Home icon

Simplify VPC Flow Logs with EC2 resource tags and next-hop metadata

Networking & Content Delivery Blog



This article introduces Version 11 of Amazon VPC Flow Logs, which adds EC2 resource tags and next-hop metadata capabilities for simplified network traffic analysis.

  • Embed EC2 instance, network interface, and Auto Scaling group tags directly in flow log records
  • Capture next-hop interface metadata including ID, subnet, AZ, VPC, and interface type
  • Eliminate need for custom enrichment pipelines and manual resource correlation
  • Filter and aggregate traffic by application, environment, project, or cost center tags
  • Trace traffic paths through NAT gateways, Network Load Balancers, and Transit Gateways
  • Requires IAM permissions for ec2:DescribeTags and autoscaling:DescribeTags
  • Configure up to two tag keys per resource type via TagFieldSpecifications

Version 11 simplifies network monitoring and security investigations by providing rich resource context and traffic path visibility directly within flow log records.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Jun 11
2026
Amazon Virtual Private Cloud (VPC) Flow Logs introduces additional metadata
May 14
2024
Introducing VPC Flow Logs for Elastic Container Services
Jun 30
2026
Amazon CloudWatch Logs enriches log events with AWS resource tags
Aug 4
2025
Amazon CloudWatch introduces organization-wide VPC flow logs enablement

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.