# Enabling Container insights on Rack V2

**URL:** <https://community.convox.com/t/enabling-container-insights-on-rack-v2/910>\
**Category:** Rack (Version 2)\
**Created:** [December 29, 2022, 12:35pm UTC](https://community.convox.com/t/enabling-container-insights-on-rack-v2/910 "2022-12-29T12:35:33Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![eravelo](https://yyz1.discourse-cdn.com/flex029/user_avatar/community.convox.com/eravelo/32/22_2.png) [@eravelo](https://community.convox.com/u/eravelo)\
**Post date:** [December 29, 2022, 12:35pm UTC](https://community.convox.com/t/enabling-container-insights-on-rack-v2/910/1 "2022-12-29T12:35:33Z")

</div>

What is the good approach to enable Container insights on the ECS Cluster of a V2 Rack?  
My concern is how to enable [Instance Level Insights?](https://ecsworkshop.com/monitoring/container_insights/setup/#enable-instance-level-insights)

Because I don’t like to use AWS cli to modify the Convox Rack, I tried the agent approach to deploy the [amazon/cloudwatch-agent](https://hub.docker.com/r/amazon/cloudwatch-agent) the Convox way, like the datadog agent example in the V2 docs.

The agent seems to be running

```auto
convox apps
APP STATUS RELEASE
cloudwatch-agent running

```

but no EC2 metrics show up in the Cloudwath Container Insights console (e.g. ECS Instances CPU Utilization)

It might be because the [Necessary IAM roles and policies](https://docs.aws.amazon.com/AmazonCloudWatch/latest/monitoring/deploy-container-insights-ECS-instancelevel.html) are missing, but how to set those up the Convox way (i.e. no aws cli required)?

Thanks

---

<div class="post-metadata">

**Author:** ![eravelo](https://yyz1.discourse-cdn.com/flex029/user_avatar/community.convox.com/eravelo/32/22_2.png) [@eravelo](https://community.convox.com/u/eravelo)\
**Post date:** [December 29, 2022, 12:37pm UTC](https://community.convox.com/t/enabling-container-insights-on-rack-v2/910/2 "2022-12-29T12:37:35Z")

</div>

Here is the `convox.yml` used to deploy the agent:

```auto
services:
  cloudwatch-agent:
    agent: true
    image: amazon/cloudwatch-agent:latest
    privileged: true
    scale:
      cpu: 128
      memory: 64
    volumes:
      - /sys/fs/cgroup/:/rootfs/sys/fs/cgroup/
      - /cgroup/:/rootfs/cgroup/
      - /proc/:/rootfs/proc/
      - /dev/:/rootfs/dev/

```
