The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Utilizing the AWS Virtual Private Cloud with Traffic Mirroring

Prev Next

Traffic Mirroring is an Amazon VPC feature that you can use to copy network traffic from an elastic network interface of type interface.

The following are the key components of Traffic Mirroring:

  • Source - Includes a network interface to monitor

  • Target - It is the destination for a mirrored traffic

  • Filter - Used to define a set of rules to mirror the traffic

  • Session - Used to establish a relation between source, filter, and target

How does the AWS Traffic Mirroring work?

A traffic mirror session establishes a relationship between a traffic mirror source and a target. Traffic mirror sessions are evaluated based on the ascending session number you define while creating the session.

Basic Configuration of AWS GWLB with Traffic Mirroring
Basic Configuration of AWS GWLB with Traffic Mirroring


Create a Traffic Mirroring Target

  1. Log in to the AWS console, and navigate to Services → VPC.

  2. In the Region selector, choose the same AWS Region as your VPCs.

  3. In the navigation pane, under Traffic Mirroring, choose Mirror targets.

  4. Now, select Create traffic mirror target.

    Create traffic mirror target
    Create traffic mirror target


  5. The Create traffic mirror target page is displayed. In the Target settings section provide the following details:

    1. [Optional] Name tag - Name of the traffic mirror session

    2. [Optional] Description - Description for the traffic mirror session

    Target settings section
    Target settings section


  6. In the Choose target section provide the following details:

    1. Target type - Select the Gateway Load Balancer Endpoint as the target type from the drop-down

    2. Target - Select the target destination

    Choose target section
    Choose target section


  7. [Optional] In the Tags section, provide a tag to be associated with the resource.

    Tags section
    Tags section


  8. Next, click Create.

    CreateTarget.png

    For more information, see Traffic mirror targets.

Create a Traffic Mirroring Filter

  1. Log in to the AWS console, and navigate to Services → VPC.

  2. In the Region selector, choose the same AWS Region as your VPCs.

  3. In the navigation pane, under Traffic Mirroring, choose Mirror filters.

  4. Now, select Create traffic mirror filter.

    Create traffic mirror filter
    Create traffic mirror filter


  5. The Create traffic mirror filter page is displayed. In the Filter settings section provide the following details:

    1. [Optional] Name tag - Name of the traffic mirror session

    2. [Optional] Description - Description for the traffic mirror session

    Filter settings section
    Filter settings section


  6. [Optional] Configure the required Inbound and Outbound rules.

  7. [Optional] In the Tags section, provide a tag to be associated with the resource.

  8. Next, click Create.

    Filters_Rules.png

    For more information, see Traffic mirror filters.

Create a Traffic Mirroring Session

  1. Log in to the AWS console, and navigate to Services → VPC.

  2. In the Region selector, choose the same AWS Region as your VPCs.

  3. In the navigation pane, under Traffic Mirroring, choose Mirror sessions.

  4. Now, select Create traffic mirror session.

    Create a traffic mirror session
    Create a traffic mirror session


  5. The Create traffic mirror session page is displayed. In the Session settings section provide the following details:

    1. [Optional] Name tag - Name of the traffic mirror session

    2. [Optional] Description - Description for the traffic mirror session

    3. Mirror source - Select the required network interface for the mirror source

    4. Mirror target - You can either choose an existing traffic mirror target from the drop-down or choose Create target. For more information, see Create a Traffic Mirroring Target.

    Session settings section
    Session settings section


  6. Go to Additional settings and provide the following details:

    1. Session number - Provide a valid session number

    2. Filter - You can either choose an existing traffic mirror filter from the drop-down or choose Create filter. For more information, see Create a Traffic Mirroring Filter.

    Additional settings section
    Additional settings section


  7. [Optional] In the Tags section, provide a tag to be associated with the resource.

    Tags section
    Tags section


  8. Next, click Create.

    SessionCreate.png

    For more information, see Traffic mirror sessions.