Policy: AWS > VPC > VPC > Flow Logging
Configure VPC Flow logging for the VPC.
VPC Flow Logs is a feature that enables you to capture information about the IP traffic going to and from network interfaces in your VPC. Flow log data can be published to Amazon CloudWatch Logs and Amazon S3.
Resource Types
This policy targets the following resource types:
Related Policies
Controls
Policy Packs
This policy setting is used by the following policy packs:
- AWS CIS v3.0.0 - Section 3 - Logging
- Enforce Flow Logging to S3 Buckets Is Enabled for AWS VPCs
- Enforce Flow Logging to CloudWatch Log Groups Is Enabled for AWS VPCs
Policy Specification
Schema Type |
|
---|---|
Default |
|
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/turbot
- tmod:@turbot/aws-vpc-core#/policy/types/vpcFlowLogging
- turbot graphql policy-type --id "tmod:@turbot/aws-vpc-core#/policy/types/vpcFlowLogging"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-vpc-core#/policy/types/vpcFlowLogging"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI