Help & Support

Launch an instance

Subscribe on Marketplace, launch into your account, and open HTTPS.

Every AMI listing is on AWS Marketplace. Subscribe and accept the terms, then launch from the listing into your own AWS account. You choose the instance type, VPC, and security group.

What to allow inbound

Allow HTTPS (TCP 443) from your IP so you can open the wizard, and SSH (TCP 22) so you have a break-glass path if something goes wrong. Some products need extra ports — the product page lists those (for example UDP for VPN, or LDAP ports for the directory AMI).

You do not need to open HTTP on port 80.

Key pair and network

Attach an SSH key pair at launch. Use a public subnet and a public IP if you want a trusted certificate from Let’s Encrypt later. A private-only instance still works: you will use the browser warning certificate, or a certificate you already have.

If the product can mount or back up to S3, attach an instance profile with access to that bucket. You never paste AWS keys into the wizard.

After the instance is running

Copy the public DNS or IP from the EC2 console and open https://<address>/. Continue with first boot.

After launch, the instance asks you to start setup. Screenshots are from the VPN AMI; your product’s welcome text may differ.