Question
In AWS, for VPC, if you want your private sunbet instances to talk to internet (e.g. for your DB server to download software) without having the instance open to inbound internet initiated calls, you use NAT, which has two variants. NAT [...] is an EC2 that you manage yourself (it is made from a special AMI) while NAT [...] are managed by AWS and more highly available/with better bandwith constraints. <- two different answers for each occulsion