Briefing Amazon Knowledge

What additional step is required to allow access from the private instances?

You manually launch a NAT AMI in a public subnet. The network is properly configured. Security groups and
network access control lists are property configured. Instances in a private subnet can access the NAT. The

NAT can access the Internet. However, private instances cannot access the Internet. What additional step is
required to allow access from the private instances?

A.
Enable Source/Destination Check on the private Instances.

B.
Enable Source/Destination Check on the NAT instance.

C.
Disable Source/Destination Check on the private instances.

D.
Disable Source/Destination Check on the NAT instance.