Это видео недоступно.
Сожалеем об этом.

What Is a Bastion Host | Jump Host | Bastion Host Explained

Поделиться
HTML-код
  • Опубликовано: 15 авг 2024
  • In this video What Is a Bastion Host | Jump Host | Bastion Host Explained, we explain what a bastion host is and the cloud security fundamentals associated with it. There is a lot of information floating around about how to use a bastion host, and we wanted to make sure to explain the this from a cloud architect security training perspective. We review VPN vs Bastion Host, and the cloud architecture fundamentals of each.
    00:00 Intro
    00:34 Today’s Topic
    1:46 What is A Bastion Host
    5:13 What to Do Instead
    Use our special anniversary discount code "gocloudone" for 30% off programs. At training.gocloudcareers.com/collections.
    We produce this video as a form of public service announcement regarding the security concerns of a bastion host or jump host. Our concerns do not extend to pre-arranged or packaged services such as Azure bastion host. In this video we provide a cloud security architecture training for a proper alternative to a bastion host. We review the use of VPN concentrators, firewalls, DMZ explained and more.
    The concepts covered in this video are cloud architect fundamentals and important concepts of cloud security architect training. So, if you are looking for cloud architecture basics, cloud architect career training, cloud security training, cloud architecture AWS content then subscribe to our channel, and make sure to check out all of our resources below.
    Register for our upcoming FREE AWS Certified Solutions Architect Associate Bootcamp, April 12-16, at the link below:
    gocloudcareers...
    Signup to get all our updates, on new content, publications, videos, bootcamps, and more, click below:
    www.gocloudcar...
    FREE How to Get Your First Cloud Job Webinar; learn how to get #cloudhired. Where you can ask us questions in real time and get guidance to specific to you! Click Below:
    gocloudcareers...
    Cloud Architect Career Development Program, our group mentoring program dedicated to getting your #cloudhired for your cloud architect job! Click Below, and use our special discount “gocloudone” for 30% off only for a limited time:
    gocloudcareers...
    Tech Career Accelerator Program, our group mentoring program dedicated to helping you accelerate your tech career! Click Below, and use our special discount “gocloudone” for 30% off only for a limited time:
    gocloudcareers...
    FREE AWS Certified Solutions Architect Exam Guide eBook - www.gocloudarc...
    Visit our blog, here:
    www.gocloudcar...
    Learn more about us here:
    www.gocloudcar...
    Make sure to check out our multitude of free content below.
    FREE CCNA Networking Bootcamp - • CCNA Networking Bootcamp
    FREE AWS Certified Solutions Architect Exam Guide eBook - www.gocloudarc...
    FREE AWS Certified Solutions Architect Associate Bootcamp - • January AWS Bootcamp
    FREE AWS Certified Solutions Architect Associate Full Course - • AWS Certified Solution...
    FREE AWS Advanced Networking Bootcamp - • AWS Advanced Networkin...
    Please follow, like, or subscribe to us on our other platforms:
    Mike Gibbs LinkedIn Page:
    / michael-gibbs-75820a
    Go Cloud Architects LinkedIn page:
    / go-could-architects
    Go Cloud Architects Facebook Page:
    / gocloudarchitects
    Twitter:
    / gocloudtech
    Instagram:
    / gocloudarchitects
    #cloudarchitect #cloudcareer #cloudjob

Комментарии • 23

  • @GoCloudArchitects
    @GoCloudArchitects  11 часов назад

    50% off Birthday Sale on all LIVE programs with code BIRTHDAY, bit.ly/42jecr6

  • @chrisadams27
    @chrisadams27 2 года назад +7

    A lot to disagree with here.

  • @MikeReacts1
    @MikeReacts1 2 года назад +1

    Agree 100%! Thanks for clarifying how vpn concentrators work.

  • @GoCloudArchitects
    @GoCloudArchitects  2 года назад +6

    We hope you enjoyed the video, please share your thoughts below!

    • @devendrajaisi1789
      @devendrajaisi1789 4 месяца назад

      You nailed this topic, generally, we get the information on where to put your bastion host but no one tells us how to secure it.

    • @GoCloudArchitects
      @GoCloudArchitects  4 месяца назад

      @@devendrajaisi1789 thank you.
      I wanted to help clarify this to help others

  • @preciousishiguzor3119
    @preciousishiguzor3119 2 года назад +1

    Valid security remediations @Mike.
    Thank you for reinforcing the security best practices before a hacking event happens.
    The Security strategy is only as effective as the weakest link. I always remember that.
    Quality video and prompt feedback.

    • @GoCloudArchitects
      @GoCloudArchitects  2 года назад

      Thank you so much for your comment, Precious!
      #cloudhired

  • @Canda-fh4xc
    @Canda-fh4xc 2 года назад +3

    I believe you 100% right.
    But the question is, why AWS certifications keep presenting the Bastion Host as the best way to access EC2 instance in a private subnet !?

    • @GoCloudArchitects
      @GoCloudArchitects  2 года назад +2

      Its the certification providers who spend so much time on bastion hosts. Working cloud architects and cloud security architects now not to make this mistake. Thats one of the many differences in whats taught in certification vs what customers actually use.

    • @Canda-fh4xc
      @Canda-fh4xc 2 года назад +2

      @@GoCloudArchitects
      I passed 2 AWS certifications. Some of the answers in the test are either wrong or at least are not the best solution. But, you have to follow their rules or you will fail the exam.

  • @bsummer
    @bsummer 2 года назад +2

    Whats the difference between a bastion host and a dmz?

    • @GoCloudArchitects
      @GoCloudArchitects  2 года назад +1

      A bastion host is an exposed system on the internet that provides a sback door to enable remote access. It is a serious security flaw and is an invitation to hackers to come and hack me.
      A demilitarized zone is a semi protected subnet, that offers access to one service like web services.
      The DMZ is a protected zone that protects the internal network from the web services.

    • @bsummer
      @bsummer 2 года назад

      @@GoCloudArchitects Thanks Mike for the clarification. I guess what's been glorified in boot camp and certification courses ain't the reality.

  • @boscantus
    @boscantus Год назад

    Thank you!

  • @pawansaarang
    @pawansaarang 2 года назад

    Thanks @Mike for the great explanation about why Not to use Bastion Host. Wondering why organizations still use it. How can we verify if the Bastion Host we use, what level of security it has been implemented with?

    • @GoCloudArchitects
      @GoCloudArchitects  2 года назад +3

      Pawan - honestly I have not seen a company use a bastion host in years.
      The companies that I worked with removed them about 20 years ago do to security risks.
      I have only seen this in certification courses. But then again there is a massive difference between certification and reality

    • @pawansaarang
      @pawansaarang 2 года назад

      @@GoCloudArchitects Thanks much Mike!!

    • @Jkudjo
      @Jkudjo Год назад +1

      @@GoCloudArchitects used in my company

    • @GoCloudArchitects
      @GoCloudArchitects  Год назад

      @@Jkudjo there are lots of cybersecurity breeches every day.

  • @user-uf2jw6ds3o
    @user-uf2jw6ds3o Год назад

    In short: "A bastion host is an insecure system and therefore it is insecure. Duhhhh" Jeezzz...