1 Answer
- Newest
- Most votes
- Most comments
1
Hello,
Yes, it is possible. You would need a NAT gateway for the internet egress.
This pattern is described in this link along with routing:
https://docs.aws.amazon.com/vpc/latest/tgw/transit-gateway-nat-igw.html
Please note that from TGW perspective, there are only attachments and in this case it does not matter if the spoke attachment is a VPC or a VPN, so you can disregard the fact that the example includes only VPCs.
The flow would look like below, not detail but would give you an idea:
On-premises network <== VPN ==> TGW --> VPC (NAT gateway & IGW) --> Internet
Hope this helps.
Relevant content
- Accepted Answerasked 3 years ago
- asked 9 months ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated a year ago