This product has charges associated with it for security hardening. Madarson IT's security-hardened Ubuntu 24.04 LTS AMI with pre-configured NGINX for fast, secure web server and reverse proxy deployments on AWS.
Hardened Ubuntu 24.04 LTS with Pre-configured NGINX by Madarson IT
This is a repackaged open source software product. Additional charges apply for security hardening applied to the base Ubuntu 24.04 LTS image.
Deploy a production-ready, security-hardened web server in minutes. This AMI combines Ubuntu 24.04 LTS with an optimized NGINX installation, enabling developers and operations teams to launch secure web servers and reverse proxies without manual configuration.
About Madarson IT
Madarson IT specializes in publishing hardened, production-ready cloud images across AWS, GCP, and Azure Marketplaces. Our portfolio includes multiple security-optimized images - Ubuntu 24.04 NGINX, Ubuntu 24.04 L2 hardened, and LEMP stack configurations - demonstrating deep expertise in server hardening and cloud deployment optimization. Our images are built with a focus on mapping to industry security standards and reducing default attack surfaces.
Key Features
Ubuntu 24.04 LTS Foundation: The latest long-term support release from Canonical, providing stability, regular security updates, and support through 2029.
Pre-installed NGINX: Serve content or reverse-proxy traffic immediately after launch with no additional installation required.
Performance-Optimized Configuration: NGINX settings tuned with HTTP/2 support and modern TLS configurations for fast, secure content delivery.
Security-Hardened Image: SSH hardening applied, firewall rules pre-configured with ufw, unnecessary services disabled, and default attack surface minimized following security best practices.
AWS Integration Points
This AMI works seamlessly with your existing AWS infrastructure:
Elastic Load Balancing: Place this AMI behind an ALB or NLB for high-availability deployments and automatic traffic distribution across multiple instances.
Amazon CloudWatch: Monitor NGINX performance metrics, system health, and security events using CloudWatch agent integration.
AWS Certificate Manager: Simplify TLS certificate provisioning and renewal when deploying behind an Application Load Balancer.
Amazon S3: Serve static assets from S3 origin buckets using NGINX as a caching reverse proxy for improved performance.
Use Cases
E-commerce Front-End Proxy: Deploy as a hardened reverse proxy fronting your application servers, providing TLS termination and request filtering for online storefronts handling sensitive customer data.
SaaS API Gateway: Use as a secure entry point for multi-tenant API traffic, leveraging NGINX rate limiting and access controls with hardened OS-level security underneath.
Compliance-Sensitive Web Hosting: Host web applications in environments where security hardening is required by organizational policy, with pre-applied firewall rules and SSH restrictions reducing audit preparation time.
Rapid Development Environments: Spin up secure, pre-configured web servers for development and staging without spending time on manual NGINX installation and OS hardening.
Why Choose Madarson IT's Hardened Image?
Deploy in Minutes: Skip hours of manual NGINX installation, TLS configuration, and OS hardening. Launch a production-ready server immediately.
Reduced Attack Surface: Pre-configured ufw firewall rules, SSH hardening, disabled unnecessary services, and modern TLS settings minimize exposure compared to a default Ubuntu installation.
Long-Term Reliability: Built on Ubuntu 24.04 LTS with Canonical's commitment to security patches and updates through 2029.
Multi-Cloud Expertise: Madarson IT maintains hardened images across AWS, GCP, and Azure Marketplaces, ensuring consistent security practices refined across multiple cloud platforms.
Requirements
AWS account with EC2 launch permissions
SSH key pair for instance access
Security group allowing inbound traffic on ports 22 (SSH), 80 (HTTP), and 443 (HTTPS)
Recommended instance types: t3.micro and above for testing; t3.medium or larger for production workloads
Highlights
Security-Hardened by Default: This image applies SSH hardening, pre-configured ufw firewall rules, disabled unnecessary services, and modern TLS configurations to minimize the default Ubuntu attack surface. Built by Madarson IT, which maintains multiple hardened images across AWS, GCP, and Azure Marketplaces with a focus on mapping to industry security standards.
Production-Ready NGINX with HTTP/2 and Modern TLS: Launch a fully configured NGINX web server or reverse proxy immediately after instance boot. Configuration is optimized for secure content delivery with HTTP/2 enabled, eliminating hours of manual setup, package installation, and performance tuning.
Seamless AWS Integration: Designed to work with Elastic Load Balancing for high-availability deployments, Amazon CloudWatch for monitoring, and AWS Certificate Manager for simplified TLS management. Built on Ubuntu 24.04 LTS with Canonical security updates through 2029.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for this hardened Ubuntu 24.04 image with NGINX, billed per running instance. Each dimension maps to an AWS EC2 instance type, so pricing scales with the compute size you choose. Options span general-purpose (t2, t3, m3, m5, m6a), compute-optimized (c3, c4, c5, c5a), memory-optimized (r3, r5, r5a, x1), storage-optimized (i3, d3), GPU (g3, g5, p2, p3), and HPC (hpc6a) families. Larger instances cost more per hour. You add standard AWS infrastructure charges on top of the software rate. No long-term commitment applies.
Top-of-mind questions for buyers
What does one hour of billing cover for this hardened Ubuntu image?
One hour covers the software licence for one running EC2 instance of the size you pick. The meter counts wall-clock time while the instance runs. Each active instance bills separately. You pay the software rate for that instance type plus standard AWS compute, storage, and network charges.
Am I charged the software rate when an instance is stopped or paused?
The software rate meters running time only, so a stopped instance stops accruing the hourly software charge. Underlying AWS storage for the attached volumes may still cost you while the instance is stopped. Restarting the instance resumes the hourly software charge.
What does the hardened Ubuntu 24.04 image include beyond the base operating system?
You get Ubuntu 24.04 LTS with NGINX pre-installed and security-hardened configurations. The image aligns with recognized security and compliance frameworks and receives regular security patches. It is validated to run on AWS and deploys ready to use.
madarsonit.com
Helpful?
Vendor refund policy
There is no refund policy for this image.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Hardened Ubuntu 24.04 LTS with Pre-configured NGINX
Additional details
Usage instructions
Allow inbound SSH access in your security group (TCP port 22)
To connect to your instance using the Amazon EC2 console:
Open the Amazon EC2 console at https://console.aws.amazon.com/ec2/.
In the navigation pane, choose Instances.
Select the instance and choose Connect.
Choose the EC2 Instance Connect tab.
For Connection type, choose Connect using EC2 Instance Connect.
Access the ec2 with the default username: "ubuntu"
For technical assistance, configuration questions, or issues with this hardened Ubuntu 24.04 LTS NGINX image, please contact our support team at info@madarsonit.com. Visit madarsonit.com for additional documentation and resources.
Support Scope
Assistance with image-related configuration questions
Guidance on NGINX and security hardening settings included in the image
Help with deployment issues specific to this AMI
Discussion of private offers, audits, or compliance solutions
How to Get Help
Email info@madarsonit.com with your instance ID and a description of the issue
Include relevant log output or error messages
Our team will respond to acknowledge your request
For private offers, bulk licensing, or custom compliance configurations, reach out to the same email address with your requirements.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for Docker optimization, RDP GUI configuration, and Cockpit web management setup. Pre-configured Ubuntu 24.04 LTS AMI with Docker, Cockpit web management, and RDP desktop access - deploy containerized apps in minutes without manual setup.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Ubuntu 24.04 LTS virtual desktop AMI with pre-configured GUI/RDP access, mapped to NIST CSF, PCI DSS, and HIPAA frameworks for production compliance.
This product has charges associated with it for Level 2 advanced security hardening. Madarson IT pre-hardened RHEL 9 AMI with Level 2 advanced controls applied, built for teams needing compliance-ready infrastructure on AWS without manual hardening effort.
This product has charges associated with it for RDP/GUI optimization. Madarson IT pre-configured RHEL 9 cloud virtual desktop AMI with RDP/GUI optimization - launch and connect to a graphical Linux desktop in minutes.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Ubuntu 22.04 LTS virtual desktop with GUI and RDP access, aligned to NIST CSF, PCI DSS, and HIPAA frameworks for secure cloud workstations.
This product has charges associated with it for DISA STIG security hardening. Madarson IT pre-hardened Ubuntu 24.04 LTS AMI with DISA STIG benchmarks applied. Deploy a compliance-ready EC2 instance for DoD and federal security requirements.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.