Amazon Linux 2023

Amazon Linux 2023

Amazon Linux 2023 excels in security and performance for AWS.

Basic information

  • Model: Amazon Linux 2023 (AL2023)
  • Version: Amazon Linux 2023. The latest stable version receives quarterly minor updates. As of November 5, 2025, the latest minor release is 2023.9.20251105.
  • Release Date: March 15, 2023 (General Availability).
  • Minimum Requirements:
    • RAM: 512 MB.
    • Processor: x86-64 (requiring x86-64v2, generally processors from 2009 or later, such as Intel Nehalem or AMD Jaguar) and 64-bit aarch64 (ARM). It does not support i686 (32-bit x86) or 32-bit ARM binaries. A1 instances are not supported.
  • Supported Operative Systems: N/A (it is an operating system).
  • Latest Stable Version: Amazon Linux 2023 (AL2023) with ongoing quarterly minor updates.
  • End of Support Date: June 30, 2029. This includes a two-year standard support phase followed by a three-year maintenance phase.
  • End of Life Date: June 30, 2029.
  • Auto-update Expiration Date: By default, AL2023 instances lock to the repository version used to build the AMI and do not automatically receive security updates. Users control when and how updates are applied.
  • License Type: Provided at no additional charge.
  • Deployment Model: Primarily optimized for Amazon EC2 and other AWS services. Available as Amazon Machine Images (AMIs) for x86_64 and aarch64 architectures (standard and minimal versions), and as container images. It can also run on-premises with a hypervisor.

Technical Requirements

  • RAM: Minimum 512 MB.
  • Processor: x86-64 (requiring x86-64v2 instruction set, corresponding to processors from approximately 2009 onwards) and 64-bit aarch64 (ARM). It does not support 32-bit x86 (i686) or 32-bit ARM.
  • Storage: Default AMIs utilize gp3 volumes.
  • Display: Not applicable for a server operating system.
  • Ports: Dependent on installed services and applications.
  • Operating System: N/A (it is the operating system).

Analysis of Technical Requirements: Amazon Linux 2023 focuses on modern hardware, requiring 64-bit architectures and the x86-64v2 instruction set for x86-64 processors. This ensures compatibility with current cloud infrastructure, including AWS's Graviton processors, while discontinuing support for older 32-bit systems. The minimal RAM requirement of 512 MB makes it suitable for a broad spectrum of EC2 instance types, including nano instances.

Support & Compatibility

  • Latest Version: Amazon Linux 2023 (AL2023), with quarterly minor version updates.
  • OS Support: Optimized for AWS services and deeply integrated with AWS features. It is based on a combination of Fedora Linux and CentOS Stream, with its kernel sourced from kernel.org's Long Term Support (LTS) releases. It supports modern software packages, including Python 3 (replacing Python 2.7), OpenSSL 3, and uses DNF as its package manager (replacing YUM). It is also designed to work seamlessly with containerized applications.
  • End of Support Date: June 30, 2029. This includes a two-year standard support phase and a subsequent three-year maintenance phase.
  • Localization: As a Linux distribution, it generally supports various locales.
  • Available Drivers: It utilizes the Linux kernel 6.1 LTS, with expected updates within the 6.1.x series. This provides extensive hardware compatibility, particularly within the AWS EC2 environment. Kernel live patching is available for both x86_64 and aarch64 architectures.

Analysis of Overall Support & Compatibility Status: AL2023 provides robust long-term support with a predictable release cadence, facilitating easier enterprise upgrade planning. Its foundation on modern Fedora and CentOS Stream components, coupled with an LTS kernel, ensures compatibility with contemporary software and hardware. The version locking feature offers precise control over updates, enhancing stability for production workloads.

Security Status

  • Security Features:
    • SELinux is enforced by default, with configurable policies.
    • Includes pre-configured security policies to meet industry guidelines.
    • Supports configurable system crypto policies (e.g., FUTURE or LEGACY).
    • Kernel hardening features, such as kernel module signing and kernel lockdown, are enabled by default.
    • Kernel live patching functionality allows for patching critical and important security vulnerabilities without reboots.
    • Minimizes the attack surface by reducing the package footprint.
    • Offers deterministic upgrades through versioned repositories for consistent security patching.
    • Supports UEFI Preferred and Secure Boot.
    • Features an improved default SSH server configuration.
  • Known Vulnerabilities: Specific known vulnerabilities are addressed through regular security updates provided during its support lifecycle.
  • Blacklist Status: Not applicable.
  • Certifications: FIPS certification.
  • Encryption Support: Configurable system crypto policies manage cipher suites, TLS versions, and parameters for certificates and key exchanges.
  • Authentication Methods: Standard Linux authentication methods are supported, enhanced by improved SSH configuration.
  • General Recommendations: AWS encourages users to upgrade to AL2023 from older Amazon Linux versions for enhanced security.

Analysis on Overall Security Rating: Amazon Linux 2023 maintains a high security standard, with numerous features like SELinux and kernel hardening enabled by default. Its predictable update cadence and version locking provide controlled and consistent application of security patches, which is vital for maintaining a strong security posture in cloud environments. FIPS certification further enhances its suitability for regulated workloads.

Performance & Benchmarks

  • Benchmark Scores: While specific benchmark scores vary, AL2023 generally outperforms Amazon Linux 2.
  • Real-world Performance Metrics:
    • Exhibits faster boot times and reduced application response latency.
    • Achieves better utilization of CPU and memory resources.
    • Optimized for AWS EC2 and Graviton processors.
    • Provides improved performance for containerized applications.
    • Packages are built with compiler optimizations (-O2) and require x86-64v2 for x86-64 systems.
  • Power Consumption: Not directly an OS metric, but its efficient resource utilization contributes to lower power consumption of the underlying hardware.
  • Carbon Footprint: Not directly an OS metric.
  • Comparison with Similar Assets: Consistently outperforms Amazon Linux 2 in various workloads, including web serving, database operations, and data processing. It features a newer kernel (6.1 LTS compared to AL2's 5.10) and more recent package versions (e.g., GCC 11.3, Python 3.9 versus AL2's GCC 7.3.1, Python 3.7).

Analysis of Overall Performance Status: Amazon Linux 2023 delivers significant performance enhancements over its predecessor, Amazon Linux 2. This is attributed to its modern kernel, updated toolchain, and specific optimizations for AWS EC2 and Graviton processors. These improvements result in faster operations, greater resource efficiency, and enhanced support for contemporary workloads, including containerized applications.

User Reviews & Feedback

Strengths: Users highlight AL2023's optimization for AWS services and deep integration with AWS features. Its predictable release cadence and five years of long-term support are highly valued for enterprise planning. Enhanced security features, including SELinux by default, kernel hardening, and FIPS certification, are significant advantages. The consistent and flexible update experience, facilitated by version locking, is also a key benefit. Users also note improved performance compared to AL2 and its availability at no additional cost. Its foundation on modern Fedora and CentOS Stream components is seen as a positive.

Weaknesses: A common point of feedback is that there is no direct in-place upgrade path from Amazon Linux 2, requiring a migration process. This major version update can introduce breaking changes. Some users find the package availability to be more limited compared to other popular AMIs like Ubuntu for certain workloads. The default behavior of not automatically applying security updates can be a concern if not properly configured. Some users also express confusion about the necessity of another Linux distribution.

Recommended Use Cases: Amazon Linux 2023 is recommended for developing and running cloud applications, especially general-purpose workloads on AWS. It is particularly well-suited for workloads demanding high security standards and compliance (e.g., FIPS). Its performance benefits make it ideal for containerized applications and microservices, optimizing cloud operations, and leveraging the latest technologies. It is highly recommended for new deployments on AWS.

Summary

Amazon Linux 2023 (AL2023) is AWS's latest generation Linux operating system, designed to provide a secure, stable, and high-performance environment for cloud applications. Released in March 2023, it offers a predictable lifecycle with five years of long-term support, comprising a two-year standard support phase and a three-year maintenance phase, extending until June 30, 2029. This predictable cadence, coupled with quarterly minor updates, allows for better planning and control over software versions.

Key strengths of AL2023 include its deep optimization for AWS services and EC2 instances, providing an integrated experience. It boasts a high security standard with features like SELinux enforced by default, kernel hardening, FIPS certification, and deterministic upgrades through versioned repositories, giving users granular control over updates and enhancing consistency across environments. Performance is significantly improved over its predecessor, Amazon Linux 2, due to a modern kernel (6.1 LTS), updated toolchain, and optimizations for Graviton processors, resulting in faster boot times, reduced latency, and better resource utilization.

However, AL2023 is not an in-place upgrade from Amazon Linux 2, requiring a migration effort that may involve addressing breaking changes. While it offers a wide array of modern packages, some users might find its initial package availability less extensive than other distributions for specific niche workloads. The default behavior of not automatically applying security updates, though configurable, requires careful management to ensure continuous security.

Overall, Amazon Linux 2023 is an excellent choice for new deployments on AWS, particularly for organizations prioritizing enhanced security, predictable update cycles, and optimal performance for cloud-native and containerized applications. It is recommended for those seeking to leverage the latest Linux innovations within the AWS ecosystem without additional licensing costs. Users migrating from older Amazon Linux versions should plan for a migration rather than an in-place upgrade to fully benefit from AL2023's advancements.

The information provided is based on publicly available data and may vary depending on specific device configurations. For up-to-date information, please consult official manufacturer resources.