Enterprise VPN server with a full web-based management dashboard. Issue and revoke user access, monitor live connections, and export audit logs - all from your browser, with automatic HTTPS. No SSH required for day-to-day management.
Secure VPN Server Enterprise - Management Dashboard Edition
A complete, self-hosted VPN solution with a built-in web-based management dashboard. Run secure remote access for your team without living in the command line after initial setup.
How It Works
Deploy the instance and it configures itself automatically: a unique admin password and independent encryption keys are generated on first boot. Point a domain you own at your instance, and a trusted HTTPS certificate is issued and renewed automatically - no manual certificate handling required.
Key Capabilities
One-Click User Provisioning - Issue new VPN profiles from the dashboard, delivered as single-use, time-limited download links rather than raw file transfers
Instant Access Revocation - Remove a departing employee's access in seconds directly from the dashboard with no SSH required
Live Connection Monitoring - See exactly who is connected, from where, and since when, at a glance
Exportable Audit Logs - Every login and access change is recorded and ready for compliance reviews
Automatic HTTPS - Trusted certificates are issued and renewed automatically once your domain is configured
Unique Per-Instance Security - Each deployment generates its own admin password and encryption keys on first boot
Enterprise-Grade Encryption
The underlying VPN layer uses a hardened, production-ready OpenVPN foundation with modern AES-256/TLS 1.3 encryption, automatic intrusion protection, and automatic security updates.
Getting Started
Launch the instance and allow a minute or two for first-boot initialization
Connect over SSH to retrieve your admin credentials (shown automatically at login)
Point a domain you control at your instance's public IP with an A record
Run sudo configure-dashboard-domain your-domain.com
Open your dashboard in any browser at your configured domain and sign in
Click "Issue Certificate" to create your first user's VPN profile
Send the download link to your user - they install the free OpenVPN Connect app, import the profile, and connect
Note: A domain or subdomain you control is required for automatic HTTPS due to a Let's Encrypt policy restriction on AWS-assigned instance hostnames. Full setup instructions are available in the on-instance admin guide at /usr/share/doc/secure-vpn-server/ADMIN-GUIDE.md.
Who This Is For
Teams that need self-hosted VPN infrastructure with centralized user management, compliance-ready audit trails, and browser-based administration - without the complexity of managing certificates and configurations via command line.
Looking for a Simpler Option?
For a single-user VPN without the management dashboard, search AWS Marketplace for the Madarson IT base edition.
Responsible Use: For authorized deployment only; comply with applicable data-protection and network security laws in your jurisdiction.
Disclaimer: OpenVPN is a registered trademark of OpenVPN Inc. Ubuntu is a trademark of Canonical Ltd. Let's Encrypt is a trademark of the Internet Security Research Group. This offering is provided by Madarson IT and is not affiliated with, endorsed by, or sponsored by OpenVPN Inc., Canonical Ltd., or the Internet Security Research Group.
Highlights
Web-Based Self-Service Management - Issue and revoke VPN access, monitor live connections, and export audit logs entirely from your browser. Day-to-day administration requires no SSH access, making it easy for IT teams to manage remote workforce connectivity without command-line expertise. User profiles are delivered as single-use, time-limited download links for added security.
Automatic HTTPS and Unique Per-Instance Security - Every deployment generates its own independent admin password and encryption keys on first boot, ensuring no two instances share credentials. Once you point your domain at the instance, a trusted HTTPS certificate is automatically issued and renewed. The underlying VPN uses hardened AES-256 and TLS 1.3 encryption with automatic intrusion protection and security updates.
Instant Revocation and Compliance-Ready Audit Trail - Terminate a departing user's VPN access in seconds with a single click from the dashboard. A complete, exportable log of every login and access change is maintained automatically, giving you the documentation needed for compliance reviews and security audits without additional tooling.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the software running on your chosen EC2 instance type. The dimensions here are not tiers or feature levels. Each one maps to a specific AWS instance size, so the software cost changes with the compute you select. Options span general-purpose (t2, t3, t3a, m-series), compute-optimized (c-series), memory-optimized (r-series), storage-optimized (i-series, d3), and GPU instances (g-series, p-series). Sizes range from nano up to 4xlarge. Larger or more specialized instances carry a higher hourly rate. You are billed only while an instance runs.
Top-of-mind questions for buyers
Am I charged for the software while my EC2 instance is stopped or powered off?
Software charges meter running time only. A fully stopped or powered-off instance does not accrue hourly software fees. You may still pay underlying AWS storage costs for the attached volumes while the instance is stopped, but those are separate from the software licence charge.
What does the hourly rate actually cover on each instance type?
Each hourly rate covers the security-hardened VPN server software running on that one instance. It is not a per-user or per-connection fee. You pick the instance size that fits your workload, and the software cost scales with the compute class you select.
If I switch to a different instance type, does my software rate change automatically?
Yes. Your software cost is tied to the specific instance type you run. Launching a larger, GPU, or memory-optimized instance applies that instance's hourly rate. Moving to a smaller instance applies the smaller rate. The change takes effect when the new instance starts running.
madarsonit.com
Helpful?
Vendor refund policy
There is no refund policy for this image.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
For Connection type, choose Connect using EC2 Instance Connect.
Access the EC2 instance with the default username: ubuntu
After launch, allow a minute or two for first-boot initialization (the appliance generates a unique admin password, its own encryption keys, and detects its public IP automatically). Retrieve your admin password by connecting over SSH and running:
Point a domain you own at your instance's IP, then run:
sudo configure-dashboard-domain your-domain.com
This enables your browser-based management dashboard. Full instructions are available in the on-instance admin guide at /usr/share/doc/secure-vpn-server/ADMIN-GUIDE.md.
Support
Vendor support
Support
For dashboard setup assistance, domain configuration help, or custom enterprise configurations, contact Madarson IT at info@madarsonit.com.
On-Instance Documentation
A comprehensive admin guide is included with every deployment at /usr/share/doc/secure-vpn-server/ADMIN-GUIDE.md. This guide covers initial setup, domain configuration, user management, and troubleshooting.
Refund Policy
There is no refund policy for this image.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for security hardening and GUI/RDP access.
AWS-based virtual desktop with the latest Ubuntu 24.04 LTS image pre-configured with GUI/RDP access and hardened and optimized for security and compliance.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest Ubuntu 24.04 LTS image, hardened and optimized for security and to help address DISA STIG compliance needs.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest Red Hat Enterprise Linux 9 image, hardened and optimized for security and to help address PCI DSS compliance needs.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest ALMA Linux 9 image, hardened and optimized for security and compliance.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest AMAZON Linux 2023 image, hardened and optimized for security and compliance.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.