This is a repackaged open source software product wherein additional charges apply for seller hardening and maintenance. CentOS Stream 10 AMI ready to run on EC2 with SELinux enforcing, hardened SSH, fail2ban, CloudWatch Agent, AIDE, chrony, SSM Agent and AWS CLI v2.
This is a repackaged open source software product wherein additional charges apply for seller hardening, preconfiguration, and maintenance.
This CentOS Stream 10 AMI is built for teams that want a clean CentOS Stream start on EC2, without spending the first hours on basic security and AWS tooling. The seller applied a practical security and operations baseline so instances start ready for production-style use.
What is included:
SELinux configured in enforcing mode to strengthen mandatory access control
Hardened SSH baseline with key-based authentication only, root login disabled, and restricted session settings
fail2ban pre-configured to protect SSH against brute-force authentication attempts
Amazon CloudWatch Agent pre-installed and pre-configured for system metrics and log collection
AIDE pre-initialized to help detect unexpected changes on critical system files
chrony configured for reliable time synchronization
AWS Systems Manager (SSM) Agent pre-installed for centralized instance management
AWS CLI v2 pre-installed for everyday AWS command-line operations
Cloud-optimized sysctl tuning for typical EC2 network and memory behavior
Built-in os-status utility for a quick view of services, resources, and security posture
Use this AMI as a solid starting point for application servers, admin hosts, and general CentOS Stream 10 workloads on Amazon EC2.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for CentOS Stream 10 with support from Tiov IT. Each pricing dimension maps to a specific AWS EC2 instance type, such as m7i.large or r7i.24xlarge. The software rate is charged per running hour and varies with the instance you choose. Larger instances with more CPU and memory carry higher hourly rates. Smaller instances cost less per hour. You are not locked into a term or fixed quantity. Charges accrue only while your instance runs, so you scale cost up or down by selecting the instance size that fits your workload.
Top-of-mind questions for buyers
What does one billing dimension map to, and how is a running hour counted?
Each dimension maps to one AWS EC2 instance type, such as m7i.large or c7a.16xlarge. You are billed per hour that the chosen instance runs. Partial hours and exact metering follow AWS conventions. The rate reflects the CPU and memory of that specific instance type.
Am I charged the software fee when my instance is stopped?
The software fee meters running time only. A fully stopped instance does not accrue the hourly software charge. Underlying AWS storage or other resources may still bill separately. Charges resume when you start the instance again.
What operating system and support am I paying for with this hourly rate?
You pay for a CentOS Stream 10 image with support from Tiov IT. CentOS Stream 10 is a Linux distribution with a lifecycle maintained until 2030. The hourly rate bundles the image and vendor support on top of your chosen instance.
www.centos.org
Helpful?
Vendor refund policy
The instance can be terminated at anytime to stop incurring charges. No refund available.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Initial hardened release for CentOS Stream 10.
This version includes seller-applied technical additions:
SELinux configured in enforcing mode
SSH hardening with key-based authentication only and root login disabled
fail2ban pre-configured for SSH protection
Amazon CloudWatch Agent pre-installed and pre-configured
AIDE file integrity monitoring initialized
chrony, AWS Systems Manager Agent, and AWS CLI v2 included
cloud-optimized sysctl tuning
os-status utility for quick service and security checks
Additional details
Usage instructions
Login using 'cloud-user' user and ssh public key authentication. cloud-init included.
Info regarding virtual machines
The operating system does not save any sensitive information for the customers. The customer is responsible for saving any information, sensitive or not.
The data saved on the volumes is not encrypted by default.
All instance authentication must use key pair access, not password-based authentication.
AMIs does not contain passwords, authentication keys, key pairs, security keys, or other credentials.
PasswordAuthentication is set to NO in sshd_config.
The application does not make use of any encryption techniques.
Troubleshooting
Navigate to your Amazon EC2 console and verify that you're in the correct region.
Choose Instance and select your launched instance.
Select the server to display your metadata page and choose the Status checks tab at the bottom of the page to review if your status checks passed or failed.
Or
Select monitor an troubleshoot and select get system log to see the system log or select get instance screenshot to see state of your screen at the current time
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Linux kernel 6.12 with improved performance, enhanced hardware compatibility, and new features including improved filesystem support and power management
Repository Structure
BaseOS repository providing core operating system functionalities, AppStream repository offering user-space applications and runtime languages, and CRB (CodeReady Builder) repository for development use cases
SSH Remote Access
SSH server installed for remote instance connection using key-based authentication
Operating System Distribution
CentOS Stream 10 minimal installation with minimal packages required for AWS deployment
Long-term Support Lifecycle
Maintenance and support expected until 2030, aligned with Red Hat Enterprise Linux 10 Full Support phase
Unbreakable Enterprise Kernel
High-performance Unbreakable Enterprise Kernel (UEK) for optimized speed, stability, and security across enterprise workloads.
Automatic Patching and Updates
Automatically updated at launch with latest security patches to ensure the most current and secure version is running.
RHEL Compatibility
Full Red Hat Enterprise Linux (RHEL) compatibility with enterprise-grade enhancements for seamless workload migration.
Security Features
Built-in SELinux support and zero-downtime patching options for secure platform operations.
Automatic Storage Extension
Root partition and filesystem automatically extends during boot if instance volume is larger than the default 8 GiB allocation.
Large-Scale Workload Support
Supports large-scale, data- and compute-intensive workloads
Binary Compatibility
100% application binary compatible with RHEL and CentOS
High Availability and Scalability
Delivers high availability and scalability for enterprise applications and databases
Security Updates
Continuous security updates available in new versions
Cloud-Native and Virtualization Tools
Includes automation, virtualization, management, cloud native tools, and Kubernetes capabilities