Minimal Ubuntu 24.04 LTS images with a CIS Level 2 / NIST 800-53 / DISA STIG-aligned partition layout, SSH hardening, and the latest security patches — built fresh every month.
Start from a hardened baseline. Apply your STIG profiles, Ansible playbooks, or custom tooling on top without fighting pre-baked config.
Every StigReady AMI ships ready for compliance scanning from day one.
Separate mounts for /home, /tmp, /var, /var/log, /var/log/audit, /var/tmp with hardened mount options.
Password auth disabled, root login prohibited, empty passwords blocked. SSH host keys regenerate on first boot. No pre-installed authorized keys.
Built from the official Ubuntu 24.04 ISO with all available security patches applied. New AMI versions published every month.
IMDSv2 enforced on first boot. SSM Agent pre-installed. cloud-init handles EC2 key pair injection. EBS-backed, HVM, x86_64.
Built to satisfy the controls that auditors actually check.
StigReady AMIs are a hardened base layer — not a fully audited system. Apply your STIG profiles, auditd rules, and application hardening on top.
GPT disk · LVM volume group vg_root · 64 GB total
| Mount | Size | Filesystem | Options |
|---|---|---|---|
| /boot/efi | 550 MB | vfat | — |
| /boot | 1 GB | ext4 | — |
| / | 20 GB | xfs | — |
| /home | 10 GB | xfs | nodev,nosuid |
| /tmp | 5 GB | xfs | nodev,nosuid,noexec |
| /var | 5 GB | xfs | nodev,nosuid |
| /var/tmp | 5 GB | xfs | nodev,nosuid,noexec |
| /var/log | 5 GB | xfs | nodev,nosuid,noexec |
| /var/log/audit | 5 GB | xfs | nodev,nosuid,noexec |
| swap | 2 GB | swap | — |
Subscribe to StigReady on AWS Marketplace. Launch directly from the console — no additional setup required.
EC2 injects your key pair on first boot via cloud-init. Connect as ec2-user over SSH with key-based auth.
Apply your STIG profiles, auditd rules, and application config on top of a clean, compliant base.
x86_64 · EBS-backed · HVM · Monthly updates
Pay only the software fee on top of your normal EC2 costs.
$0.04/hr
Software fee · EC2 instance costs billed separately by AWS
Annual contracts and Private Offers available. Contact us for volume pricing.