Fully-preconfigured VPN server on Debian with OpenVPN protocol support for Internet access, with a web panel to manage users. This server uses two public IP addresses (Elastic IPs) when deployed via a CloudFormation template, allowing for IP address rotation. The first IP is used for both the web interface and as the VPN Endpoint, which is the address specified in client configurations to connect to the VPN server. The second IP is used for the Outbound connection - this is the address under which client traffic appears on the internet. This allows you to change or rotate the outbound IP at any time by replacing the second Elastic IP, without updating the client configuration or restarting the server.
This OpenVPN-based server is intended to provide the secure internet access for computers, mobile devices and routers. It is easy-to-use. After launching, this server is immediately fully operational. No server setup required. User authentication is performed using certificates embedded in the client OVPN configuration file, combined with a username and password. This server uses user authentication and traffic accounting via a RADIUS server, which relies on a MySQL database. High server efficiency allows using it even on low-performance machines, that may reduce the costs. You can choose a simple instance type like t3.micro, t3.small, t3.medium etc. This server provides a stable VPN connection at the highest possible speed.
Areas of use:
This server can be used to provide the secure internet access for computers, mobile devices and routers.
This server can be used to provide internet access in countries where the authorities restrict the Internet.
Suitable for use by individuals as well as for companies offering VPN services.
The key features of this server:
Easy-to-use. After launching, the server is immediately fully operational. No server setup required.
2 separate public IP addresses for the Endpoint and the Outbound connection when using the CloudFormation template deployment.
Ports: 443 TCP, 1194 UDP.
Authentication with certificates (config .ovpn file) + username/password.
A convenient and intuitive user management web panel.
Very high speed of the VPN channels. Optimal server configuration provides the highest possible data transfer rate.
Disclaimer: OpenVPN is a completely separate project from ADEO Imaging OU.
Highlights
VPN server on Linux with OpenVPN protocol support for Internet access with Web Interface. Easy-to-use. After launching, the server is immediately fully operational. No server setup required.
This OpenVPN-based server uses 2 separate public IP addresses for the Endpoint and the Outbound connection when deployed via a CloudFormation template. This allows you to change or rotate the outbound IP address simply by replacing the second Elastic IP, without needing to update the client configuration and without restarting the server.
Very high speed of the VPN channels. Optimal server configuration provides the highest possible data transfer rate via OpenVPN protocol.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 5 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
OpenVPN-based VPN Server on Linux/Debian with IP rotation
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the EC2 instance type you choose to run this VPN server. The dimensions are not feature tiers; they are different AWS instance sizes across the t2, t3, t3a, m5, m5a, and m5n families. Smaller sizes like nano and micro suit light workloads, while xlarge and larger sizes handle heavier traffic. Software function stays the same across all sizes. Your cost scales with the compute capacity you select, so you match the instance to your speed and user demands. Billing runs per hour of usage.
Top-of-mind questions for buyers
What does one billed hour cover, and am I charged when the instance is stopped?
You pay per hour the chosen EC2 instance runs the VPN server software. A stopped instance does not accrue software charges. Underlying AWS storage fees may still apply for a stopped instance. The software meter counts running hours only, based on the instance size you select.
How do I pick the right instance size, and what happens if I need more capacity?
Choose a size based on your user count and speed needs. The software runs the same on all sizes. Smaller sizes like nano or micro suit light use. To add capacity, you switch to a larger instance; your hourly rate then follows the new size.
Is this pay-as-you-go, or do I commit upfront to a term?
Billing is usage-based and hourly. You pay only for the hours your selected instance runs, with no upfront term commitment. This suits variable or occasional VPN workloads, since costs stop accruing for software when the instance is not running.
www.adeoclouds.eu
Helpful?
Vendor refund policy
You may terminate the instance at anytime to stop incurring charges.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
It is now possible to deploy using a CloudFormation template, which sets up a configuration with two IP addresses. The first IP is used for both the web interface and as the VPN Endpoint, which is the address specified in client configurations to connect to the VPN server. The second IP is used for the Outbound connection - this is the address under which client traffic appears on the internet. This allows you to change or rotate the outbound IP at any time by replacing the second Elastic IP, without updating the client configuration or restarting the server.
User management web panel has been modified.
Additional details
Usage instructions
After deploying this server using the Standalone AMI, you will get a fully functional OpenVPN server with a single IP address used for both the Endpoint and Outbound traffic.
If you want to run the OpenVPN server with separate IP addresses for the Endpoint and the Outbound connection - where the Endpoint IP is used by clients to connect to the VPN, and the Outbound IP is the address under which client traffic appears on the internet - you can deploy this server using a CloudFormation template. This configuration allows you, for example, to change or rotate the outbound IP address later simply by replacing the second Elastic IP, without needing to update the client configuration and without restarting the server.
Instructions for deploying the OpenVPN Server from the Standalone AMI:
Launch the server. This server does not require the powerful computing resources - you can choose a simple instance type. If the Elastic IP was assigned to a running instance, the instance must be restarted.
Linux username: admin
After launching the server, it is immediately ready for use, with no additional settings required.
OpenVPN ports:
443 - for TCP connection
1194 - for UDP connection
User management Web Panel:
http://[Public IP address]/
https://[Public IP address]:8443/ (recommended)
Please use "admin" as username and your instance ID as password.
When accessing the Web Panel using HTTPS, your web browser may display a message about potential risks due to the use of an IP address in the URL. In this case, you should proceed and accept the risks, as our main objective is to encrypt traffic, and using an IP address in a web browser is safe for our purposes
User authentication: OVPN file, containing user certificate + username/password. Server certificates are automatically generated and installed on the server when the instance is launched for the first time. Client certificates are generated in the web panel when a user is created and are embedded into the client configuration OVPN file. A ZIP archive containing two OVPN files (for TCP and UDP connections) can be downloaded for each client from the web panel directly or via a QR code.
OpenVPN-CLIENT SETUP
Before creating a VPN connection, you will need to install the OpenVPN client application on the client side. OpenVPN client applications are available on the web for Windows, Linux, Android, iOS and macOS. To create a VPN connection, simply import the OVPN configuration file into the client application.
ADDITIONAL INFO
This server uses user authentication and traffic accounting via a RADIUS server, which relies on a MySQL database. Although the main information is available through the web panel, phpMyAdmin (database management) is also installed on this server for convenience:
https://[Public IP address]:8443/phpmyadmin/
Default username for phpMyAdmin: "administrator", initial password is your instance ID.
By default, access to phpMyAdmin is denied in .htaccess file: /usr/share/phpmyadmin/.htaccess
If you have any questions regarding the deployment or use of this server, you can use the Contact Us form on our website or reach out via email. We guarantee a response within 24 hours.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
OpenVPN protocol support for secure internet access on Linux/Debian operating system
Dual IP Address Configuration
Two separate public Elastic IP addresses enabling independent management of VPN endpoint and outbound traffic with dynamic IP rotation capability
User Authentication Mechanism
Certificate-based authentication using embedded OVPN configuration files combined with username and password credentials, with RADIUS server integration and MySQL database backend for traffic accounting
Management Interface
Web-based user management panel for VPN server administration and user configuration
Network Port Configuration
Support for TCP port 443 and UDP port 1194 for VPN connectivity
End-to-End Encryption
Provides end-to-end encryption for secure remote access, site-to-site VPN connectivity, and SaaS access with encrypted tunneling of private traffic.
Supports multiple authentication methods including built-in local authentication, Active Directory, PAM, LDAP, RADIUS, SAML, and custom Python3 authentication modules.
Zero-Trust Network Access
Implements identity-based zero-trust network access (ZTNA) approach with granular access control to limit risk of data exposure.
Certificate PKI Management
Includes certificate-based public key infrastructure management for simplified installation and configuration with DNS round robin load balancing across Access Server clusters.
Multi-Protocol VPN Support
Supports six VPN protocols simultaneously on a single instance: SSL VPN, OpenVPN, IPsec, L2TP, MS SSTP, and L2TPv3, enabling connectivity from Windows, macOS, Linux, iOS, and Android devices using built-in OS VPN clients.
Firewall Traversal Capabilities
Transports VPN traffic over TCP port 443 (HTTPS), ICMP, and DNS protocols to bypass restrictive firewalls, proxies, and NATs that block traditional VPN protocols.
Encryption and Authentication
Implements AES 256-bit and RSA 4096-bit encryption with support for RADIUS, LDAP, Active Directory, and RSA certificate-based authentication, including source IP address control lists and deep-inspect packet logging.
Network Connectivity Options
Provides Ethernet bridging (Layer 2) and IP routing (Layer 3) over VPN with embedded dynamic DNS, NAT traversal, virtual DHCP server, SecureNAT, and cascade connections for multi-site networks.
Performance and Throughput
Delivers 1 Gbps-class throughput with optimized VPN engine architecture designed for low CPU and memory overhead on equivalent instance types.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.