Skip to main content

Networking / VPC / Controls / DEV

Enforce VPC Flow Logs on VPCs

CCC.VPC.CN04 · Observability

Ensure VPCs are configured with flow logs enabled to capture traffic information.

Related Capabilities

IDTitleDescription
CCC.VPC.CP16Flow LogsAbility to capture information about the IP traffic going through the VPC.

Related Threats

IDTitleDescription
CCC.VPC.TH04Lack of Network Visibility due to Disabled VPC Flow LogsVPC subnets with disabled flow logs lack critical network traffic visibility, which can lead to undetected unauthorized access, data exfiltration, and network misconfigurations. This lack of visibility increases the risk of undetected security incidents.

Assessment Requirements

IDTextApplicability
CCC.VPC.CN04.AR01When any network traffic goes to or from an interface in the VPC, the service MUST capture and log all relevant information.tlp-amber, tlp-red

Guideline Mappings

FrameworkIDRemarks
NIST-CSFPR.PT-1
ISO_270012013 A.12.4.1
NIST_800_53AU-2
CCMIVS-06