Set IMDSv2 as default for all new instance launches in your account
News
The article discusses a new feature that allows setting Instance Metadata Service Version 2 (IMDSv2) as the default for all new Amazon EC2 instance launches in your AWS account.
Specifically, the article covers:
- IMDSv2 is an enhancement to the Instance Metadata Service that adds defense against unauthorized metadata access.
- You can now set IMDSv2 as the default for new instances in your account, per AWS region, using the EC2 console or API.
- A new CloudWatch metric, MetadataNoTokenRejected, indicates the number of times an IMDSv1 call was attempted and rejected after IMDSv1 is disabled.
- The new IMDS account defaults and MetadataNoTokenRejected metric are available in all AWS Regions and AWS GovCloud (US).
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.