Listing Thumbnail

    Fully Managed, Secured, and Optimized Vault

     Info
    Deployed on AWS
    AWS Free Tier
    A preconfigured HashiCorp Vault AMI with automated initialization, unseal key management, SSL certificate provisioning, and domain setup support. Deploy secure, production-ready secret management in minutes.

    Overview

    This AMI provides a fully automated and production-ready installation of HashiCorp Vault using Docker Compose. It includes guided setup scripts to simplify first-time configuration, secure initialization, and TLS certificate generation. Upon first launch, you will be prompted to map your domain name, validate DNS, configure an admin email, and automatically generate and apply SSL certificates using Let's Encrypt. Vault is securely initialized with unseal keys and a root token, which are stored locally in the .env file for safekeeping. The AMI also includes an auto-unseal helper script and a failsafe mechanism to ensure Vault services start reliably after reboots. Ideal for teams and organizations seeking to deploy secure secrets management without complex manual setup.

    Highlights

    • Automated Production Setup: Guided first-boot configuration with domain validation, SSL provisioning, unseal key generation, and Vault initialization.
    • Secure by Design: Unseal keys and root token stored locally in .env, with automatic unseal helper scripts for operational continuity.
    • Ready for Immediate Use: Fully configured Vault service running via Docker Compose, accessible over HTTPS under your custom domain.

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    Ubuntu 24.04

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Fully Managed, Secured, and Optimized Vault

     Info
    This product is available free of charge. Free subscriptions have no end date and may be canceled any time.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.
    If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier  for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier  for more details.

    Vendor refund policy

    This product is currently offered free of charge on AWS Marketplace. Since there are no fees associated with the use of this AMI, refunds are not applicable.

    Buyers may cancel use of the product at any time by terminating the associated Amazon EC2 instance.

    For any questions or concerns, please contact: Perimattic.com Email: aws@perimattic.com 

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Version release notes
    1. Initial release of HashiCorp Vault AMI with automated setup and secure configuration.

    2. Added guided first-boot workflow for domain mapping and DNS validation.

    3. Enabled automatic SSL certificate provisioning using Let's Encrypt via Apache.

    4. Integrated Docker Compose deployment for consistent and maintainable Vault runtime.

    5. Implemented Vault initialization with 5 unseal key shares and 3-key threshold.

    6. Added automatic unseal script generation for simplified recovery operations.

    7. Root token and unseal keys are securely stored in .env for administrator access.

    8. Included failsafe script to ensure setup re-runs only when necessary.

    9. Added cleanup routines to avoid stale Vault data or previous initialization artifacts.

    10. Optimized startup flow with progress feedback and improved reliability after reboots.

    Additional details

    Usage instructions

    1. Launch an Instance

      From AWS Marketplace, click Continue to Subscribe and then Continue to Configuration to launch the AMI.

    2. Choose the Recommended Instance Type

      Select t2.medium or higher for stable performance.

    3. Configure Security Group

      Allow inbound traffic on the following ports:

      • 22 (SSH) - For secure terminal access
      • 80 (HTTP) - Required temporarily during SSL validation
      • 443 (HTTPS) - To securely access the Vault web UI
      • 8200 (Vault API) - Required if accessing Vault programmatically or via CLI/SDKs
    4. Connect to the Instance

      ssh -i <your-key.pem> ubuntu@<public-ip>

    5. First-Boot Setup

      On first run, the AMI performs a guided setup:

      • Detects your server's public IP automatically
      • Prompts you to enter your Vault domain (e.g., vault.example.com)
      • Validates that the domain's A record points to this instance
      • Requests your admin email (used for SSL certificate registration)
      • Configures Apache reverse proxy for secure HTTPS access
      • Automatically requests and installs a Let's Encrypt SSL certificate

      Once complete, Vault initializes and generates:

      • Unseal Keys
      • Initial Root Token
    6. Configure DNS

      Before continuing setup, create this record at your DNS provider:

      your domain name - A - <your-instance-public-IP>

      The setup script will automatically detect DNS propagation.

    7. Automatic SSL Setup

      After DNS is confirmed:

      • A free SSL certificate is issued by Let's Encrypt
      • HTTPS is enabled and enforced
      • Traffic is securely routed to the Vault service
    8. Start or Restart Services Manually (if needed)

      cd /opt/app docker compose ps docker compose restart

    9. Access Vault Web UI

      Open your browser and visit:

      https://<your-domain>

    10. Login Credentials & Unseal Keys

    Your Vault initialization data is stored here:

    cat /opt/app/.env

    This includes:

    • VAULT_ROOT_TOKEN
    • VAULT_UNSEAL_KEY_1 VAULT_UNSEAL_KEY_5

    Support

    Vendor support

    For any assistance or inquiries, our dedicated support team is here to help 24/7. Feel free to reach out to us anytime. Email: support@cro-digital.co.uk  We are committed to providing timely and effective solutions to meet your needs.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    No customer reviews yet
    Be the first to review this product . We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.