This product has charges associated with it for hardening, update maintenance, and seller support. Hardened Rocky Linux 9 (ARM) is rigorously secured following STIG guidelines, recognized through a consensus-driven process as the industry benchmark for secure configuration, optimizing both security and efficiency.
This is a repackaged open source software wherein additional charges apply for extended support with a 24 hour response time. In order to receive support, please email support@hardenedimages.com.
This image comes meticulously preconfigured by Hardened Images, adhering to the Security Technical Implementation Guides (STIG), which set the gold standard for secure configuration. These guidelines are vendor-neutral, developed through a collaborative, consensus-based approach, and recognized by government, business, industry, and academia alike. Importantly, STIG standards also serve as a robust foundation for compliance with a wide range of cybersecurity frameworks. Tailored for system and application administrators, security experts, auditors, help desk staff, and platform deployment professionals, this image is optimized for those looking to develop, deploy, evaluate, or secure applications leveraging this Linux system. It significantly enhances operational efficiency, while also mitigating time, cost, and risk associated with deploying your organization's AWS solutions.
As a trusted consulting ally for small to medium-sized businesses, Hardened Images empowers you to establish and maintain a secure presence in the cloud. We are your dedicated experts in cloud virtual machines, enabling you to commence your projects with the assurance of top-tier security.
Highlights
Superior Protection: Hardened images are specifically engineered to enhance security, incorporating pre-set safeguards and minimizing attack surfaces by default, offering a secure starting point for any deployment.
Ready-to-Deploy Compliance: These images are built to conform to high-security standards and regulations right from the start, facilitating easier compliance with industry-specific security requirements without additional customization.
Cost and Time Savings: Adopting hardened images streamlines the setup process by reducing the need for extensive security configurations and ongoing maintenance, allowing teams to launch secure environments quickly and efficiently, saving both time and operational costs.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You pay by the hour for each running instance of this hardened Rocky Linux 9 ARM image. Pricing scales with the EC2 instance type you select. Each dimension maps to a specific ARM-based instance size, from small general-purpose types up to bare-metal configurations. Instance families cover general-purpose (m-series), compute-optimized (c-series), memory-optimized (r-series and x-series), and storage- or network-focused variants. Larger sizes carry higher hourly rates because they provide more vCPUs, memory, or attached resources. You choose the instance that fits your workload, and hourly charges accrue only while instances run.
Top-of-mind questions for buyers
What does one hourly unit cover for this hardened image?
One unit is one running EC2 instance of the hardened Rocky Linux 9 ARM image for one hour. Each instance you launch bills separately. The rate matches the ARM instance type you pick. Bare-metal dimensions cover a full physical server; other sizes map to virtual instances with set vCPU and memory.
Am I charged when an instance is stopped or powered off?
Hourly software charges apply only while an instance runs. Stopped or powered-off instances stop accruing software charges. Underlying AWS resources, such as attached storage, may still incur separate AWS fees. The meter tracks running time for the image itself.
Why do different instance types carry different hourly rates?
Each dimension maps to one ARM-based instance type. Rates rise with the vCPUs, memory, and attached storage or network capacity the type provides. General-purpose, compute-optimized, memory-optimized, and storage-focused families each meter independently. You select the type that fits your workload, and only that type's rate applies.
hardenedimages.com
Helpful?
Vendor refund policy
At the moment, we're unable to offer refunds, but you're free to terminate your instance at any time to avoid further charges. We're here to help if you have any questions about managing your service!
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Updated version of hardened AMI with critical patches installed
Additional details
Usage instructions
##Connecting to the VM: ##
To connect to your instance, you will need to use SSH over port 22. The default username for connecting is rocky. For further information about the standard AWS method of connecting to an instance, see information described here: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/AccessingInstances.html
Regarding Security Configurations
Utilizing hardened images necessitates a nuanced approach due to their advanced security configurations and access controls, which may require additional adjustments for compatibility with specific workflows or applications. These images, designed with enhanced security measures to minimize vulnerabilities, offer superior protection compared to baseline images without pre-configured security settings. However, integrating them seamlessly into your operations might involve collaboration with security experts or the providers for customization, ensuring both robust security and operational functionality. This extra step, while requiring more initial setup, positions hardened images as a more secure and compliant foundation for deployments, ultimately offering a significant advantage over baseline images by saving time and resources in achieving a secure, compliant, and efficient infrastructure.
Additional Details
No additional external resources are required for the product to function
There are no security keys or credentials in place that need to be rotated
There is no customer data that is collected in order for this software to function
Included with every Hardened Images virtual machine is a dedicated, passionate world-class support team. Have a question? Just reach out! We love to help. Email support is available directly at support@hardenedimages.com.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for hardening and maintenance. This Citadel VM is secured using 300+ open source security controls and validated using Citadel Audit.
Docker on Hardened Rocky Linux 9 (ARM) is rigorously secured following STIG guidelines, recognized through a consensus-driven process as the industry benchmark for secure configuration, optimizing both security and efficiency. Please note, this product has charges associated with it for seller support.
This product has charges associated with it for hardening and maintenance. This Citadel VM is secured using 300+ open source security controls and validated using Citadel Audit.
This product has charges associated with it for providing hardening and seller premium support. Engineered for mission-critical, regulated environments, this STIG-compliant Rocky Linux 9 image delivers a fully hardened security baseline trusted across government, defense, healthcare, and financial sectors.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.