What information is provided by the network summary of an AWS resource in Prisma Cloud?
9795
Created On 06/09/19 06:01 AM - Last Modified 02/18/21 23:03 PM
Question
Running a network RQL query will generate a network diagram with resources and traffic data information. For example:
Clicking a resource shows Network Summary on the right panel:
Environment
- Prisma Cloud Console
- AWS
Answer
The network summary shows the Security Group (or the Azure/GCP equivalent) that is attached to the resource. In the above image, the LPELB resource has the Security Group, sg-d3dc90ae attached to it. The traffic rules defined in the Security Group are captured in the Network Summary. The up arrow denotes Outbound traffic and down arrow denotes Inbound traffic as defined in the Security Group. See below images of the Security Group Inbound and Outbound rules.
If there are multiple security groups attached to a resource, all inbound and outbound traffic rules will be shown in the Network Summary.
Additional Information
The Network RQL result can also be seen by clicking on the Network Alert --> Resource Explorer