ec2-imdsv2-check
Checks if your Amazon Elastic Compute Cloud (Amazon EC2) instance metadata version is configured with Instance Metadata Service Version 2 (IMDSv2). The rule is NON_COMPLIANT if the HttpTokens is set to optional.
Identifier: EC2_IMDSV2_CHECK
Resource Types: AWS::EC2::Instance
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except Africa (Cape Town), Asia Pacific (Osaka), Europe (Milan) Region
Parameters:
- None
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.