Ensure that Flow Log is enabled and configured to send logging data to Simple Log Service (SLS). Flow Log is a logging feature that enables users to capture information about the IP traffic (accepted, rejected, or all traffic) going to and from an Elastic Network Interface (ENI), a Virtual Private Cloud (VPC), or a Virtual Switch (VSwitch). The logging data is stored in the Simple Log Service (SLS), where you can view and analyze IP traffic information.
Integrating Flow Log with Simple Log Service (SLS) in Alibaba Cloud lets you analyze your network traffic. SLS stores the flow data captured by Flow Log, which includes details such as source, destination, and bandwidth usage. This allows you to monitor network activity, troubleshoot issues, and identify security threats, all within a centralized logging service. This enhances overall network security and ensures regulatory compliance.
Audit
To determine if the Flow Log feature is enabled and properly configured, perform the following operations:
Remediation / Resolution
To ensure that the Flow Log feature is enabled and properly configured within your Alibaba Cloud account, perform the following operations:
References
- Alibaba Cloud Documentation
- Overview of flow logs
- Billing of flow logs
- Create and manage a flow log
- Alibaba Cloud CLI Documentation
- DescribeFlowLogs
- CreateFlowLog
- SLS CLI Documentation
- get_logstore
- create_project
- create_logstore