Bastion Hosts. What is it?. An interface on the network and located in the DMZ. Comes from medieval times to describe fort or castle that couldn't be penetrated. It can be any network device that hosts a web service and typically provides only one service. Specially hardened. Requirements.
All accounts except Administrator
IIS, or if bastion host is a web server, delete sample scripts in iissamples folder
Routing services to hosts on internal network
In the system32 folder
Any network services except those you rill be running on the bastion host
Close all ports except what is necessaryWindows Unnecessary Services