Tencent Cloud VPC flow logging is disabled

Collect the network flow records needed for investigation.

Description

A disabled VPC flow log does not record network traffic information for its selected target. Flow logs provide traffic metadata, not packet contents.

Potential impact

Investigations of unwanted connections or network access problems may lack necessary records.

Remediation

Set enable = true on tencentcloud_vpc_flow_log_config. Check the target, traffic selection, and CLS destination, and verify that logs are collected.

Examples

The examples enable an existing flow log. Configuration of the referenced flow log and destination is omitted.

Before

hcl
resource "tencentcloud_vpc_flow_log_config" "example" {
  flow_log_id = tencentcloud_vpc_flow_log.example.id
  enable      = false
}

After

hcl
resource "tencentcloud_vpc_flow_log_config" "example" {
  flow_log_id = tencentcloud_vpc_flow_log.example.id
  enable      = true
}

References