Ron has configured his network to provide strong perimeter security. As part of his network architecture, he has included a host that is fully exposed to attack. The system is on the public side of the demilitarized zone, unprotected by a firewall or filtering router.
What would you call such a host?
A.
Honeypot
B.
DMZ host
C.
DWZ host
D.
Bastion Host
Explanation:
A bastion host is a gateway between an inside network and an outside network. Used as a security measure, the bastion host is designed to defend against attacks aimed at the inside network. Depending on a network’s complexity and configuration, a single bastion host may stand guard by itself, or be part of a larger security system with different layers of protection.