VPC Flow Logs Flashcards
1
Q
What 3 Levels can you use flow logs at?
A
VPC
Subnet
Network Interface
2
Q
Can you enable flow logs for peered VPC’s?
A
Only if the peered VPC is in your account
3
Q
Can you tag a flow log?
A
No
4
Q
Can you change the configuration of a flow log after you create it? i.e. change the IAM role
A
No
5
Q
What traffic is never monitored?
A
instance traffic to the Amazon DNS Server
Windows instance for AWS license activation
to/from 169.254.169.254 for metadata
DHCP
to reserved IP address for default router