VPC NAT Flashcards

1
Q

What is NAT?

A

NAT, or Network Address Translation, is a method used in networking to modify network address information in IP packet headers, while in transit across a traffic routing device, to map a public IP address to a private IP address and vice versa.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a NAT Gateway in AWS?

A

A NAT Gateway is a managed network address translation service provided by AWS to allow instances in a private subnet to connect to the internet or other AWS services, but prevent the internet from initiating a connection with those instances.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How does NAT work?

A

NAT works by translating the private IP addresses of devices on a local network to a public IP address before the data is sent over the internet. The NAT device then translates responses back from the public IP address to the corresponding private IP address for the device within the local network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why use a NAT Gateway?

A

A NAT Gateway is used to enable instances in a private subnet to access resources on the internet, while maintaining the private subnet’s security posture by not allowing incoming connections from the internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the difference between a NAT Gateway and a NAT instance?

A

A NAT Gateway is a fully managed service provided by AWS that is highly available, scalable, and not required to be patched or managed by the user. A NAT instance, however, is a self-managed EC2 instance configured to perform NAT. It requires manual setup, maintenance, and scaling.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How do you set up a NAT Gateway in AWS?

A

To set up a NAT Gateway in AWS, create the NAT Gateway in a public subnet, specify an Elastic IP address to associate with the NAT Gateway, and then update the route tables associated with one or more private subnets to point internet-bound traffic to the NAT Gateway.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the costs associated with a NAT Gateway?

A

The costs of using a NAT Gateway in AWS include an hourly charge for the NAT Gateway itself, data processing charges for each gigabyte processed by the NAT Gateway, and a charge for the Elastic IP address if the NAT Gateway is not actively being used.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Can a NAT Gateway send traffic to VPC peering connections, VPN connections, or AWS Direct Connect?

A

Yes, a NAT Gateway can send traffic to VPC peering connections, AWS VPN connections, and AWS Direct Connect connections, allowing instances in private subnets to communicate with resources in these networks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the benefits of using a NAT Gateway?

A

Benefits of using a NAT Gateway include simplicity and ease of management as a fully managed service, high availability and redundancy within the Availability Zone, and the ability to scale automatically up to 45 Gbps of bandwidth.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How do you monitor NAT Gateway usage?

A

You can monitor NAT Gateway usage by using Amazon CloudWatch to collect and track metrics such as ByteOutToDestination, ByteInFromSource, ActiveConnectionCount, and PacketDropCount among others, which provide insights into the operation and performance of your NAT Gateway.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly