...

/

VPC Flow Logs and VPC Traffic Mirroring

VPC Flow Logs and VPC Traffic Mirroring

Learn to monitor IP traffic flowing through the VPC using VPC flow logs and VPC Traffic Mirroring.

VPC flow logs

VPC flow log is a feature that monitors and captures the IP traffic going to and from network interfaces in our VPC. This feature allows us to monitor traffic from three levels. We can configure flow logs on VPC, on a subnet, or on a network interface level. If configured on the VPC level, it monitors all the network interfaces in a VPC.

Press + to interact

Important points 

A few important points related to VPC flow logs are listed below:

  • It helps monitor and troubleshoot our network issues.

  • VPC flow logs can be stored in Amazon S3, CloudWatch, and Kinesis Firehose.

  • The EC2 instance to which an elastic network interface (ENI) is attached must have a public IP address.

  • In VPC peering, we can create flow logs for the peered VPC only if that VPC belongs to our AWS account.  ...

Ask