Understanding Amazon EC2 Instance Metadata Service v2 Hop Limit

Поділитися
Вставка
  • Опубліковано 6 вер 2024
  • The Amazon EC2 Instance Metadata Service (IMDS) version 2 has a security feature called the Hop Limit, that can impact the ability for Docker containers, running on the host, to obtain AWS SDK credentials. It's important to understand how this feature works, so that you can safely update EC2 instance configurations to require IMDSv2. Using IMDSv2 improves infrastructure security; you can monitor EC2 instances for compliance with this setting by using a managed AWS Config rule.

КОМЕНТАРІ • 1