VPC with NAT to internet on AWS

… and other TLAs. Anyways, as far as I remember OpenStack does not need this, so I thought I document it here. I at least was surprised. Situation: You want a private network sement in the cloud (in my case an Amazon VPC), and you don’t want all hosts to be accessible from the internet. […]