VPC Flow Logs

Audit and debugging.

Overview

VPC Flow Logs capture per-flow network metadata for audit and debugging. Blanket logging produces volume without value; the discipline is targeted capture and structured query against a known schema.

The approach

The practical approach is S3 for long-term retention, Athena for investigation, custom format for cost control, per-VPC enablement, documented queries. The team’s discipline produces useful flow logs without the bill running away.

Why this compounds

Flow log discipline compounds across investigations. Each captured query grows the team’s networking expertise; the next investigation starts from precedent rather than first principles.

Flow log discipline is an operational discipline that pays off across years. Nova AI Ops integrates with networking telemetry, surfaces patterns, and supports the team’s investigation discipline.