2개 답변
- 최신
- 최다 투표
- 가장 많은 댓글
1
I advise to use Systems Manager's Sessions Manager instead of a bastion host, if possible. Read more about it here: Replacing a Bastion Host with Amazon EC2 Systems Manager.
1
Use Systems Manager Sessions Manager. Then use AAD and AWS IAM Identity Centre Permission sets (thats how I assume you are using SSO) to grant the right set of users the right set of permissions to use Sessions Manager. This will have a markedly better security posture.
https://docs.aws.amazon.com/systems-manager/latest/userguide/session-manager.html
답변함 일 년 전
관련 콘텐츠
- AWS 공식업데이트됨 10달 전