Quick Start Update: Deploying Linux Bastion Hosts on the AWS Cloud

Posted on: Apr 3, 2017

AWS is pleased to release a major update to the Quick Start reference deployment for Linux bastion hosts.

This automated deployment enables you to add Linux bastion functionality to your AWS Cloud environment quickly and easily, in about 5 minutes. The bastion hosts provide secure access to your Linux instances and can be used as a building block for your Linux-based deployments. The Quick Start was created by AWS solutions architects from the Quick Start reference team in accordance with AWS best practices.

This latest update includes the following enhancements:

  • Option to specify up to 4 bastion host instances
  • An Auto Scaling group to ensure that the number of bastion host instances always matches the capacity you specify
  • Amazon CloudWatch Logs for remote storage of Linux bastion host shell history logs, for added security
  • New options to enable TCP forwarding (SSH tunneling) and X11 forwarding

The automated AWS CloudFormation templates included in the Quick Start support two customizable deployment options: end-to-end deployment into a new virtual private cloud (VPC), and deployment into your existing AWS infrastructure. The Quick Start also includes a deployment guide, which describes the networking architecture in detail and provides step-by-step instructions for deploying and configuring the bastion hosts.

To try out the updated Quick Start, use the following resources:
- View architecture and details
- View the deployment guide — HTML | PDF
- Browse and launch other AWS Quick Start reference deployments

About Quick Starts

Quick Starts are automated reference deployments for key workloads on the AWS Cloud. Each Quick Start launches, configures, and runs the AWS compute, network, storage, and other services required to deploy a specific workload on AWS, using AWS best practices for security and availability.