Creating AWS VPC Flow Logs and Generating Traffic

Lab Details

  1. This lab walks you through the steps to Create an AWS VPC and VPC Flow Logs..

  2. Duration: 1 hour. 

  3. AWS Region: US East (N. Virginia) us-east-1


Amazon Virtual Private Cloud

  • Amazon Virtual Private Cloud (Amazon VPC) lets you provision a logically-isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. You have complete control over your virtual networking environment, including the selection of your own IP address range, creation of subnets, and configuration of route tables and network gateways.

  • You can use both IPv4 and IPv6 in your VPC for secure and easy access to resources and applications.

  • You can easily customize the network configuration of your Amazon VPC. For example, you can create a public-facing subnet for your web servers that have access to the internet.

  • You can also place your backend systems, such as databases or application servers, in a private-facing subnet with no internet access. You can use multiple layers of security, including security groups and network access control lists, to help control access to Amazon EC2 instances in each subnet.

Architecture Diagram

Task Details

  1. Launching Lab Environment.

  2. Create CloudWatch Logs.

  3. Create an IAM Policy.

  4. Create an IAM Role.

  5. Create a VPC.

  6. Create an Internet Gateway.

  7. Create a Subnet.

  8. Create VPC Flow Logs.

  9. Create an EC2 Instance.

  10. Generating Traffic

  11. Viewing log events in Cloudwatch Log groups.

  12. Validation of the lab.


  1. Download putty and puttygen from this link :