Skip to main content

Repository → 💼 CIS AWS v6.0.0 → 💼 6 Networking

💼 6.7 Ensure that the EC2 Metadata Service only allows IMDSv2 (Automated)

  • ID: /frameworks/cis-aws-v6.0.0/06/07

Description

When enabling the Metadata Service on AWS EC2 instances, users have the option of using either Instance Metadata Service Version 1 (IMDSv1; a request/response method) or Instance Metadata Service Version 2 (IMDSv2; a session-oriented method).

Similar

  • Sections
    • /frameworks/cis-aws-v5.0.0/05/07

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v5.0.0 → 💼 5.7 Ensure that the EC2 Metadata Service only allows IMDSv2 (Automated)1no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v5.0.0 → 💼 5.7 Ensure that the EC2 Metadata Service only allows IMDSv2 (Automated)1no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS EC2 Instance IMDSv2 is not enabled🟢1🟢 x6no data