Amazon public certificates for instance identity document signatures
The following Amazon public certificates can be used to verify the contents of an instance's instance identity document as described in Verify instance identity document.
Ensure that you use the correct certificate for your Region and for the verification procedure that you're using. If you're verifying the PKCS7 signature, use the DSA certificate. If you're verifying the base64-encoded signature, use the RSA certificate. If you're verifying the RSA-2048 signature, use the RSA-2048 certificate.
Expand each Region below to view the Region-specific certificates.