Low
EC2
Regional
Amazon VPC flow logs should be tagged
Description
Flags VPC flow log that have no user-defined tags. Tags help associate VPC flow logs with their owning team and use case; untagged VPC flow logs are operationally opaque.
Remediation
Apply at least one user-defined tag to every VPC flow log.
Steps
- Open the Amazon EC2 console and select the affected VPC flow log.
- Open the Tags tab and add at least one tag with a non-aws: prefixed key.
- Save the changes.