1回答
- 新しい順
- 投票が多い順
- コメントが多い順
0
No, GuardDuty doesn't directly inspect AWS Firewall logs, enabling VPC flow logs in the inspection VPC can provide comprehensive monitoring without duplicating costs across all spoke VPCs. However, GuardDuty primarily analyzes CloudTrail logs, DNS logs, and VPC flow logs. In a hub-and-spoke topology, enabling VPC flow logs in the inspection VPC can provide comprehensive monitoring without duplicating costs across all spoke VPCs.
Refrence:
https://docs.aws.amazon.com/guardduty/latest/ug/guardduty_integrations.html
回答済み 2ヶ月前
関連するコンテンツ
- AWS公式更新しました 2年前