Overview
This product has charges associated with it for CIS Level 1 hardening, pre-configured compliance (PCI DSS, NIST), firewall policies, CLAMAV, Audit, Wazuh SIEM agent.
Debian 12 Bookworm Hardened is a security optimized machine image built on the latest Debian 12 Bookworm point release configured according to CIS Benchmark Level 1 hardening guidelines This image eliminates the manual effort of securing a base operating system delivering a production ready Debian environment with a minimal attack surface from the moment it launches Debian 12 benefits from Long Term Support LTS until June 2028 providing extended security coverage for stable long running deployments
The image includes essential hardening measures UFW firewall with a default deny inbound policy SSH hardened with root login disabled and password authentication removed fail2ban intrusion prevention and a reduced package footprint with unnecessary services disabled Kernel parameters are tuned with protections including IP spoofing prevention TCP SYN cookies and source routing disabled File system permissions on critical paths such as etc shadow etc passwd and etc ssh sshd config are enforced according to CIS recommendations and the system is configured to receive security updates
Highlights
- CIS Benchmark Level 1 hardened security Debian 12 Bookworm machine image configured with UFW firewall SSH hardening fail2ban and kernel level protections that reduce attack surface from the first boot
- Production ready without configuration overhead Deploy a compliant Debian environment in seconds with reduced package footprint disabled unnecessary services and security updates already configured
- Regulatory compliance Debian 12 ideal for regulated environments with PCI DSS HIPAA and SOC 2 compliance
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Free trial
- ...
Dimension | Cost/hour |
|---|---|
t2.large Recommended | $0.20 |
t3.micro | $0.05 |
r8i.96xlarge | $6.40 |
r8i.metal-96xl | $2.40 |
r8ib.96xlarge | $6.40 |
r8ib.metal-96xl | $2.40 |
r8id.96xlarge | $6.40 |
r8id.metal-96xl | $2.40 |
r8idb.96xlarge | $6.40 |
r8idb.metal-96xl | $2.40 |
Vendor refund policy
For this offering, Bansir does not offer refund, you may cancel at anytime.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
ver 2026
Additional details
Usage instructions
Thank you for purchasing the Debian 12 Bookworm Hardened. This section explains how to launch, access, and verify your hardened instance.
Step 1. Launch the instance
Deploy this AMI from the AWS Marketplace console using your preferred instance type. During launch, select an existing SSH key pair or create a new one. This key is required to access the instance, as password authentication is disabled for security.
Step 2. Configure the security group
In the security group settings, allow inbound SSH traffic on port 22 only from your trusted IP address. Do not open other ports unless required by your workload. The UFW firewall inside the instance is already configured to deny all incoming traffic except SSH port 22.
Step 3. Connect to the instance
After the instance is running, connect using SSH with the default user admin and your private key:
ssh -i /path/to/your-key.pem adminyour-instance-public-ip
Support
Vendor support
Remote support support@bansircloud.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.