Certified Cloud Security Professional – CCSP – Question160

What type of host is exposed to the public Internet for a specific reason and hardened to perform only that function for authorized users?

A.
Proxy
B. Bastion
C. Honeypot
D. WAF

Correct Answer: B

Explanation:

Explanation: A bastion host is a server that is fully exposed to the public Internet, but is extremely hardened to prevent attacks and is usually dedicated for a specific application or usage; it is not something that will serve multiple purposes. This singular focus allows for much more stringent security hardening and monitoring.