Amazon Virtual Private Cloud User Guide
NAT Instance Basics ................................................................................................... 106
Setting up the NAT Instance ......................................................................................... 106
Creating the NATSG Security Group .............................................................................. 108
Disabling Source/Destination Checks ............................................................................ 109
Updating the Main Route Table ..................................................................................... 110
Testing Your NAT Instance Configuration ........................................................................ 110
DHCP Options Sets ............................................................................................................ 112
Overview of DHCP Options Sets ................................................................................... 112
Amazon DNS Server .................................................................................................. 113
Changing DHCP Options ............................................................................................. 113
Working with DHCP Options Sets ................................................................................. 113
API and Command Overview ....................................................................................... 115
DNS ................................................................................................................................ 116
Viewing DNS Hostnames for Your EC2 Instance .............................................................. 116
Updating DNS Support for Your VPC ............................................................................. 117
Adding a Hardware Virtual Private Gateway to Your VPC ................................................................... 119
Components of Your VPN .................................................................................................... 119
Virtual Private Gateway ............................................................................................... 120
Customer Gateway ..................................................................................................... 120
VPN Configuration Examples ............................................................................................... 120
Single VPN Connection ............................................................................................... 120
Multiple VPN connections ............................................................................................ 121
VPN Routing Options .......................................................................................................... 121
What You Need for a VPN Connection ................................................................................... 121
Configuring Two VPN Tunnels for Your VPN Connection ............................................................ 122
Using Redundant VPN Connections to Provide Failover ............................................................ 123
Setting Up the VPN Connection ............................................................................................ 124
Step 1: Create a Customer Gateway .............................................................................. 124
Step 2: Create a Virtual Private Gateway ........................................................................ 125
Step 3: Update Your Route Tables and Enable Route Propagation ....................................... 125
Step 4: Update Your Security Group to Enable Inbound SSH, RDP and ICMP Access ............ 126
Step 5: Create a VPN Connection and Configure the Customer Gateway ............................. 126
Step 6: Launch an Instance Into Your Subnet .................................................................. 126
Testing the End-to-End Connectivity of Your Instance ............................................................... 127
Replacing Compromised Credentials ..................................................................................... 128
Deleting a VPN Connection .................................................................................................. 128
Providing Secure Communication Between Sites Using VPN CloudHub ............................................... 130
Dedicated Instances ................................................................................................................... 133
Dedicated Instance Basics ................................................................................................... 133
Dedicated Instances Limitations ................................................................................... 134
Amazon EBS with Dedicated Instances .......................................................................... 134
Reserved Instances with Dedicated Tenancy ................................................................... 134
Auto Scaling of Dedicated Instances .............................................................................. 134
Pricing for Dedicated Instances .................................................................................... 134
Working with Dedicated Instances ......................................................................................... 134
Creating a VPC with an Instance Tenancy of Dedicated .................................................... 135
Launching Dedicated Instances into a VPC ..................................................................... 135
Displaying Tenancy Information .................................................................................... 135
API and Command Overview ............................................................................................... 136
VPC Peering ............................................................................................................................. 138
VPC Peering Basics ........................................................................................................... 138
VPC Peering Connection Lifecycle ................................................................................ 139
VPC Peering Limitations .............................................................................................. 140
Working with VPC Peering Connections ................................................................................. 140
Creating a VPC Peering Connection .............................................................................. 141
Accepting a VPC Peering Connection ............................................................................ 142
Rejecting a VPC Peering Connection ............................................................................. 143
Updating Route Tables for Your VPC Peering Connection .................................................. 143
API Version 2014-06-15
v