To connect to a web page on a web server you use the HTTP/HTTPS protocol. You therefore need
to ensure the instance's security group allows these protocols in an inbound rule
A public IP address assigned to an instance in a public subnet is required in order to be
able to directly access the instance from the Internet. There also needs to be an Internet
Gateway attached to the VPC and an entry in the route table for the subnet that points to it
A private IP address will always be assigned to instances in EC2, but these do not enable
access from the Internet
An established VPN connection is not required, connections will come through an Internet
Gateway to a public subnet