4 ms·
I think we mean different things, it is enabled by default but I'm saying thats not the default IMDS version that metadata endpoint points to for `/latest/` fo
by eightnoteight 3y ago
I think we mean different things, it is enabled by default but I'm saying thats not the default IMDS version that metadata endpoint points to for `/latest/`
for example if you run below curl request on ec2 instances launched from aws console before nov 6th then you will get a response
```sh
curl http://169.254.169.254/latest/meta-data/profile http://169.254.169.254/latest/meta-data/profile
```
but if you run the same command on ec2 instances launched from aws console after nov 6th, then you will get an error that auth token is missing
- colmmacc 3y agoIMDSv2 doesn't change the URLs, the "/latest/" in that URL is referring to the meta-data profile, rather than the IMDS version. IMDS is a lower level change in the authentication workflow to use a token (which is retrieved using a PUT request). https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/instance-metadata-v2-how-it-works.html https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/instance... has a good example.