...
/VPC Flow Logs and VPC Traffic Mirroring
VPC Flow Logs and VPC Traffic Mirroring
Learn to monitor IP traffic flowing through the VPC using VPC flow logs and VPC Traffic Mirroring.
VPC flow logs
VPC flow log is a feature that monitors and captures the IP traffic going to and from network interfaces in our VPC. This feature allows us to monitor traffic from three levels. We can configure flow logs on VPC, on a subnet, or on a network interface level. If configured on the VPC level, it monitors all the network interfaces in a VPC.
Important points
A few important points related to VPC flow logs are listed below:
It helps monitor and troubleshoot our network issues.
VPC flow logs can be stored in Amazon S3, CloudWatch, and Kinesis Firehose.
The EC2 instance to which an elastic network interface (ENI) is attached must have a public IP address.
In VPC peering, we can create flow logs for the peered VPC only if that VPC belongs to our AWS account. ...