There's more...

  • Flow logs will not include the following traffic:
    • VPC flow logs support network interfaces created in VPC only, that is, EC2-classic links are not supported.
    • Traffic to or from DNS servers.
    • Windows license activation traffic.
    • Traffic to and from instance metadata (that is, 169.254.169.254) requests.
    • DHCP requests or responses.
  • Flow logs cannot be tagged
  • Flow logs configurations can't be changed once created, so you need to delete the existing ones and create new ones.

Get AWS Networking Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.