This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. PostgreSQL 16 with the pgvector extension (vector similarity search for AI embeddings) on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, no password auth, and continuously patched images.
PostgreSQL 16 + pgvector (Hardened) on Amazon Linux 2023 is a production-ready, security-hardened image of the PostgreSQL relational database with the pgvector extension for vector similarity search - the storage layer for AI embeddings, retrieval-augmented generation (RAG), and semantic search - maintained and supported by Derek Coleman & Associates Inc.
This is repackaged open-source software. PostgreSQL is developed by the PostgreSQL Global Development Group and pgvector by its open-source community; both are distributed under the PostgreSQL License. This product bundles unmodified upstream PostgreSQL 16 with pgvector built from the upstream source tag on a hardened Amazon Linux 2023 base; the charges associated with this listing are for image hardening, continuous patching, vulnerability scanning, and business-day support - not for the underlying open-source software, which remains free.
Hardening baseline: minimal package footprint (the build toolchain is removed after compiling the extension), SSH key-only access (password authentication disabled), IMDSv2 enforced, and no default database passwords (local peer/socket auth; remote access on port 5432 stays closed until you configure pg_hba.conf and open it to trusted CIDRs). The extension load is verified at build time. Images are rebuilt, scanned for HIGH and CRITICAL vulnerabilities, and republished on a regular cadence so that new launches start current. The data directory initializes on first boot; enable the extension per database with: CREATE EXTENSION vector;
Highlights
AI-ready out of the box: pgvector 0.8 compiled against PostgreSQL 16 and verified at build - exact and approximate (HNSW, IVFFlat) vector search over embeddings.
Security-hardened at build time: minimal packages, key-only SSH, IMDSv2-only, no default database passwords, remote access closed until you configure it.
Continuously patched: rebuilt, vulnerability-scanned, and republished on a regular cadence.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour based on the EC2 instance size you launch. The three options map to compute capacity: c7i.xlarge (4 vCPU / 8 GiB), c7i.2xlarge (8 vCPU / 16 GiB), and c7i.4xlarge (16 vCPU / 32 GiB). Larger instances carry a higher hourly software rate. You choose the size that fits your workload; the software charge scales with vCPU count. There is no subscription and no minimum. Charges stop when you terminate the instance. AWS infrastructure charges are separate and billed by AWS.
Top-of-mind questions for buyers
What compute resources come with each instance size, and how do I choose?
Each option maps to a fixed EC2 spec: c7i.xlarge gives 4 vCPU / 8 GiB, c7i.2xlarge gives 8 vCPU / 16 GiB, and c7i.4xlarge gives 16 vCPU / 32 GiB. The vendor recommends c7i.2xlarge. Pick the size that matches your vector search and query load.
Am I charged when the instance is stopped or terminated?
Software charges accrue only while the instance runs. Charges stop when you terminate the instance. There is no subscription and no minimum. Stopped instances stop software metering, but the attached gp3 EBS volume that holds your configuration and data may still incur AWS storage fees, billed separately by AWS.
What does the hourly software charge cover, since PostgreSQL and pgvector are open source?
The charge covers image hardening, continuous patching, vulnerability scanning, and business-day support. It does not cover the underlying open-source software, which stays free. AWS infrastructure charges for the EC2 instance and EBS volume are separate and billed by AWS on your existing invoice.
products.dcassociatesgroup.com
Helpful?
Vendor refund policy
Usage-based hourly billing; charges stop when instances are terminated. Contact support@dcassociatesgroup.com for billing questions.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
[Security] Refreshed image: rebuilt on the latest hardened Amazon Linux 2023 baseline; all OS packages current at build.
Additional details
Usage instructions
Launch from AWS Marketplace (1-Click or EC2 console).
Connect via SSH with your EC2 key pair: ssh -i <key> ec2-user@<public-ip>. Root login is disabled; use sudo.
The data directory initializes on first boot; administer locally with: sudo -u postgres psql, and enable the extension per database: CREATE EXTENSION vector;
Remote access (port 5432) and authentication are a deliberate customer configuration step - edit /var/lib/pgsql/data/postgresql.conf (listen_addresses) and /var/lib/pgsql/data/pg_hba.conf (add a scram-sha-256 line for your subnet), restart postgresql, then open 5432 to trusted CIDRs only. Server log: /var/lib/pgsql/data/log/.
Verify: sudo -u postgres psql -c 'SELECT 1;'.
Sensitive data: there are no passwords or secrets anywhere in this product.
Backup: snapshot the EBS volume (it contains all configuration and data).
Resources: a single instance uses 1 EC2 instance and 1 gp3 EBS volume; no other AWS resources are created.
Support by Derek Coleman & Associates Incorporated. Email: support@dcassociatesgroup.com. Business-day response. Covers image operation, hardening baseline, and launch issues.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This is a repackaged software product wherein additional charges apply for a pre-hardened, SI Core STIG Hardened image and seller support. PostgreSQL on Amazon Linux 2023 offers a robust and secure database solution designed for scalability and performance within the AWS ecosystem. Leveraging the latest technology and security standards, PostgreSQL on Amazon Linux 2023 ensures high availability and easy management for your data workloads. Ideal for developers and enterprises, this AMI simplifies the deployment process, allowing you to focus on building applications while reducing operational overhead. With PostgreSQL on Amazon Linux 2023, you can efficiently handle complex queries and large datasets, all while benefiting from the agility and flexibility of the cloud.
This product has charges associated with it for seller-performed integration of PostgreSQL 16 with Amazon Linux 2023, application of a verified operating-system hardening baseline, preparation of PostgreSQL server and monitoring configuration, and final AMI testing on a documented EC2 baseline.
This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. PostgreSQL 16 on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, no password auth, data directory initialized on first boot, and continuously patched images.
This is a repackaged open source software product wherein additional charges apply for a pre-hardened, AWS-optimized image with verification reports and maintenance. This AMI delivers PostgreSQL 16 on a Amazon Linux 2023 base hardened following DISA STIG guidance and tuned for EC2 by Easycloud-with before/after security scan reports and SBOM.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.