VPC Flow-Log Flashcards

1
Q

VPC FLowLog captures Packets, Segments, or data?

A

only captures Packet meta-data and not data and not a packet data content.

Packet content inspection can only be done using packet sniffers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Flowlogs Architecture

A

Attaching Virtual Monitors to a VPC

It can be applied to

  • VPC Level
    Network Interface in every subnet within that vpc
  • Subnet Level
    every Interface within a Particular Subnet
  • Network Interface Level
    Directly on a Network interface
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Flowlogs Latency

A

Flowlogs is not realtime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Vpc Flowlog Integrations

A
  1. s3
  2. CLoudwatch Logs
  3. CLoudtrail
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Notable Protocols in VPC Flowlogs

A

Popular Protocol Number to take note of:

IMP=1,
TCP=6,
UDP=17

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly