A hardened remote access design positions a jump host (jump server) so that administrators must connect to it before reaching control devices.
What is the security value of this placement?
- A.It broadcasts management traffic to all devices for redundancy
- B.It creates a single, monitored, and hardened chokepoint where access can be logged, recorded, and controlled
- C.It lets each engineer connect to PLCs directly to reduce latency, a result every reference architecture takes as a design assumption
- D.It removes the need to authenticate users before they reach the OT zone, which NIST SP 800-82 ranks above network segmentation for protecting control networks
Why B is correct
A jump host funnels all administrative access through one hardened, heavily monitored system where sessions can be authenticated, recorded, and restricted. This avoids scattering direct management paths across the control network.
Know someone studying for OT Security Fundamentals? Send them this one.