Bastion
OCI Bastion provides restricted and time-limited secure access to target resources that don't have public endpoints. This subject area enables tracking bastions, including bastion type, DNS proxy status, private endpoint IP address, target VCN, target subnet, lifecycle state, max session TTL, tenancy, compartment, region, and creation activity.
Business Questions
The subject area can answer the following business questions:
- What is the configured max session TTL across bastions by tenancy, compartment, or region?
- How has max session TTL changed over time?
- Which bastions are active or in another lifecycle state?
- Which VCNs and subnets are associated with bastion targets?
- Which bastions have DNS proxy or private endpoint details available?
Logical Model
The model centers on Fact - Bastion and joins to bastion details, fact details, compartment, date, region, VCN, and subnet dimensions.

Metric Details
The visible presentation fact table in this subject area shows the following metrics:
| Fact Folder | Metric | Definition |
|---|---|---|
| Bastion | Max Session TTL In Seconds | SUM visible presentation metric from Fact - Bastion. |