Source
Begin with the named upstream Linux distribution and major release.
ContactSearch catalogHARDENING MODEL
Hardened Images applies operating-system security configuration before delivery, identifies the resulting artifact, and gives technical teams a concrete image to test in their own environment.
Begin with the named upstream Linux distribution and major release.
Apply the security-focused operating-system changes associated with the product profile.
Publish the product line, operating system, release, architecture, and direct marketplace destination.
Give customer teams a concrete artifact to test with their application, automation, and operating model.
Hardened Images supports teams using the following defense, governance, and cybersecurity programs. Standard Defense coverage includes Levels 1, 2, and 3; Foundation coverage includes Levels 1 and 2.
Program support is not a claim that every image or complete customer system is certified. Confirm product-specific alignment, control scope, version, evidence, exceptions, and compensating controls before use.
Hardened Images profile
Hardened Images profile
Supported reference
Supported reference
Supported reference
Supported reference
Supported reference
Supported reference
Supported reference
Hardening is valuable precisely because it changes insecure or permissive defaults.
Password policy, account behavior, privilege boundaries, and authentication settings.
Unused services, legacy protocols, listening behavior, and network-facing defaults.
Permissions, audit configuration, kernel parameters, session behavior, and logging.
Security updates and package configuration appropriate to the published image.
Hardened Images publishes one important layer. The surrounding system remains yours to design and operate.
Secure defaults can reveal assumptions in an application stack. Run representative workloads, inspect every integration, and document accepted exceptions before production.
Search the current catalog by operating system, product line, and architecture.