awslabs / landing-zone-accelerator-on-aws

Deploy a multi-account cloud foundation to support highly-regulated workloads and complex compliance requirements.
https://aws.amazon.com/solutions/implementations/landing-zone-accelerator-on-aws/
Apache License 2.0
555 stars 440 forks source link

VPC Flow Logs for Transit Gateway #357

Open frankscalzo opened 11 months ago

frankscalzo commented 11 months ago

Wondering if there is a way thats not clearly defined or if its n the works to enable Transit gateway Flow Logs

bo1984 commented 10 months ago

Hi Frank! This feature request currently sits in our backlog right now and we're evaluating its priority in our queue. I've added this issue to the backlog item to get more traction. I will keep this issue open to keep you up to date on when this feature has been implemented and released.

xp-versent commented 6 months ago

+1, we also find out that after the creation of TransitGateway in the main network account, the flow logs are not created by the lza.

richardkeit commented 3 months ago

Hello @bo1984 , Has there been any movement on the priority of this feature?

Thank you in advance

sj-versent commented 3 months ago

This functionality is essential for network routing diagnostics. Can this be prioritised? LZA already provisions a Kinesis stream so could be integrated with that? S3 & Cloudwatch would also be good within the local account hosting the TGW.