This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. Qdrant vector database on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, bound to loopback until you set an API key, and continuously patched images.
Qdrant (Hardened) on Amazon Linux 2023 is a production-ready, security-hardened image of the Qdrant vector database and similarity-search engine - the storage layer for AI embeddings, retrieval-augmented generation (RAG), and recommendation systems - maintained and supported by Derek Coleman & Associates Inc.
This is repackaged open-source software. Qdrant is developed by Qdrant and its open-source community and is distributed under the Apache License 2.0. Qdrant is a trademark of its owner; this listing is not endorsed by or affiliated with Qdrant. This product bundles the unmodified upstream Qdrant release binary on a hardened Amazon Linux 2023 base; the charges associated with this listing are for image hardening, continuous patching, vulnerability scanning, and business-day support - not for the underlying open-source software, which remains free.
Hardening baseline: minimal package footprint, SSH key-only access (password authentication disabled), IMDSv2 enforced, Qdrant running as a dedicated non-root user and bound to 127.0.0.1 (Qdrant ships with no authentication, so exposing the HTTP/gRPC ports is a deliberate customer step: set service.api_key in /etc/qdrant/config.yaml, widen service.host, and open ports 6333-6334 to trusted CIDRs). The health endpoint is verified at build time. Images are rebuilt, scanned for HIGH and CRITICAL vulnerabilities, and republished on a regular cadence so that new launches start current.
Highlights
Production-ready: systemd-managed Qdrant 1.18 with HTTP (6333) and gRPC (6334) APIs; storage under /var/lib/qdrant.
Security-hardened at build time: minimal packages, key-only SSH, IMDSv2-only, non-root service user, bound to loopback until you set an API key.
Continuously patched: rebuilt, vulnerability-scanned, and republished on a regular cadence.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay hourly for the software based on the EC2 instance size you launch. Three options are available: c7i.xlarge (4 vCPU / 8 GiB), c7i.2xlarge (8 vCPU / 16 GiB), and c7i.4xlarge (16 vCPU / 32 GiB). The software rate scales with vCPU count, so larger instances cost more per hour. AWS infrastructure charges are separate and billed by AWS. There is no subscription and no minimum. Charges stop when you terminate the instance.
Top-of-mind questions for buyers
What am I paying for, given the underlying Qdrant software is free open-source?
The hourly software charge covers image hardening, continuous patching, vulnerability scanning, and business-day support. The Qdrant binary itself is unmodified open-source under Apache License 2.0 and remains free. AWS infrastructure charges are separate and billed by AWS.
Am I charged the software rate when my instance is stopped or terminated?
The software rate meters running instance-hours only. Charges stop when you terminate the instance. There is no subscription and no minimum. A stopped instance may still incur AWS storage fees for the attached gp3 EBS volume, but that is billed separately by AWS.
How do I choose between the three instance sizes, and what resources does each use?
Each size maps to vCPU and memory: c7i.xlarge (4 vCPU / 8 GiB), c7i.2xlarge (8 vCPU / 16 GiB), and c7i.4xlarge (16 vCPU / 32 GiB). Larger instances handle more data and query load. Each launch uses one EC2 instance and one gp3 EBS volume. The vendor recommends c7i.2xlarge.
products.dcassociatesgroup.com
Helpful?
Vendor refund policy
Usage-based hourly billing; charges stop when instances are terminated. Contact support@dcassociatesgroup.com for billing questions.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
[Security] Refreshed image: rebuilt on the latest hardened Amazon Linux 2023 baseline; all OS packages current at build.
Additional details
Usage instructions
Launch from AWS Marketplace (1-Click or EC2 console).
Connect via SSH with your EC2 key pair: ssh -i <key> ec2-user@<public-ip>. Root login is disabled; use sudo.
To serve clients, set service.api_key and service.host: 0.0.0.0 in /etc/qdrant/config.yaml, then: sudo systemctl restart qdrant, and open TCP 6333 (HTTP) and 6334 (gRPC) to trusted CIDRs only.
Health monitoring: curl http://127.0.0.1:6333/healthz, or: sudo systemctl status qdrant. Storage lives under /var/lib/qdrant.
Sensitive data: there are no passwords or secrets anywhere in this product.
Backup: snapshot the EBS volume (it contains all configuration and data).
Resources: a single instance uses 1 EC2 instance and 1 gp3 EBS volume; no other AWS resources are created.
Support by Derek Coleman & Associates Incorporated. Email: support@dcassociatesgroup.com. Business-day response. Covers image operation, hardening baseline, and launch issues.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. Traefik reverse proxy on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, dashboard and API disabled, runs as a non-root user, and continuously patched images.
This product has charges associated with it for seller-performed integration of Qdrant with Amazon Linux 2023, preparation of vector-search, systemd, firewall, and monitoring configuration, application of a verified operating-system hardening baseline, and final AMI testing on a documented EC2 baseline.
This product has charges associated with it for providing seller premium support. The Amazon Linux 2023 instance is pre-configured and hardened to the Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) standard, delivering enhanced security over a baseline image. Benefit from a fully maintained hardened image with regular STIG updates, security patches, and hotfixes, along with limited premium OS support to assist with troubleshooting, optimization, and compliance guidance. This makes it an ideal choice for companies that require a secure, compliance-ready, production-quality OS backed by expert assistance.
This product has charges associated with the pre-built hardening to the CIS Benchmarks™ and recurring maintenance. The CIS Hardened Images® are hardened in accordance with the associated CIS Benchmarks, an industry best practice for secure configuration. Reduce cost, time, and risk by building your AWS solution with CIS AMIs.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.