Vpcflowlogs

  • Capture packet metadata & not packet data. Packet contents can be captured by a packet sniffer
  • META Data consists of Source IP & Port, Destination IP & Port, packet size etc
  • Flow logs are captured by attaching virtual monitors
  • Virtual Monitors can be applied at VPC Level(All Subnets), Subnet Level(All ENIs) or Specific Interface(Specific ANI)
  • Flow Logs are not real time