Policy: AWS > EC2 > Account Attributes > Instance Metadata Service Defaults > HTTP Token Hop Limit
The number of network hops that the metadata token can travel.
How this value is compared against the account's actual default hop limit is controlled by the Comparison Mode policy: with Exact match (the default) the account default must use exactly this value; with Maximum the value is treated as a ceiling and a lower (more restrictive) hop limit is also compliant.
The larger the number, the further instance metadata requests can travel.
Maximum is 64.
Targets
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Related Policies
Controls
Setting this policy configures this control:
Policy Specification
Schema Type | |
|---|---|
Default | |
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/resourceDataProtection
- tmod:@turbot/aws-ec2#/policy/types/ec2AccountAttributesInstanceMetadataServiceDefaultsTokenHopLimit
- turbot graphql policy-type --id "tmod:@turbot/aws-ec2#/policy/types/ec2AccountAttributesInstanceMetadataServiceDefaultsTokenHopLimit"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-ec2#/policy/types/ec2AccountAttributesInstanceMetadataServiceDefaultsTokenHopLimit"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI