair access, not password-based authentication.
AMIs does not contain passwords, authentication keys, key pairs, security keys, or other credentials.
PasswordAuthentication is set to NO in sshd_config.
The application does not make use of any encryption techniques.
Troubleshooting
Navigate to your Amazon EC2 console and verify that you're in the correct region.
Choose Instance and select your launched instance.
Select the server to display your metadata page and choose the Status checks tab at the bottom of the page to review if your status checks passed or failed.
Or
Select monitor an troubleshoot and select get system log to see the system log or select get instance screenshot to see state of your screen at the current time
For support and maintenance issues related to all AMIs bundled please contact us by email. support@tiovit.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Specialized kernel (UEK) included and enabled by default, designed for maximum performance and stability in enterprise applications
Security-Enhanced Linux Implementation
SELinux support with advanced encryption capabilities, audit tools, and security patches for compliance with industry standards
Kernel Live Patching Support
Unbreakable Enterprise Kernel supports live patching to apply security updates without requiring system reboot
Minimal Base Installation
Clean and minimal installation with only essential packages required for AWS EC2 deployment, allowing full control over package selection and system configuration
AWS EC2 Optimization
Optimized for consistent performance and operational stability across AWS EC2 instance types with rapid provisioning capabilities
Unbreakable Enterprise Kernel
High-performance Unbreakable Enterprise Kernel (UEK) for optimized speed, stability, and security across enterprise workloads.
Automatic Patching and Updates
Automatically updated at launch with latest security patches to ensure the most current and secure version is running.
RHEL Compatibility
Full Red Hat Enterprise Linux (RHEL) compatibility with enterprise-grade enhancements for seamless workload migration.
Security Features
Built-in SELinux support and zero-downtime patching options for secure platform operations.
Automatic Storage Extension
Root partition and filesystem automatically extends during boot if instance volume is larger than the default 8 GiB allocation.
Large-Scale Workload Support
Supports large-scale, data- and compute-intensive workloads
Binary Compatibility
100% application binary compatible with RHEL and CentOS
High Availability and Scalability
Delivers high availability and scalability for enterprise applications and databases
Security Updates
Continuous security updates available in new versions
Cloud-Native and Virtualization Tools
Includes automation, virtualization, management, cloud native tools, and Kubernetes capabilities
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.