- Enterprise Cloud Security and Governance
- Zeal Vora
- 94字
- 2021-07-02 19:21:10
Bastion hosts
Bastion hosts, also known as jump box, basically act as a proxy that allows the client to connect to remote servers. These remote servers are generally on a private subnet that is not accessible directly, with bastion generally being on the public subnet.
The following diagram shows the basic role of bastion hosts:
data:image/s3,"s3://crabby-images/4cffc/4cffcbd0ad7dd14c073cb30502590186530cc0f7" alt=""
The client wants to connect to an instance in Private Subnet. As he cannot connect directly, he uses Bastion Host in the same network as a proxy to establish the connection to an instance in Private Subnet.