NAT Gateway
A NAT Gateway allows resources in a private subnet to initiate connections to destinations outside the VPC without accepting unsolicited inbound connections from the internet.
Why it matters
Private workloads may need software updates or outbound API calls while remaining unreachable from the public internet.
How it works
Create NAT Gateway in a suitable public subnet → private route table sends 0.0.0.0/0 to NAT → outbound traffic exits through NAT.
Core Concept
A NAT gateway is commonly placed in a public subnet.
Private subnet route tables can send internet-bound traffic to the NAT gateway.
What you should remember
Key idea
A NAT gateway is commonly placed in a public subnet.
Key idea
Private subnet route tables can send internet-bound traffic to the NAT gateway.
Real-world example
Use a realistic cloud workload and focus on the responsibility of this AWS service.
Choose the service that matches the responsibility instead of forcing every workload into one resource.
Quick Test
1 QuestionWhat is the main idea of this AWS lesson?