Bastion Service Setup on OCI : Plugin Bastion not present (Bastion Host Error)

Oracle

Share Post Now :

HOW TO GET HIGH PAYING JOBS IN AWS CLOUD

Even as a beginner with NO Experience Coding Language

Explore Free course Now

Table of Contents

Loading

If you also get errors related to the bastion host plugin or configuration while setting up in OCI then this blog is for you. Read the blog till the end for solutions related to the Bastion host error.

Bastion Host Overview in OCI

Oracle Cloud Infrastructure Bastion provides restricted and time-limited access to target resources that don’t have public endpoints.

Bastions let authorized users connect from specific IP addresses to target resources using Secure Shell (SSH) sessions. When connected, users can interact with the target resource by using any software or protocol supported by SSH.

bastion overview

Source: Oracle

Bastion management tasks include the following:

  • Creating a bastion
  • Viewing bastion configuration details
  • Updating a bastion
  • Terminating a bastion
  • Moving a bastion to a different compartment

You can access Bastion using the Console (a browser-based interface), the command line interface (CLI), or the REST API.

Some common Bastion Host Error

Error Statement 1: Error while enabling Bastion Service: To create a Managed SSH session, the Bastion plugin must be enabled on the target instance, but the plugin is disabled on <OCID Host>

Enable the Bastion plugin on the target instance before creating the session.

bastion host error

Solution:

To solve this issue you just have to check if the bastion service is enabled on the host where you’re trying to configure the bastion service.

Step 1: Check on the Host for which you want to configure Bastion Service

bastion host error: check the host

Step 2: Search for Bastion host and enable the service if disabled.

enable bastion host service

Error Statement 2: Plugin Bastion not present for instance ocid1.instance.***

Solution: This error statement implies that this machine cannot reach to Oracle Yum Repository to download the plug-in.

It happens because Oracle Cloud Agent running on the instance cannot access OCI services. The OCI services are out of the network where the instance resides. The instance’s network is a private subnet and does not have access to outside. Therefore a Service Gateway or NAT Gateway and proper route table rules are needed in the private subnet.

To solve this bastion host error check the following steps:

Step 1: Configure Service Gateway in VCN that this VM belongs (ensure you select all services)

configure service gateway

Step 2: Ensure Subnet’s Route table (VM belongs to the subnet) is pointing to this Service Gateway.

subnet's route table

Step 3: If the route is not added then add a route.

add route to subnet

route added

Step 4: After adding the route, reboot the VM , wait for few minutes OR try stopping & starting the Plug-In again.

bastion host: reboot or restart the plug in

Step 5: Finally verify that the Bastion is running successfully.

bastion host is running successfully

These were two of the most frequently encountered errors that customers face. Hope this blog help in resolving the error.

Realated/References

Begin Your Cloud Journey

Begin your journey towards becoming a Certified Oracle Cloud Infrastructure Architect and earning a lot more in 2022 by joining our FREE CLASSYou will also know more about the Roles and ResponsibilitiesJob opportunities for OCI Architects in the market, and what to study Including Hands-On labs you must perform to clear the Oracle Cloud Architect Associate Certification (OCI) certification exam by registering for our FREE Masterclass.

Click on the below image to Register Our FREE Class on Master Oracle Cloud (OCI) and Get a Higher Paying Job!

OCI Free class GIF

Picture of mike

mike

I started my IT career in 2000 as an Oracle DBA/Apps DBA. The first few years were tough (<$100/month), with very little growth. In 2004, I moved to the UK. After working really hard, I landed a job that paid me £2700 per month. In February 2005, I saw a job that was £450 per day, which was nearly 4 times of my then salary.