69 AWS listings · 8 Linux families · x86_64 + ARM64Open the live index ↗
69 current AWS listings

Secure Linux.
Ready to launch.

Maintained Linux images with security configuration already applied, indexed by distribution, release, architecture, product line, and framework focus.

H

Hardened virtual machines

Security-configured Linux images for AWS workloads.

image.profileHARDENED IMAGES / AWS

$ hardened-image inspect ubuntu-24.04

Reading published configuration...

operating_system
Ubuntu 24.04
architecture
x86_64 + ARM64
security_profile
multi-framework
marketplace
AWS

IMAGE READY FOR EVALUATION

Docker-ready images

Docker Engine paired with security-configured Linux.

Available buildsDOCKER READY
Ubuntu24.04x86_64 · ARM64
Rocky Linux10x86_64 · ARM64
Debian13x86_64 · ARM64
Amazon Linux2023x86_64 · ARM64
USED BY

Used across government, finance, industry, and healthcare.

Organizations using Hardened Images include the teams below. Reseller-served relationships are identified in the list.

Choose the Linux family your workload already trusts.

PROGRAM COVERAGE

Map the image layer to the rules around it.

Hardened Images supports teams using defense, governance, and cybersecurity programs across the United States, Europe, and Australia.

The published image configuration can contribute to program requirements. Product-specific scope, evidence, exceptions, and certification decisions remain part of your organization’s validation process.

THE HARDENED IMAGES DIFFERENCE

Treat the image as a versioned security artifact.

Every Hardened Images listing names the Linux release, architecture, product line, and marketplace destination so teams can evaluate a specific artifact.

Review the hardening model
01

Configuration already applied

Start from a security-configured Linux image instead of repeating the same operating-system work for every workload.

02

Catalog details you can compare

Filter by operating system, release, architecture, and product line before continuing to the exact AWS listing.

03

Scope you can defend

Hardened Images owns the published image; your team owns the application, cloud architecture, operations, evidence, and final decisions.

How teams use the catalog.

Filter the list, subscribe to the exact build, then test it in context.

  1. 01

    Filter

    Match the Linux family, major release, product line, and architecture to your workload.

  2. 02

    Subscribe

    Confirm current AWS terms, regions, and listing details before deployment.

  3. 03

    Stress-test

    Exercise application behavior, access, agents, networking, and observability outside production.

  4. 04

    Promote

    Move the tested image through your own release, monitoring, patching, and evidence process.

IMAGE BOUNDARY

What Hardened Images ships, and what it does not.

Inside the Hardened Images artifact

  • A preconfigured Linux image
  • Named product variants published through AWS
  • Seller support for image-specific questions
  • x86_64 and ARM64 options where listed

Outside the Hardened Images artifact

  • Architecture, identity, and network design
  • Application compatibility and security
  • Monitoring, evidence, and operating procedures
  • Compliance and authorization decisions
BUYER PREFLIGHT

Check these before you subscribe.

What does Hardened Images provide?+

Hardened Images provides maintained Linux virtual machines with security controls already applied, plus Docker-ready variants for selected operating systems. Products are distributed through AWS Marketplace.

Are the images compliant or certified?+

Hardened Images supports teams implementing the framework programs listed on this site, but a hardened image does not make an entire system compliant, certified, accredited, or authorized. Confirm product-specific alignment and retain responsibility for the surrounding architecture, applications, evidence, and operating procedures.

Can hardening change application behavior?+

Yes. Secure defaults can restrict services, protocols, permissions, authentication methods, or network behavior that an application expects. Validate every image and dependency in a non-production environment before promotion.

Which architectures are available?+

The current catalog includes x86_64 and ARM64 builds. Availability differs by operating-system version and product line, so use the catalog filters to find an exact match.

Pick an exact Linux build, not a generic promise.

Search the current AWS catalog by product line, operating system, version, and architecture.