This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. NGINX on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, server_tokens disabled, firewall pre-configured for HTTP/HTTPS, and continuously patched images.
This is a repackaged open source software product wherein additional charges apply for image hardening, ongoing maintenance, and support from Derek Coleman & Associates Inc.
NGINX is the world's most widely used web server, reverse proxy, and load balancer. This image delivers NGINX on Amazon Linux 2023 with a production-oriented security baseline applied at build time: the OS package set is minimized, all packages are updated at image build, SSH is restricted to key-based authentication with root login locked, the instance metadata service is enforced at IMDSv2, the firewall ships enabled with only HTTP/HTTPS exposed, and NGINX version disclosure (server_tokens) is disabled. Images are rebuilt and re-scanned continuously so new deployments always start from a currently patched base.
Launch it as a standalone web server, a reverse proxy in front of application tiers, a TLS termination point, or a load balancer for horizontal scale-out.
Highlights
Production-ready in one click: systemd-managed NGINX starts on boot; standard config layout under /etc/nginx for drop-in server blocks.
Security-hardened at build time: minimal packages, key-only SSH, IMDSv2-only, firewall enabled with only web ports open, version disclosure off.
Continuously patched: images are rebuilt, vulnerability-scanned, and republished on a regular cadence so new launches start current.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour for the software, based on the EC2 instance size you launch. All three options run the same hardened NGINX image; they differ only in compute capacity. The c7i.xlarge offers 4 vCPU and 8 GiB memory, the c7i.2xlarge offers 8 vCPU and 16 GiB, and the c7i.4xlarge offers 16 vCPU and 32 GiB. Choose a size to match your workload. AWS infrastructure charges are billed separately by AWS. There is no subscription and no minimum. Charges stop when you terminate the instance.
Top-of-mind questions for buyers
What EC2 resources does each hourly instance size give me for the software charge?
The c7i.xlarge provides 4 vCPU and 8 GiB memory. The c7i.2xlarge provides 8 vCPU and 16 GiB. The c7i.4xlarge provides 16 vCPU and 32 GiB. Each launch uses one EC2 instance and one gp3 EBS volume. No other AWS resources are created.
Am I charged when the instance is stopped or terminated?
Software charges accrue only while the instance runs, metered per hour. Charges stop when you terminate the instance. A stopped instance may still incur AWS storage fees for the attached EBS volume, but the software license meters running time only. There is no subscription and no minimum.
How does the software charge relate to my AWS bill?
The hourly software price covers the hardened image, maintenance, and vendor support. AWS infrastructure charges for compute and storage are separate and billed directly by AWS on your account invoice. Both appear alongside each other, but the software meter runs only while the instance is active.
products.dcassociatesgroup.com
Helpful?
Vendor refund policy
This product is billed hourly based on usage; charges stop automatically when you terminate the instance, so there is no ongoing commitment to refund. If you believe you were billed in error, contact support@dcassociatesgroup.com within 30 days of the charge with your AWS account ID and the affected instance IDs, and we will review and, where a billing error is confirmed, issue a corresponding refund through AWS Marketplace.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
[Security] Refreshed image: rebuilt on the latest hardened Amazon Linux 2023 baseline; all OS packages current at build.
Additional details
Usage instructions
Launch from AWS Marketplace (1-Click or EC2 console).
Connect via SSH with your EC2 key pair: ssh -i <key> ec2-user@<public-ip>. Root login is disabled; use sudo.
Verify the web server: curl -I http://<public-ip> returns HTTP 200 (NGINX welcome page). Manage the service with: sudo systemctl {status|reload|restart} nginx.
Configuration lives under /etc/nginx (add server blocks in /etc/nginx/conf.d); web content under /usr/share/nginx/html.
To enable HTTPS, install your TLS certificate and key (e.g. under /etc/pki/nginx), add a server block on 443, and reload; port 443 is already open in the firewall.
Sensitive data: there are no passwords or secrets anywhere in this product. Logs under /var/log/nginx may contain client IPs - treat as personal data.
Backup: snapshot the EBS volume (it contains all configuration and data).
Resources: a single instance uses 1 EC2 instance and 1 gp3 EBS volume; no other AWS resources are created.
Support by Derek Coleman & Associates Incorporated: support@dcassociatesgroup.com. Business-day response. Covers image operation, hardening baseline, and launch issues. NGINX application-level consulting available under separate engagement.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This is a repackaged open source software product wherein additional charges apply for image hardening, maintenance, and support. Traefik reverse proxy on Amazon Linux 2023, security-hardened for production: minimal package set, SSH key-only access, IMDSv2-only, dashboard and API disabled, runs as a non-root user, and continuously patched images.
Deliver apps with performance, reliability, security, and scale. NGINX Plus and NGINX App Protect on AWS deploy quickly and cost-effectively, and you'll benefit from speeds <30ms. Get the all in one (yet surprisingly lightweight) load balancer, reverse proxy, and API gateway with WAF.
Deliver apps with performance, reliability, security, and scale. NGINX Plus and NGINX App Protect on AWS deploy quickly and cost-effectively, and you'll benefit from speeds <30ms. Get the all in one (yet surprisingly lightweight) load balancer, reverse proxy, and API gateway with WAF.
NGINX Plus provides enterprise features such as advanced application load balancing, SSL termination, and monitoring. Trusted by the largest sites in the world and integrated with AWS services, NGINX Plus delivers your applications with more control and less complexity in AWS regions worldwide.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.