Overview

Titled Activity Log: what has happened to this VPC and who did it.
Navigation: Networking → VPC → click a VPC → Events.

Columns

Rows group into collapsible month sections. Filter by All Levels, Info, Warning or Error. Export writes a CSV. Retention is 90 days.

The pagination limit

This section loads one page only — there’s no pagination control, and no way to reach older entries from here.That has a consequence people miss: Export covers just the loaded page, not the VPC’s full history. A CSV from this screen is a partial extract, however complete it looks.For anything that needs real history — an incident timeline, an audit response — use Events with a date range and the VPC as the filter.

What to look for

Filter to Error first when something has stopped working. VPC-level errors are usually the actionable ones: a network that failed to restart, a gateway that failed to provision, a tunnel that failed to establish.Then filter to Warning, which is where configuration changes with side effects tend to land — a Source NAT change being the obvious one.
Events record the operation, not the values. “Network updated” won’t tell you what it was before. If you need before-and-after, Audit Log is the screen that keeps it.

Events

Full history with date ranges and pagination.

Audit Log

Who changed what, with values.

Jobs

Long-running operations still in flight.

Comments

The why, which events never capture.