If checked, instance metadata HTTP requests require a signed token header and only support IMDSv2. If disabled, both IMDSv1 and IMDSv2 requests are supported (the default).