AWS Network Firewall

이 페이지는 아직 영어로 제공되지 않습니다. 번역 작업 중입니다.
현재 번역 프로젝트에 대한 질문이나 피드백이 있으신 경우 언제든지 연락주시기 바랍니다.

Overview

AWS Network Firewall is a stateful, service that allows customers to filter traffic at the perimeter of their VPC.

Enable this integration to see all of your AWS Network Firewall metrics in Datadog.

Setup

Installation

If you haven’t already, set up the Amazon Web Services integration first.

Metric collection

  1. In the AWS integration page, ensure that Network Firewall is enabled under the Metric Collection tab.

  2. Install the Datadog - AWS Network Firewall integration.

Log collection

Enable logging

Configure AWS Network Firewall to send logs either to a S3 bucket or to CloudWatch.

Note: If you log to a S3 bucket, make sure that amazon_network_firewall is set as Target prefix.

Send logs to Datadog

  1. If you haven’t already, set up the Datadog Forwarder Lambda function.

  2. Once the Lambda function is installed, manually add a trigger on the S3 bucket or CloudWatch log group that contains your AWS Network Firewall logs in the AWS console:

Data Collected

Metrics

See metric-spec.yaml for a list of metrics provided by this integration.

Each of the metrics retrieved from AWS are assigned the same tags that appear in the AWS console, including but not limited to host name, security-groups, and more.

Events

The AWS Network Firewall integration does not include any events.

Service Checks

The AWS Network Firewall integration does not include any service checks.

Troubleshooting

Need help? Contact Datadog support.