Overview
Kryden Solutions provides STIG-aligned cloud images that give you a head start on OS security hardening. This RHEL 8 AMI applies 170+ DISA STIG rules with selective exceptions for AWS cloud workload compatibility. Includes SELinux enforcing, IMDSv2 enforced, SSH key-based authentication only, root login disabled, comprehensive audit rules, and kernel hardening (ASLR, kexec disabled, symlink/hardlink protection). Container-friendly - user namespaces and IP forwarding are enabled to support Docker, Podman, and Kubernetes. STIG controls map directly to NIST SP 800-53, providing a baseline toward FedRAMP, FISMA, NIST 800-171, CMMC, and other compliance frameworks. Weekly rebuilds from the latest RHEL base images ensure up-to-date security patches. Requires AWS Nitro-based instances (T3, M5, C5, R5, M6i, C6i, R6i families). A Red Hat subscription is required separately. Note: FIPS mode is not enabled as it requires subscription-only packages.
Highlights
- DISA STIG-aligned with SELinux enforcing, IMDSv2, and 170+ hardening rules
- OpenSCAP validated - weekly rebuilds from latest RHEL base images
- Cloud and container optimized - supports Docker, Podman, and Kubernetes
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Cost/hour |
|---|---|
t3.medium Recommended | $0.05 |
t3.micro | $0.05 |
m5.large | $0.05 |
t3.xlarge | $0.05 |
r6i.large | $0.05 |
m5.4xlarge | $0.05 |
m6i.xlarge | $0.05 |
r5.large | $0.05 |
c5.large | $0.05 |
c6i.4xlarge | $0.05 |
Vendor refund policy
Software charges are billed hourly with no upfront commitment. You may cancel your subscription at any time. No refunds are provided for partial hours of usage. For support, contact info@krydensolutions.com .
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Initial release - DISA STIG-aligned RHEL 8 AMI with SELinux enforcing, IMDSv2 required, and OpenSCAP validation.
Additional details
Usage instructions
Connect via SSH: ssh -i your-key.pem ec2-user@<instance-ip>. This AMI is DISA STIG-aligned with SELinux enforcing and IMDSv2 required. Root login is disabled. Requires Nitro-based instances (T3, M5, C5, R5, M6i, C6i, R6i). A Red Hat subscription is required (BYOL). Documentation: support.krydensolutions.com
Support
Vendor support
Support is available via email at info@krydensolutions.com with best-effort response within 1-2 business days. Documentation, troubleshooting guides, and release notes are available at support.krydensolutions.com. Note: Red Hat subscription issues should be directed to Red Hat directly.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.