https://medium.com/@rakeshkanagaraj1990/aws-nat-instance-bb0911ba19d5
SSH into the NAT instance, set the ip port forwarding to 1.
nano /etc/sysctl.conf
Reboot the instance or run the command sysctl -p for the rule to apply
enabled icmp in the firewall rules