By zabius
Hi - I would like to know the best practices to setup an SSH Jump server (sometimes referred to as a jumpbox) that acts as an intermediary host or an SSH gateway to a remote network with a Digital Ocean droplet.
This textbox defaults to using Markdown to format your answer.
You can type !ref in this text area to quickly search our full set of tutorials, documentation & marketplace offerings and insert the link!
Hello, @zabius
You can basically create a droplet that will be used as a jumpbox to connect to your other droplets/servers. Than on the jumpbox you can setup ssh-keys which you will later on upload to the servers you’re going to access from the jumpbox.
You can check the following tutorials for the ssh-keys:
How To Set Up SSH Keys How-to Add SSH Keys to New or Existing Droplets
You can also make sure that the jumpbox is secure in order to use it without any hesitation. You can check the following tutorials:
Recommended Security Measures to Protect Your Servers Recommended Initial Droplet Configuration Initial Server Setup - You can select other OS if you’re planning to use CentOS for example
Let me know if you have any questions.
Hope that this helps! Regards, Alex
Hi there @zabius,
Fully agree with what @alexdo mentioned already. In addition, I could add a couple of things:
https://www.digitalocean.com/community/tutorials/how-to-harden-openssh-on-ubuntu-18-04
Regards, Bobby
Get paid to write technical tutorials and select a tech-focused charity to receive a matching donation.
Full documentation for every DigitalOcean product.
The Wave has everything you need to know about building a business, from raising funding to marketing your product.
Stay up to date by signing up for DigitalOcean’s Infrastructure as a Newsletter.
New accounts only. By submitting your email you agree to our Privacy Policy
Scale up as you grow — whether you're running one virtual machine or ten thousand.
Sign up and get $200 in credit for your first 60 days with DigitalOcean.*
*This promotional offer applies to new accounts only.