What should the security engineer do to confirm that the IMDSv1 endpoint is no longer being used?

2 Comments

  1. Donald
    Author

    I scheme that the answer is:
    Create an Amazon CloudWatch dashboard. Verify that the EC2:MetadataNoToken metric is zero across all EC2 instances. Monitor the dashboard.

  2. Catherine
    Author

    If I’m correct, the answer is:
    Create an Amazon CloudWatch dashboard. Verify that the EC2:MetadataNoToken metric is zero across all EC2 instances. Monitor the dashboard.

Leave a Reply to Catherine Cancel reply

Your email address will not be published. Required fields are marked *

15 − fifteen =