Bastion

OCI Bastion provides restricted and time-limited secure access to target resources that don't have public endpoints. This subject area enables tracking bastions, including bastion type, DNS proxy status, private endpoint IP address, target VCN, target subnet, lifecycle state, max session TTL, tenancy, compartment, region, and creation activity.

Business Questions

The subject area can answer the following business questions:

  • What is the configured max session TTL across bastions by tenancy, compartment, or region?
  • How has max session TTL changed over time?
  • Which bastions are active or in another lifecycle state?
  • Which VCNs and subnets are associated with bastion targets?
  • Which bastions have DNS proxy or private endpoint details available?

Logical Model

The model centers on Fact - Bastion and joins to bastion details, fact details, compartment, date, region, VCN, and subnet dimensions.


The Bastion fact table is connected to dimension tables.

Metric Details

The visible presentation fact table in this subject area shows the following metrics:

Metric Details for Bastion
Fact Folder Metric Definition
Bastion Max Session TTL In Seconds SUM visible presentation metric from Fact - Bastion.