All integrations
Amazon Elastic Beanstalk
Deployment

Deploy Cerbos on Amazon Elastic Beanstalk

Run the Cerbos PDP alongside your application on Elastic Beanstalk using Docker or multi-container environments.

Multi-container

Multi-container

Run Cerbos alongside your application in a multi-container Docker environment managed by Elastic Beanstalk

Auto-scaling

Auto-scaling

Cerbos scales automatically with your Elastic Beanstalk environment as instances are added or removed

Managed platform

Managed platform

Let Elastic Beanstalk handle provisioning, load balancing, and health monitoring while Cerbos handles authorization

What is Cerbos?

Cerbos is an open-source authorization layer that decouples access control from your application code. It runs as a stateless Policy Decision Point (PDP) that evaluates fine-grained policies at request time.

Authorization policies are written in human-readable YAML supporting RBAC, ABAC, and conditional rules. They can be updated, tested, and deployed independently of your application.

Deploying Cerbos via Amazon Elastic Beanstalk gives you a production-ready authorization service that scales horizontally and fits naturally into your existing infrastructure and observability stack.

How to deploy Cerbos on Elastic Beanstalk

  1. Create a Dockerrun.aws.json, Define a multi-container configuration that includes the official Cerbos container image alongside your application container.
  2. Configure policy loading, Set environment variables to point Cerbos at a Git repository or Cerbos Hub for policy storage.
  3. Deploy the environment, Upload the configuration to Elastic Beanstalk and launch the environment.
  4. Connect your application, Use a Cerbos SDK to send authorization checks to Cerbos running on localhost within the same instance.

FAQ

How do I deploy Cerbos on Elastic Beanstalk?

Use a multi-container Docker environment in Elastic Beanstalk. Add the Cerbos container alongside your application container in a Dockerrun.aws.json file.

Does Cerbos require any external dependencies?

No. Cerbos is fully stateless and requires no database or message queue. Policies can be loaded from a Git repository or Cerbos Hub.

Can Cerbos scale with Elastic Beanstalk auto-scaling?

Yes. When running as a sidecar container in the same environment, Cerbos scales automatically with your application instances. Each instance gets its own Cerbos PDP.

Cerbos + Amazon Elastic Beanstalk

  • Cerbos runs alongside your workloads in Amazon Elastic Beanstalk
  • No external databases or message queues required
  • Built-in metrics, distributed tracing, and structured logging
  • Stateless PDP instances scale horizontally

What is Cerbos?

Cerbos is an end-to-end enterprise authorization software for Zero Trust environments and AI-powered systems. It enforces fine-grained, contextual, and continuous authorization across apps, APIs, AI agents, MCP servers, services, and workloads.

Cerbos consists of an open-source Policy Decision Point, Enforcement Point integrations, and a centrally managed Policy Administration Plane (Cerbos Hub) that coordinates unified policy-based authorization across your architecture. Enforce least privilege & maintain full visibility into access decisions with Cerbos authorization.