Description
A disabled VPC flow log does not record network traffic information for its selected target. Flow logs provide traffic metadata, not packet contents.
Potential impact
Investigations of unwanted connections or network access problems may lack necessary records.
Remediation
Set enable = true on tencentcloud_vpc_flow_log_config. Check the target, traffic selection, and CLS destination, and verify that logs are collected.
Examples
The examples enable an existing flow log. Configuration of the referenced flow log and destination is omitted.
Before
hcl
resource "tencentcloud_vpc_flow_log_config" "example" {
flow_log_id = tencentcloud_vpc_flow_log.example.id
enable = false
}
After
hcl
resource "tencentcloud_vpc_flow_log_config" "example" {
flow_log_id = tencentcloud_vpc_flow_log.example.id
enable = true
}