Attach your Ubuntu Advantage subscription
Attaching the Ubuntu Advantage subscription to Ubuntu, brings the enterprise lifecycle, including Linux kernel livepatching, access to FIPS validated packages, and compliance with security profiles such as CIS. This is not required on Ubuntu Pro instances on AWS, Azure or GCP, as these are automatically attached from launch.
The following instructions explain how to attach your subscription to your Ubuntu systems.
Step 1: Install the UA client
This step is necessary for Ubuntu Advantage customers or holders of personal subscriptions. If you are an Ubuntu Pro user, your subscription is already attached and you may skip these instructions.
We first need to make sure that we have the latest version of the UA client running:
sudo apt update sudo apt install ubuntu-advantage-tools
This will ensure that you are running the latest version of the UA client.
Step 2: Attach your subscription
Once you have checked that you are running the latest version of the UA client, you need to attach the UA token to your UA client to gain access to the Ubuntu Advantage services.
First we need to retrieve our UA token from our Ubuntu Advantage dashboard. To access your dashboard, you need an Ubuntu One account. If you still need to create one, ensure that you use the email address used to create your subscription.
The Ubuntu One account functions as a single-sign-on, so once logged in we can go straight to the Ubuntu Advantage dashboard at ubuntu.com/advantage. Then click on the ‘Machines’ column in the Your Paid Subscriptions table to reveal your token.
Now we’re ready to attach our UA token to the UA client:
sudo ua attach <your_ua_token>
You will know that the token has been successfully attached when you see the list of services, descriptions and their enabled/disabled status in a table similar to this:
SERVICE ENTITLED STATUS DESCRIPTION esm-apps yes enabled Expanded Security Maintenance for Applications esm-infra yes enabled Expanded Security Maintenance for Infrastructure livepatch yes enabled Canonical Livepatch service realtime-kernel yes disabled Ubuntu kernel with PREEMPT_RT patches integrated
Note that Extended Security Maintenance (ESM) and Livepatch will auto-enable once your token has been attached to your machine.
After attaching the UA client with your token you can also use the UA client to activate most of the Ubuntu Advantage services, including Livepatch, FIPS, and the CIS Benchmark tool.