A bastion host is a server whose purpose is to provide access to a private network from an external network, such as the Internet. Because of its exposure to potential attack, a bastion host must minimize the chances of penetration. For example, you can use a bastion host to mitigate the risk of allowing SSH connections from an external network to the Linux instances launched in a private subnet of your Amazon Virtual Private Cloud (VPC).
https://aws.amazon.com/blogs/security/how-to-record-ssh-sessions-established-through-a-bastion-host/
https://aws.amazon.com/quickstart/architecture/linux-bastion/
24 April 2020
23 April 2020
Oracle Cloud Infrastructure Foundations Associate
Current certification as an introduction to OCI (Oracle Cloud Infrastructure).
https://www.oracle.com/corporate/blog/free-certifications-oracle-oci-autonomous-033020.html
- Dynamic Routing Gateway (DRG, a virtual router): (for on-premises) Fast connect, and IPSec VPN (Site-2-site)
- Internet Gateway (internet)
- Service Gateway (oci services)
- NAT Gateway: only outbound
- Peering: Local & Remote VCN peering (diff VCN regions)
https://www.oracle.com/corporate/blog/free-certifications-oracle-oci-autonomous-033020.html
https://www.oracle.com/cloud/iaas/faq.html (resilience)




