Enable AWS VPC Flow Log
Go to AWS Console and navigate to VPC. Select the VPC and click on Flow Logs.
data:image/s3,"s3://crabby-images/66e5e/66e5e0c8c0bc63bf3545e20e72172eee2195d325" alt=""
We can use the toggle buttons on the right to display different size screens. Click on 'Create flow log.'
data:image/s3,"s3://crabby-images/d46e7/d46e71dec48a47dd5d62db8a0c49c9a1ed269b68" alt=""
It will take us to Flow Log window. Select the filter 'All' in the dropdown.
data:image/s3,"s3://crabby-images/b86da/b86da39de24d56d96f59f3053d64b5022bdce7eb" alt=""
For Max Aggregation Interval:
data:image/s3,"s3://crabby-images/050d0/050d0b8e40444b4f8263e0ec39e77235718cc344" alt=""
Set it to 1 minute. So, each flow record would be aggregated for a 1-minute time interval, like time out setting in router NetFlow. But the records are written to S3 approximately every 5 minutes. And on interfaces attached to Nitro based EC2 instances, the maximum is always 1 minute even if a higher value is selected. For the Destination select 'Send to an S3 Bucket.' For bucket arn, open s3 in another tab and copy the ARN as below.
data:image/s3,"s3://crabby-images/b2ebe/b2ebeccb9ae4c559b4c585ae00fb21bfac782305" alt=""
Paste the copied ARN value in the text box 'S3 bucket ARN*.'
data:image/s3,"s3://crabby-images/f5afa/f5afab2e5fdecbb3b659a685a3ee8d036aa2d92e" alt=""
On clicking 'Create,' AWS Flow logs will be sent to S3 bucket. We will now configure the LiveNX-CM to read from S3 bucket.