Jump/Bastion Host Setup

Ashwani

Last Update 7달 전

Pre-requisites

System Specifications:

You may use either a Windows-based or Linux-based system for the jump host. Adjust resource specifications based on the number of assets to be managed:

Number of Assetsmemory CPU Storage
Up to 200 4GB 2 Cores 50GB
201 - 1000 8GB4 Cores 100GB
1001 - 5000 16GB8 Cores 200GB
5001+ 32GB16 Cores 500GB

Network Requirements (Firewall Rules):

Configure the following firewall rules on the jump host:


Authentication Requirements (Target Assets):

  • Linux-Based Assets: SSH service running on any custom port.
  • Windows-based Assets: WinRM service running on port 5985.
Export Jump Host Agent

1. Navigate to the Asset Module

  • In the top navigation panel of the SecOps platform, click on the Asset module to access the asset management functionality.

2. Add Jump Host

  • Click on Add Asset dropdown and select 'Add Jump Host'.

3. Provide Jump Host Information

  • Agent Name: Enter a name for the agent that aligns with your naming conventions for easy identification.

  • Operating System: Choose the asset's operating system and its architecture from the drop-down

  • Asset Groups: Optionally, assign the asset to one or more asset groups to help categorize and manage it effectively.

  • Criticality Level: Set the asset’s criticality level to determine its importance and impact in your operations.

4. Download Agent Details

  • After completing the form, click on Download Jump Host to generate the jump host details.
  • Navigate to the Notifications section to retrieve the following:

    1. Jump Host Download URL: The link to download the jump host installation package.

    2. License Key: A unique key to activate the jump host during installation.

Download and Install the AgentRefer to the agent installation guide corresponding to your host OS:
Verify Installation Status
  1. Check the agent status in the assets section of the product.
  2. Run the below command to check the status on the jump host:                   sudo systemctl status secops_service.service

Was this article helpful?

0 out of 0 liked this article

Still need help? Message Us