Overview
This container image is built on Red Hat Enterprise Linux 8 - Universal Base Image 8 (UBI8) and hardened in accordance with the DISA Security Technical Implementation Guide (STIG) for Red Hat Enterprise Linux 8. It is intended for use as a secure, compliant base layer for containerized workloads in DoD, federal, and regulated enterprise environments. The image is rebuilt and republished weekly to incorporate the latest OS patches and CVE remediations, ensuring a continuously maintained security posture. Hardening is validated using OpenSCAP against the RHEL 9 STIG profile. A small number of STIG controls are not applicable in a containerized environment, for example, controls governing bootloader configuration, GRUB settings, and physical console access. All such findings are documented with justifications in an accompanying compliance report, available upon request. This image supports compliance efforts under frameworks including RMF, FedRAMP, and CMMC. For questions, finding justifications, or support, please contact us through the listing support page.
Highlights
- DISA STIG hardened Red Hat Enterprise Linux UBI8 image, validated with OpenSCAP and rebuilt weekly with the latest patches and CVE remediations.
- All container-inherent STIG finding exceptions are documented with justifications in an accompanying compliance report.
- Designed to support RMF, FedRAMP, and CMMC compliance efforts in DoD, federal, and regulated enterprise environments.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
- Monthly subscription
- $50.00/month
Vendor refund policy
All sales are final. Due to the digital nature of this product, refunds are not available once the image has been accessed or pulled. If the image does not perform as described or you believe you have encountered a product defect, please contact us at support@mandm.studio within 30 days of purchase and we will work to resolve the issue. Refund requests will be reviewed on a case-by-case basis at our discretion.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
v20260528
- Amazon EKS
- Amazon ECS
- Amazon ECS Anywhere
- Amazon EKS Anywhere
Container image
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Version release notes
Weekly rebuild with latest OS patches and CVE remediations.
Compliance report: https://mandm.studio/compliance/ubi8-stig-fips/20260528/report.html SBOM: https://mandm.studio/compliance/ubi8-stig-fips/20260528/sbom.cdx.json
Additional details
Usage instructions
Use as a hardened base image in your Dockerfile.
Resources
Vendor resources
Support
Vendor support
All sales are final. Due to the digital nature of this product, refunds are not available once the image has been accessed or pulled. If the image does not perform as described or you believe you have encountered a product defect, please contact us at support@mandm.studio within 30 days of purchase and we will work to resolve the issue. Refund requests will be reviewed on a case-by-case basis at our discretion.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.