Quickstart: AWS
How Fusion integrates to AWS
Netography Fusion has the following integration points to AWS:
Fusion ingests VPC flow logs from AWS.
Fusion ingests asset context from AWS for context enrichment.
Fusion ingests Route 53 DNS resolver logs from AWS.
Video Guides
See the AWS π₯ Video Guides to watch videos of the setup steps.
Steps to integrate to AWS
Each page in these instructions will walk you through the steps to integrate AWS with Netography Fusion using the AWS Console:
Create an S3 bucket
Create an SNS topic
Create an SQS queue - using the provided JSON to create an Advanced Access Policy
Subscribe the SQS queue to the SNS topic
Create custom IAM permissions using the provided JSON
Create an IAM user
Create an Access Key
Create an event notification for the SQS queue
Enable VPC flow logs via CloudShell using the provided CLI command
Add AWS VPC flow logs as a traffic source in Netography Fusion
Add permissions for context enrichment integration
Enable context integration
Enable DNS query logging in AWS
Add Route53 DNS query logs as a traffic source in Netography Fusion
Additional AWS setup options
The AWS quick start guide is for manually configuring your first AWS account to integrate into Fusion using the AWS console and CloudShell. If you have multiple accounts or want to explore other setup options, you can also integrate to AWS using CloudFormation, with Kinesis instead of S3, using AWS Transit Gateway flow logs instead of VPC flow logs.
Last updated