Hands-On Azure Labs: Building Redundant Cloud Solutions
Lab 4: Deploy NAT-West Gateway
Lab Overview
In this lab, you will deploy a NAT gateway (NAT-West) to provide secure, scalable outbound internet connectivity for the resources in your West US subnet (Subnet-West). A NAT gateway centralizes and secures outbound traffic, eliminating the need for each virtual machine to have its own public IP address. By setting up NAT-West, you reduce the potential attack surface while providing a consistent outbound IP for your West US workloads.
Learning Objectives
By completing this lab, you will be able to:
- Deploy a NAT gateway and associate it with a specific subnet (Subnet-West).
- Understand how NAT gateways manage outbound traffic and enhance security.
- Configure a public IP resource for consistent egress from the West US region.
- Lay the foundation for best practices in securing outbound connectivity without exposing internal resources.
Exam Relevance
These NAT configuration skills map directly to objectives in:
- AZ-104 (Azure Administrator): Demonstrates expertise in configuring Azure networking components (e.g., NAT gateways) and ensuring secure outbound traffic.
- AZ-305 (Azure Solutions Architect): Reinforces the ability to design secure egress strategies for production workloads.
Before you launch the lab simulation below, be sure to watch the Deploy NAT-West Gateway video in Hands-On Azure Labs: Applying Practical Real-World Skills for details needed to complete the lab.

UH-OH! To access this lab, you must have an active Building Redundant Cloud Solutions plan enabled for your labITpro account.
If you've arrived from a Udemy course, please review the "Course Setup" lecture for lab access instructions.