Traffic mirror targets
A traffic mirror target is the destination for mirrored traffic. For more information, see Traffic mirror target concepts.
After you create a target, assign it to a traffic mirror session. For more information, see Create a traffic mirror session.
You must configure a security group for the traffic mirror target that allows VXLAN traffic (UDP port 4789) from the traffic mirror source.
You can share a traffic mirror target across accounts. For more information, see Cross-account targets.
Tasks
Create a traffic mirror target
To create a traffic mirror target using the console
-
Open the Amazon VPC console at https://console.amazonaws.cn/vpc/
. -
In the Region selector, choose the Amazon Region that you used when you created the mirror target.
-
On the navigation pane, choose Traffic Mirroring, Mirror targets.
-
Choose Create traffic mirror target.
-
(Optional) For Name tag, enter a name for the traffic mirror target.
-
(Optional) For Description, enter a description for the traffic mirror target.
-
For Target type, choose the type of the traffic mirror target:
Network interface
Network Load Balancer
Gateway Load Balancer endpoint
-
For Target, choose the traffic mirror target. We display targets based on the target type that you selected in the previous step.
-
(Optional) For each tag to add, choose Add new tag and enter the tag key and tag value.
-
Choose Create.
To create a traffic mirror target using the Amazon CLI
Use the create-traffic-mirror-target command.
View traffic mirror target details
To view your traffic mirror targets using the console
-
Open the Amazon VPC console at https://console.amazonaws.cn/vpc/
. -
On the navigation pane, choose Traffic Mirroring, Mirror targets.
-
Select the ID of the traffic mirror target to open its details page.
To view your traffic mirror targets using the Amazon CLI
Use the describe-traffic-mirror-targets command.
Modify traffic mirror target tags
To modify your traffic mirror target tags using the console
-
Open the Amazon VPC console at https://console.amazonaws.cn/vpc/
. -
On the navigation pane, choose Traffic Mirroring, Mirror targets.
-
Select the ID of the traffic mirror target to open its details page.
-
On the Tags tab, choose Manage tags.
-
(Optional) For each tag to add, choose Add new tag and enter the tag key and tag value. For each tag to remove, choose Remove.
-
Choose Save.
To modify your traffic mirror target tags using the Amazon CLI
Use the create-tags command to add a tag. Use the delete-tags command to remove a tag.
Delete a traffic mirror target
Before you can delete a traffic mirror target, you must remove it from any traffic mirror sessions.
To delete your traffic mirror target using the console
-
Open the Amazon VPC console at https://console.amazonaws.cn/vpc/
. -
On the navigation pane, choose Traffic Mirroring, Mirror targets.
-
Select the traffic mirror target.
-
Choose Delete.
-
When prompted for confirmation, enter
delete
, and then choose Delete.
To delete a traffic mirror target using the Amazon CLI
Use the delete-traffic-mirror-target command.