Application O&M in Bastionhost enables controlled access to web applications and databases through dedicated application servers.
Concepts
-
Application server: A jump server that connects Bastionhost to applications.
-
Remote client: A client on the application server used to access applications, such as a browser or database client tool.
NoteWeb applications support username and password auto-fill and destination access policies. Custom applications do not.
-
Application: A resource that O&M engineers access through a remote client, such as an HTTP/HTTPS website or a database.
Supported editions
Enterprise Edition and SM Edition
If your Bastionhost instance is a Basic Edition instance, you must upgrade it to a supported edition. For more information, see Upgrade an instance.
Configuration flow
Managing applications in Bastionhost involves the following steps:
-
Prepare an application server: The administrator needs to prepare a Windows host as the application server and deploy Windows Server Remote Desktop Service and RemoteApp applications on the application server. For configuration steps, see Deploy a Windows Server application server.
NoteWe recommend that you use Windows Server 2016, Windows Server 2019, or Windows Server 2022 as the operating system for the application server.
-
Import and add the application server to Bastionhost: Import the prepared application server into Bastionhost and add the imported application server on the application page of Bastionhost.
-
Deploy the application server: Publish the USMDriver.exe RemoteApp program on the application server.
-
Synchronize Bastionhost users to the application server: After deploying the application server, you need to synchronize Bastionhost users to the application server and create corresponding accounts for them. After successful synchronization, O&M personnel can log on to the application server using these accounts to perform O&M operations.
-
Add remote clients in Bastionhost: Add remote clients for accessing application assets on the application server, such as browsers and database client tools.
-
Add and configure applications in Bastionhost: Add client applications or web applications and grant access to the appropriate O&M personnel.