
Amazon Web Services (AWS)

AWS VPC Flow Logs
AWS VPC Flow Logs capture information about IP traffic flowing to and from network interfaces within a Virtual Private Cloud (VPC). They record source and destination IP addresses, ports, protocols, packet counts, byte counts, and whether traffic was accepted or rejected by security groups and network ACLs.
Flow logs are critical for network security monitoring, enabling detection of lateral movement, data exfiltration, port scanning, and communication with known malicious IP addresses. They support troubleshooting connectivity issues, validating security group rules, and meeting compliance requirements for network traffic logging in cloud environments.
Sophos Products
Sophos MDR/XDR Integrations
Partner Technology
Cloud
Solution Category
Sophos MDR/XDR Integrations