VPC Flow Logs Flashcards

1
Q

What 3 Levels can you use flow logs at?

A

VPC
Subnet
Network Interface

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Can you enable flow logs for peered VPC’s?

A

Only if the peered VPC is in your account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Can you tag a flow log?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Can you change the configuration of a flow log after you create it? i.e. change the IAM role

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What traffic is never monitored?

A

instance traffic to the Amazon DNS Server

Windows instance for AWS license activation

to/from 169.254.169.254 for metadata

DHCP

to reserved IP address for default router

How well did you know this?
1
Not at all
2
3
4
5
Perfectly