VPC Flowlogs Flashcards

1
Q

What are VPC Flow Logs?

A

A feature that captures information about the IP traffic going to and from network interfaces in your VPC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How are VPC Flow Logs stored?

A

Using Amazon CloudWatch Logs. After creating a flow log, you can view it in CloudWatch Logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Flow logs can be created at three levels in the VPC, what are they?

A

VPC Level - Tracks all traffic in the VPC
Subnet Level - Tracks all traffic in that subnet
Network Interface Level - Tracks all traffic to that interface

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

True or False: You can enable Flow Logs against other AWS account VPCs that you are peered with?

A

False. You can only enable flow logs against peered VPCs in your own account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Can you tag flow logs?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Can you change the configuration of a flow log after it has been created?

A

No. For example, you cannot change the associated IAM role.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

True or false: Traffic reaching out to AWS DNS servers are not logged?

A

True.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

True or False: Instances that reach out to a customer-managed DNS server are not logged?

A

False: All traffic to customer managed DNS servers are captured.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You review flow logs to ensure AWS Windows activation requests are operating correctly but cannot locate them? Why might this be?

A

Traffic generated for Amazon Windows license activations are not logged by flow logs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

You review flow logs to determine who is accessing instance metadata using 169.254.169.254 but cannot locate those logs. Why might this be?

A

Traffic generated by metadata queries is not logged by VPC flow logs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

True or false: Traffic to AWS DHCP servers are logged?

A

False. Traffic to AWS DHCP servers are not logged.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Is traffic to the default IP address for VPC routers logged?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly