Do we need NAT gateway/instance in public subnet when we want to distribute traffic from ELB to private...












0














I have configured lots of time, when my instance is in public subnet, I can distribute ELB traffic to them but instances in private subnet, it goes out of service. I had configure perfect SG between ELB to private instances and for ELB. Also added public subnet in ELB as same AZ where my private instances existing. I have done everything as per below URLs.



Amazon ELB for EC2 instances in private subnet in VPC



https://aws.amazon.com/premiumsupport/knowledge-center/public-load-balancer-private-ec2/



As per first URLs, we don't require NAT in public subnet if we don't require to access any other service from private instances, "havak5" and "been Whaley" also commented afor same, still some websites tell that in this scenario, we need NAT gateway or instance in public subset for return traffic.
http://thebluenode.com/exposing-private-ec2-instances-behind-public-elastic-load-balancer-elb-aws



I had tried as per AWS URLs mention above but not work. So can any one tell me that really how this scenario work?










share|improve this question



























    0














    I have configured lots of time, when my instance is in public subnet, I can distribute ELB traffic to them but instances in private subnet, it goes out of service. I had configure perfect SG between ELB to private instances and for ELB. Also added public subnet in ELB as same AZ where my private instances existing. I have done everything as per below URLs.



    Amazon ELB for EC2 instances in private subnet in VPC



    https://aws.amazon.com/premiumsupport/knowledge-center/public-load-balancer-private-ec2/



    As per first URLs, we don't require NAT in public subnet if we don't require to access any other service from private instances, "havak5" and "been Whaley" also commented afor same, still some websites tell that in this scenario, we need NAT gateway or instance in public subset for return traffic.
    http://thebluenode.com/exposing-private-ec2-instances-behind-public-elastic-load-balancer-elb-aws



    I had tried as per AWS URLs mention above but not work. So can any one tell me that really how this scenario work?










    share|improve this question

























      0












      0








      0







      I have configured lots of time, when my instance is in public subnet, I can distribute ELB traffic to them but instances in private subnet, it goes out of service. I had configure perfect SG between ELB to private instances and for ELB. Also added public subnet in ELB as same AZ where my private instances existing. I have done everything as per below URLs.



      Amazon ELB for EC2 instances in private subnet in VPC



      https://aws.amazon.com/premiumsupport/knowledge-center/public-load-balancer-private-ec2/



      As per first URLs, we don't require NAT in public subnet if we don't require to access any other service from private instances, "havak5" and "been Whaley" also commented afor same, still some websites tell that in this scenario, we need NAT gateway or instance in public subset for return traffic.
      http://thebluenode.com/exposing-private-ec2-instances-behind-public-elastic-load-balancer-elb-aws



      I had tried as per AWS URLs mention above but not work. So can any one tell me that really how this scenario work?










      share|improve this question













      I have configured lots of time, when my instance is in public subnet, I can distribute ELB traffic to them but instances in private subnet, it goes out of service. I had configure perfect SG between ELB to private instances and for ELB. Also added public subnet in ELB as same AZ where my private instances existing. I have done everything as per below URLs.



      Amazon ELB for EC2 instances in private subnet in VPC



      https://aws.amazon.com/premiumsupport/knowledge-center/public-load-balancer-private-ec2/



      As per first URLs, we don't require NAT in public subnet if we don't require to access any other service from private instances, "havak5" and "been Whaley" also commented afor same, still some websites tell that in this scenario, we need NAT gateway or instance in public subset for return traffic.
      http://thebluenode.com/exposing-private-ec2-instances-behind-public-elastic-load-balancer-elb-aws



      I had tried as per AWS URLs mention above but not work. So can any one tell me that really how this scenario work?







      amazon-web-services






      share|improve this question













      share|improve this question











      share|improve this question




      share|improve this question










      asked Nov 12 '18 at 3:39









      hk'

      388




      388
























          1 Answer
          1






          active

          oldest

          votes


















          0














          You can refer the following link from aws to understand use of NAT:
          https://docs.aws.amazon.com/vpc/latest/userguide/VPC_NAT_Instance.html



          If we want to make any kind of interaction with instances placed in private subnet we should use NAT






          share|improve this answer





















            Your Answer






            StackExchange.ifUsing("editor", function () {
            StackExchange.using("externalEditor", function () {
            StackExchange.using("snippets", function () {
            StackExchange.snippets.init();
            });
            });
            }, "code-snippets");

            StackExchange.ready(function() {
            var channelOptions = {
            tags: "".split(" "),
            id: "1"
            };
            initTagRenderer("".split(" "), "".split(" "), channelOptions);

            StackExchange.using("externalEditor", function() {
            // Have to fire editor after snippets, if snippets enabled
            if (StackExchange.settings.snippets.snippetsEnabled) {
            StackExchange.using("snippets", function() {
            createEditor();
            });
            }
            else {
            createEditor();
            }
            });

            function createEditor() {
            StackExchange.prepareEditor({
            heartbeatType: 'answer',
            autoActivateHeartbeat: false,
            convertImagesToLinks: true,
            noModals: true,
            showLowRepImageUploadWarning: true,
            reputationToPostImages: 10,
            bindNavPrevention: true,
            postfix: "",
            imageUploader: {
            brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
            contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
            allowUrls: true
            },
            onDemand: true,
            discardSelector: ".discard-answer"
            ,immediatelyShowMarkdownHelp:true
            });


            }
            });














            draft saved

            draft discarded


















            StackExchange.ready(
            function () {
            StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53255666%2fdo-we-need-nat-gateway-instance-in-public-subnet-when-we-want-to-distribute-traf%23new-answer', 'question_page');
            }
            );

            Post as a guest















            Required, but never shown

























            1 Answer
            1






            active

            oldest

            votes








            1 Answer
            1






            active

            oldest

            votes









            active

            oldest

            votes






            active

            oldest

            votes









            0














            You can refer the following link from aws to understand use of NAT:
            https://docs.aws.amazon.com/vpc/latest/userguide/VPC_NAT_Instance.html



            If we want to make any kind of interaction with instances placed in private subnet we should use NAT






            share|improve this answer


























              0














              You can refer the following link from aws to understand use of NAT:
              https://docs.aws.amazon.com/vpc/latest/userguide/VPC_NAT_Instance.html



              If we want to make any kind of interaction with instances placed in private subnet we should use NAT






              share|improve this answer
























                0












                0








                0






                You can refer the following link from aws to understand use of NAT:
                https://docs.aws.amazon.com/vpc/latest/userguide/VPC_NAT_Instance.html



                If we want to make any kind of interaction with instances placed in private subnet we should use NAT






                share|improve this answer












                You can refer the following link from aws to understand use of NAT:
                https://docs.aws.amazon.com/vpc/latest/userguide/VPC_NAT_Instance.html



                If we want to make any kind of interaction with instances placed in private subnet we should use NAT







                share|improve this answer












                share|improve this answer



                share|improve this answer










                answered Nov 13 '18 at 6:35









                Dharmesh Purohit

                963




                963






























                    draft saved

                    draft discarded




















































                    Thanks for contributing an answer to Stack Overflow!


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid



                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.


                    To learn more, see our tips on writing great answers.





                    Some of your past answers have not been well-received, and you're in danger of being blocked from answering.


                    Please pay close attention to the following guidance:


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid



                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.


                    To learn more, see our tips on writing great answers.




                    draft saved


                    draft discarded














                    StackExchange.ready(
                    function () {
                    StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53255666%2fdo-we-need-nat-gateway-instance-in-public-subnet-when-we-want-to-distribute-traf%23new-answer', 'question_page');
                    }
                    );

                    Post as a guest















                    Required, but never shown





















































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown

































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown







                    Popular posts from this blog

                    Full-time equivalent

                    Bicuculline

                    さくらももこ