IMDS initiate session

From wikieduonline
Revision as of 11:10, 4 November 2022 by Ant (talk | contribs) (Created page with "* Initiate session (bash example) TOKEN=`curl --request PUT "http://169.254.169.254/latest/api/token" --header "X-aws-ec2-metadata-token-ttl-seconds: 600"` * Continue sessi...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search
  • Initiate session (bash example)
TOKEN=`curl --request PUT
"http://169.254.169.254/latest/api/token"
--header "X-aws-ec2-metadata-token-ttl-seconds: 600"`
  • Continue session with GET request but required token

curl --request GET "http://169.254.169.254/latest/metadata/ami-id" --header "X-aws-ec2-metadata-token: $TOKEN"

  • This token expires after 10 minutes (600 seconds)
  • IMDS distinguishes between v1 and v2 requests by presence of

headers


IMDS, IMDSv2, ec2-imdsv2-check, aws ec2 modify-instance-metadata-options, /latest/meta-data, /latest/user-data

Advertising: