Class BastionHost

This creates a EC2 bastion host that can be used to connect to database instances and other internal resources.

The instance is supposed to have no open ingress ports, and users are supposed to connect only through SSM Session Manager.

The resources that the bastion host should be allowed to access must have the bastion host security group as allowed ingress.

For more internal details, see https://confluence.capraconsulting.no/x/q8UBC

Hierarchy

  • Construct
    • BastionHost

Constructors

Properties

Methods

Constructors

Properties

node: Node

The tree node.

securityGroup: ISecurityGroup

Methods

  • Returns a string representation of this construct.

    Returns string

  • Checks if x is a construct.

    Use this method instead of instanceof to properly detect Construct instances, even when the construct library is symlinked.

    Explanation: in JavaScript, multiple copies of the constructs library on disk are seen as independent, completely different libraries. As a consequence, the class Construct in each copy of the constructs library is seen as a different class, and an instance of one class will not test as instanceof the other class. npm install will not create installations like this, but users may manually symlink construct libraries together or use a monorepo tool: in those cases, multiple copies of the constructs library can be accidentally installed, and instanceof will behave unpredictably. It is safest to avoid using instanceof, and using this type-testing method instead.

    Parameters

    • x: any

      Any object

    Returns x is Construct

    true if x is an object created from a class which extends Construct.