QuestionQ5

Networking and Content Delivery

A CloudOps engineer created a VPC containing a public subnet and a private subnet. Amazon EC2 instances launched in the private subnet cannot reach the internet. The default network ACL is active for every subnet in the VPC, and every security group permits all outbound traffic.

Which solution will give the EC2 instances in the private subnet internet access?

Explanation

A NAT gateway placed in a public subnet provides outbound internet connectivity for instances that have only private IP addresses. The private subnet’s route table must direct internet-bound traffic to that NAT gateway; the NAT gateway uses the public subnet’s route to the internet gateway.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!