heroui logo

AWS VPC Healthy Log Status

Panther Rules

View Source
Summary
The AWS VPC Healthy Log Status rule is designed to monitor VPC Flow Logs to ensure that data is being captured without loss. Specifically, this rule checks for the log status `SKIP-DATA`, which indicates potential data loss due to internal server errors or capacity constraints. If data is recorded with the status `SKIP-DATA`, it triggers an alert as it may signify a significant issue that needs immediate attention. The rule is categorized as a low severity alert, thus it allows the necessary time to investigate without immediate panic. The reference provided links to the official AWS documentation for deeper insights into VPC Flow Logs. To mitigate issues, operators should examine their VPC flow log configurations and adjust settings to avoid encountering capacity constraints. This proactive monitoring aims to maintain healthy logging status to ensure data integrity and availability in network traffic analysis.
Categories
  • Cloud
  • AWS
  • Infrastructure
Data Sources
  • Volume
  • Network Traffic
  • Logon Session
Created: 2022-09-02