This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Ubuntu 24.04 LTS virtual desktop AMI with pre-configured GUI/RDP access, mapped to NIST CSF, PCI DSS, and HIPAA frameworks for production compliance.
This is a repackaged open source software product wherein additional charges apply for security hardening, compliance alignment, and ongoing maintenance of this image.
Deploy a security-hardened Ubuntu 24.04 LTS virtual desktop on AWS with pre-configured GUI and RDP access. Built for organizations in healthcare, financial services, and government that require compliant workstations without sacrificing usability.
Overview
This AMI delivers a production-ready Ubuntu 24.04 LTS desktop environment with comprehensive security hardening applied. The image combines graphical desktop access via RDP with enterprise-grade security controls - enabling compliance auditors, developers, and IT administrators to work in a hardened environment without manual configuration.
Specific Hardening Controls Applied
Unused network services and daemons disabled to minimize attack surface
Firewall rules pre-configured to restrict inbound traffic to essential ports (RDP 3389)
AppArmor security profiles enforced for critical system processes
Kernel parameters tuned for security (ASLR enabled, core dumps restricted)
Password policies enforced with complexity requirements and account lockout
Audit logging enabled for security-relevant system events
Automatic security updates configured for critical patches
Compliance Framework Mapping
This hardened image maps to controls within established standards and regulatory frameworks:
NIST Cybersecurity Framework (CSF) - Access control, system integrity, and audit logging controls
ISO 27000 series - Information security management controls for access and configuration
PCI DSS - System hardening requirements for cardholder data environments
HIPAA - Technical safeguards for systems handling protected health information
Note: This image establishes a strong security baseline. Organizations may need to apply additional configurations based on their specific security requirements and risk profile.
AWS Integration
This AMI integrates with key AWS services for operational management:
Amazon CloudWatch - Monitor system performance, RDP session metrics, and security events
AWS Systems Manager - Manage patching, run commands, and maintain inventory across instances
AWS Directory Service - Integrate with Active Directory for centralized user authentication
Amazon VPC - Deploy within isolated network segments with security group controls for RDP access
Use Case: Healthcare Compliant Developer Desktops
A healthcare organization can provision HIPAA-compliant developer workstations by launching this AMI within a private VPC subnet. Developers connect via RDP to access a hardened desktop environment for building applications that handle protected health information - without the overhead of manually hardening each workstation.
Deployment Requirements
Supported Instance Types: General purpose (t3.medium or larger recommended), compute optimized (c5), and memory optimized (r5) families
Network: Security group must allow inbound TCP port 3389 for RDP access
RDP Client: Compatible with standard RDP clients (Microsoft Remote Desktop, Remmina, FreeRDP)
Key Pair: Required for initial instance access
Quick Start
Launch the AMI from AWS Marketplace selecting your preferred instance type
Configure your security group to allow inbound RDP (TCP 3389) from your IP range
Retrieve instance credentials using your EC2 key pair
Connect via your RDP client to the instance public or private IP
Begin working in a hardened Ubuntu 24.04 LTS desktop environment
Why Madarson IT
Madarson IT certified images are always up to date, secure, follow industry standards, and are built to work right out of the box. Our hardened images reduce the time and expertise required to establish a compliant security baseline on AWS.
Disclaimer: Ubuntu is a trademark of Canonical Ltd. This offering is provided by Madarson IT and is not affiliated with, endorsed by, or sponsored by Canonical Ltd.
Highlights
Security hardening maps to NIST Cybersecurity Framework (CSF), ISO 27000, PCI DSS, and HIPAA controls. Specific measures include disabling unused services and daemons, blocking SSH root login, enforcing AppArmor profiles, tuning kernel security parameters, configuring firewall rules to restrict inbound traffic, enabling audit logging, and applying password complexity policies.
Pre-configured GUI desktop with RDP access on a hardened Ubuntu 24.04 LTS base - combining usability with security. Compliance auditors, developers, and IT administrators can connect via standard RDP clients to a production-ready desktop without manually hardening the OS. Ideal for provisioning compliant workstations for contractors or teams handling sensitive data who need graphical access without sacrificing security posture.
Integrates with AWS services including Amazon CloudWatch for monitoring, AWS Systems Manager for patch management, and AWS Directory Service for centralized authentication. Deploy within Amazon VPC with security group controls. Supports general purpose (t3.medium+), compute optimized (c5), and memory optimized (r5) instance families. Automatic security updates configured for critical patches.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour for this hardened Ubuntu 24.04 desktop image, billed only while an instance runs. Pricing is not tiered by feature; every option delivers the same security-hardened desktop with GUI and RDP access. Instead, you choose from many AWS EC2 instance types, grouped by compute family — general purpose (t2, t3, m-series), compute-optimized (c-series), memory-optimized (r-series), storage (d-series, i3), and GPU (p-series). Larger instance sizes carry higher hourly rates because they provide more CPU, memory, or GPU capacity. Your total cost depends on the instance you select and hours used.
Top-of-mind questions for buyers
Am I charged when an instance is stopped or paused?
You pay the hourly software rate only while an instance is running. Fully stopped instances do not accrue software charges. Note that stopped instances may still incur underlying AWS storage fees for attached volumes, which are separate from this listing's per-hour software charge.
What do I actually get for the hourly rate on each instance type?
Each hour buys the same security-hardened Ubuntu 24.04 desktop with graphical interface and RDP access. The instance type you pick sets the underlying CPU, memory, and GPU capacity. The desktop image and hardening are identical across every option; only the compute resources differ.
Does moving to a larger instance change my bill automatically?
There is no automatic tier upgrade. You choose the instance type when you launch. Cost changes only when you deliberately launch or switch to a different instance type. Larger sizes carry higher hourly rates because they provide more CPU, memory, or GPU capacity.
madarsonit.com
Helpful?
Vendor refund policy
There is no refund policy for this image.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Hardened Ubuntu 24.04 LTS Desktop image with RDP/GUI Access
Additional details
Usage instructions
Allow inbound SSH access in your security group
Allow inbound TCP port 3389 (RDP)
Access the ec2 with the username: "ubuntu"
Create a password for ubuntu user for RDP login using the CLI command: "sudo passwd ubuntu"
Launch RDP program and enter the ubuntu credentials
For technical support, compliance inquiries, or private offers, contact Madarson IT at info@madarsonit.com.
Support scope includes:
Assistance with RDP connectivity and desktop access issues
Guidance on security hardening configuration
Compliance and audit-related inquiries
Private offer and licensing discussions
When contacting support, please include your instance ID, AWS region, instance type, security group configuration, and a description of the issue.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for RDP and Docker optimization. Pre-configured Ubuntu 24.04 LTS desktop AMI with Docker and xrdp ready to use, built for teams deploying containerized apps via remote GUI access.
This product has charges associated with it for Docker optimization, RDP GUI configuration, and Cockpit web management setup. Pre-configured Ubuntu 24.04 LTS AMI with Docker, Cockpit web management, and RDP desktop access - deploy containerized apps in minutes without manual setup.
This product has charges associated with it for Podman, Buildah, Skopeo, RDP, and Cockpit optimization. Madarson IT pre-configured Ubuntu 24.04 LTS AMI with Podman, Buildah, Skopeo, RDP, and Cockpit for secure, rootless container management and deployment.
This product has charges associated with it for RDP/GUI optimization. Madarson IT pre-configured RHEL 9 cloud virtual desktop AMI with RDP/GUI optimization - launch and connect to a graphical Linux desktop in minutes.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Ubuntu 22.04 LTS virtual desktop with GUI and RDP access, aligned to NIST CSF, PCI DSS, and HIPAA frameworks for secure cloud workstations.
This product has charges associated with it for DISA STIG security hardening. Madarson IT pre-hardened Ubuntu 24.04 LTS AMI with DISA STIG benchmarks applied. Deploy a compliance-ready EC2 instance for DoD and federal security requirements.
This product has charges associated with it for Level 1 foundational security hardening. Madarson IT pre-hardened RHEL 9 AMI delivers a deploy-ready security baseline mapped to NIST CSF, PCI DSS, HIPAA, and ISO 27000 - reducing manual hardening effort for compliance-driven teams.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.