terraform-aws-nat-instance icon indicating copy to clipboard operation
terraform-aws-nat-instance copied to clipboard

Fix NAT not working 2022-07

Open JulianCBC opened this issue 3 years ago • 0 comments

At some point in the past, reverse path protection was enabled for Amazon Linux 2 AMIs, which causes the host to silently drop all NAT traffic.

My investigation of this issue also uncovered the requirement to disable source/destination checks on the ENIs attached to the NAT box.

This pull request adds patches to brute-force disable reverse path protection and brute-force enable source/destination checks.

This is probably overkill to actually fix the issues, but it works.

JulianCBC avatar Jul 26 '22 01:07 JulianCBC