AWS Certified Advanced Networking - Specialty (#67)

All IP addresses within a VPC are fully utilized with application servers across two Availability Zones. The application servers need to send frequent UDP probes to a single central authentication server on the Internet to confirm that is running up-to-date packages. The network is designed for application servers to use a single NAT gateway for internal access. Testing reveals that a few of the servers are unable to communicate with the authentication server.

The NAT gateway does not support UDP traffic.
The authentication server is not accepting traffic.
The NAT gateway cannot allocate more ports.
The NAT gateway is launched in a private subnet.