What Is Aws Vpc Traffic Mirroring
To maintain and ensure the security of the network customers need to know what is happening in the network and to their applications.
What is aws vpc traffic mirroring. Amazon vpc traffic mirroring also supports traffic filtering and packet truncation allowing customers to extract only traffic they are interested in monitoring. Traffic mirroring tm takes traffic seen on a given elastic network interface eni and mirrors it to a destination eni which should be attached to a compute instance with sniffer or security appliance software installed. Aws documentation amazon vpc traffic mirroring how traffic mirroring works traffic mirroring copies inbound and outbound traffic from the network interfaces that are attached to your amazon ec2 instances.
The source for traffic mirroring is an eni. For more information about pricing. Aws documentation amazon vpc traffic mirroring.
Mirror source an aws network resource that exists within a particular vpc and that can be used as the source of traffic. Mirror target an eni or network load balancer that serves as a destination for the mirrored traffic. The filters and rules that you add define the traffic that is mirrored.
Aws cloudwatch list metrics namespace aws ec2 the traffic mirroring metrics are included with the ec2 metrics. A traffic mirror filter contains one or more traffic mirror rules and a set of network services. The two enis can be in different accounts in the same account but different vpcs or in the same vpc.
Traffic mirroring is a feature for amazon virtual private cloud amazon vpc used to monitor the network traffic of workloads. Traffic mirroring is an amazon vpc feature that you can use to copy network traffic from an elastic network interface of amazon ec2 instances. Traffic mirroring provides deeper insight into the network traffic by allowing you to analyze actual traffic content including payload.
See list the available cloudwatch metrics for your instances in amazon ec2 user guide for linux instances. You can use vpc flow logs to troubleshoot connectivity and security issues and to make sure that the network access rules are working as expected. To do this traffic mirroring works by giving users direct access to network packets that travel through a vpc.