Back to Projects
Business Systems House 2026

Segmented Jump Server & Bastion Access Control

Segmented Jump Server & Bastion Access Control
Windows Server Jump Hosts OCI Bastion Service RDP Active Directory RBAC Duo MFA

Segmented Jump Server & Bastion Access Control

Architected a zero-trust administrative access model using dedicated Jump Servers and OCI Bastion hosts to isolate management interfaces from public networks.

Key Features & Implementation

  • Group-Segmented Jump Hosts: Isolated administrative environments into dedicated Jump Hosts (IT, TECH, END USER, UAT) to prevent lateral privilege movement.
  • MFA & Session Logging: Enforced Duo MFA on all administrative RDP sessions and enabled session recording for compliance auditing.
  • Fallback Cloud Bastion: Deployed OCI IAM Bastion Service as an emergency secondary access route for IT administrators.
ROOT ACCESS GRANTED