VPC Flow Log
What
VPC Flow log is to log the traffic within your network
Some Info
Log Level
- VPC
- Subnet
- ENI
Log Info
- src/dst addr
- src/dst port
- action (success/failure)
Log Destination
- CloudWatch
- S3 Bucket
Visibility/Dashboard
- Log Insight (CloudWatch)
- Athena (S3)
Some Debug Tips
- Outbound/Inbound failure -> NACL or SG
- Outbound/Inbound success but return error -> NACL (SG auto allow the return package)