You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to Vault
If AWS ec2 instance-id is not unique across multiple accounts ? then how can "identity-whitelist" will help me to restrict "disallow-reauthentication"? ( that means my requirement is not to allow an instance id to give more than one token)
How frequently AWS ec2 instance-id is reused ? i mean assume that an ec2 instance instance id is "i-abcd", got authenticated with aws-ec2 auth backend and got the token and then I have teardown that instance, now when i provision an ec2 instance, if it gets instance id as i-abcd then how can we solve this without clearing "identity-whitelist" ?
Regards
KV
Jason Martin
unread,
Apr 26, 2017, 5:43:27 PM4/26/17
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
-Jason Martin
On Wed, Apr 26, 2017 at 02:35:18PM -0700, kamalakar vadla wrote:
>
>
> - If AWS ec2 instance-id is not unique across multiple accounts ? then
> how can "identity-whitelist" will help me to restrict
> "disallow-reauthentication"? ( that means my requirement is not to allow an
> instance id to give more than one token)
> - How frequently AWS ec2 instance-id is reused ? i mean assume that an
> ec2 instance instance id is "i-abcd", got authenticated with aws-ec2 auth
> backend and got the token and then I have teardown that instance, now when
> i provision an ec2 instance, if it gets instance id as i-abcd then how can
> we solve this without clearing "identity-whitelist" ?
>
>
> Regards
> KV
>