← Back to Projects
Business Systems House 2026
Segmented Jump Server & Bastion Access Control
Windows Server Jump Hosts OCI Bastion Service RDP Active Directory RBAC Duo MFA
Segmented Jump Server & Bastion Access Control
Architected a zero-trust administrative access model using dedicated Jump Servers and OCI Bastion hosts to isolate management interfaces from public networks.
Key Features & Implementation
- Group-Segmented Jump Hosts: Isolated administrative environments into dedicated Jump Hosts (IT, TECH, END USER, UAT) to prevent lateral privilege movement.
- MFA & Session Logging: Enforced Duo MFA on all administrative RDP sessions and enabled session recording for compliance auditing.
- Fallback Cloud Bastion: Deployed OCI IAM Bastion Service as an emergency secondary access route for IT administrators.