This sample, generated
The block below is 15 lines of AWS VPC Flow logs, produced by the real generator at seed 42 — deterministic, so this exact output regenerates anywhere. The live tool re-runs the identical engine on whatever source, seed, line count and anomalies you pick.
no anomalies injected — raise a slider to seed detectable patterns
Generated AWS VPC Flow logs
Real on-the-wire AWS VPC Flow logs — no real users, IPs, or secrets. Copy it into a fixture, feed it to a parser, or seed a SIEM demo.
With an anomaly injected: Port scan
The same source, regenerated with a Port scan injected at 30% intensity. 7 line sare tagged and highlighted below — One source IP hitting many sequential destination ports — reconnaissance sweeping for open services. It is a documented, detectable pattern your SIEM rules should fire on — build the test data, then prove your detection works.
FAQ
- Are these real VPC Flow logs?
- No — the output is synthetic. It reproduces the AWS VPC Flow v2 column layout exactly (and the AWS field names in JSONL mode), but every account, interface, address and byte count is fabricated. Safe for fixtures, demos and parser tests.
- Can I inject anomalies?
- Yes. A port scan fits flow logs perfectly: the slider appends a sweep of one source across many sequential destination ports with tiny byte counts, in faithful CSV grammar. Injected lines are highlighted and badged so you can verify your recon detection fires.
- Is the output deterministic?
- Yes — fully seeded. The same seed and config always produce byte-identical VPC Flow lines, so a committed seed regenerates the identical log on any machine or in CI.
Generate other log sources
- nginx access logs
- Apache access logs
- sshd / OpenSSH auth logs
- RFC 3164 (BSD) syslog
- RFC 5424 syslog
- FortiGate firewall logs
- Cisco ASA firewall logs
- Windows Security Event logs
- JSON application logs
- Docker container logs
- Kubernetes (klog) logs
Open the LogAnvil generator to tune the seed, line count, EPS, format and anomaly sliders — or build a parser with LogForge for a log you already have.
Generate your own AWS VPC Flow logs
Pick the seed, line count and EPS, inject the anomalies your rules should catch, and copy or download the result. Free, no account, nothing uploaded — generation runs entirely in your browser.
Open the LogAnvil generator →