NAT Flashcards

1
Q

What is NAT?

A

Network Address Translation
A method pf remapping one IP address space into another.
They must run within a public subnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What service would you use if you have a private network and you need to help gain outbound access to the internet?

A

You would need to use NAT gateway to remap the Private IPs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What could you do if you had 2 networks which had conflicting network addresses?

A

Use NAT to make addresses more agreeable

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

T/F - Security groups can both allow and deny access.

A

False. They can only allow.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a NAT Instance?

A

NAT Instances are considered legacy.
There are individual EC2 instances that you must manage/patch/update.
These must exist in a public subnet.
source and destination checks must be disabled.
You must create a route out of a private subnet to the NAT instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a NAT Gateway

A

The NAT Gateway replaces the NAT Instance (preferred).

NAT Gateway is an AWS managed service which launches redundant instances within a selected AZ.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How many NAT Gateways can you have inside an AZ?

A

one (cannot span AZs)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How do NAT Gateways scale?

A

starts at 5 Gbps and can scale up to 45 Gbps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

T/F - NAT Gateways are automatically assigned a public IP address

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

T/F - Route Tables for the NAT Gateway must be updated

A

true

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

If resources in multiple AZs share a NAT Gateway, what happens if the internet goes down?

A

Those resources will loose internet access to resources unless you create a Gateway in each AZ and configure route tables accordingly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly