Bastion Hosts and EC2 Instance Connect Endpoint

Bastion hosts

A bastion host allows an SSHSecure Shell for Linux instance to connect through the terminal. connection between the internet and EC2 instances provisioned in a private subnet. Internet traffic routes through the bastion host to access the private EC2 instances. It mainly filters incoming traffic and prevents suspicious traffic from entering the network.

EC2 instance is used as a bastion host and must be provisioned in a public subnet. The security group of the bastion host must allow SSH connections to the EC2 instances in the private subnets.

Get hands-on with 1200+ tech skills courses.