Traffic mirror targets - Amazon Virtual Private Cloud

Traffic mirror targets

A target is the destination for a traffic mirror session.

The traffic mirror target can be an elastic network interface, a Network Load Balancer, or a Gateway Load Balancer endpoint. After you create a target, assign it to a traffic mirror session. For more information, see Create a traffic mirror session.

You must configure a security group for the traffic mirror target that allows VXLAN traffic from the source to the target.

You can share a traffic mirror target across accounts. To share a traffic mirror target, create the target, and then share the target. For more information, see Share a traffic mirror target.

Create a traffic mirror target

Create a destination for mirrored traffic.

To create a traffic mirror target using the console
  1. Open the Amazon VPC console at https://console.aws.amazon.com/vpc/.

  2. In the Region selector, choose the AWS Region that you used when you created the VPCs.

  3. On the navigation pane, choose Traffic Mirroring, Mirror Targets.

  4. Choose Create traffic mirror target.

  5. (Optional) For Name tag, enter a name for the traffic mirror target.

  6. (Optional) For Description, enter a description for the traffic mirror target.

  7. For Target type, choose the traffic mirror target type.

  8. For Target, choose the traffic mirror target.

  9. (Optional) For each tag to add, choose Add new tag and enter the tag key and tag value.

  10. Choose Create.

To create a traffic mirror target using the AWS CLI

Use the create-traffic-mirror-target command.

View traffic mirror target details

View the traffic mirror target details.

To view your traffic mirror targets using the console
  1. Open the Amazon VPC console at https://console.aws.amazon.com/vpc/.

  2. On the navigation pane, choose Traffic Mirroring, Mirror Targets.

  3. Select the ID of the traffic mirror target to open its details page.

To view your traffic mirror targets using the AWS CLI

Use the describe-traffic-mirror-targets command.

Modify traffic mirror target tags

Add a tag to the traffic mirror target, or remove a tag from the traffic mirror target.

To modify your traffic mirror target tags using the console
  1. Open the Amazon VPC console at https://console.aws.amazon.com/vpc/.

  2. On the navigation pane, choose Traffic Mirroring, Mirror Targets.

  3. Select the ID of the traffic mirror target to open its details page.

  4. On the Tags tab, choose Manage tags.

  5. (Optional) For each tag to add, choose Add new tag and enter the tag key and tag value. For each tag to remove, choose Remove.

  6. Choose Save.

To modify your traffic mirror target tags using the AWS CLI

Use the create-tags command to add a tag. Use the delete-tags command to remove a tag.

Delete a traffic mirror target

Before you delete a traffic mirror target, pause all traffic mirror sessions that use the traffic mirror target.

To delete your traffic mirror target using the console
  1. Open the Amazon VPC console at https://console.aws.amazon.com/vpc/.

  2. On the navigation pane, choose Traffic Mirroring, Mirror Targets.

  3. Select the traffic mirror target.

  4. Choose Delete.

  5. When prompted for confirmation, enter delete, and then choose Delete.

To delete a traffic mirror target using the AWS CLI

Use the delete-traffic-mirror-target command.