Monday, 20 January 2020

AWS VPC Flow log

VPC flow log will have all the access information and and out of the VPC network

++ Create cloudwatch log group
++ > Console > VPC > Flow Logs Tab > Create Flow log



Select the CloudWatch Log Group


Setup Permissions



Allow

Select the Role


Now check the Cloudwatch log > Console ClouldWatch > Log Group >


We can see in details which IP is accessing is it rejected or accepted.



No comments: