Q: What are Bastion hosts?
or
Q: Who are the hosts of Bastion?
- VLANs
- Users that have the ability to change firewall rules and configurations.
- A VPN subnet
- Servers that are specifically hardened and minimized to reduce what’s permitted to run on them.
Explanation: Bastion hosts are designed to be exposed to the external network and act as a gateway or intermediary between an internal network and external entities. They are secured to reduce vulnerabilities and minimize the attack surface, ensuring that they can provide a controlled point of access while protecting the internal network.