Skip to main content
Firewall & Security In active development

Bastion Firewall & Security.

Centralized firewall rules, DDoS protection, and network security groups. Protect your infrastructure from the edge.

Join the waitlist to be among the first to know when it launches.

Bastion — Firewall & Security
Bastion
Firewall & Security
In active development

What Bastion is being built to do

  • Centralised firewall rule management
  • Reusable security groups
  • DDoS mitigation on the network edge
  • Inbound and outbound rules

This product is in active development

The page below describes what Bastion is being built to do. Specifications, pricing and the exact feature list may change before launch. Join the waitlist to be told when it goes live and to influence what ships first.

Overview

Bastion: Firewall & Security

Bastion is being built as a centralised place to manage firewall rules and security groups across your PeaceWeb infrastructure, with audit logging for changes. DDoS mitigation lives on the network edge today and Bastion is the management surface in front of it. Final rule model and audit export options will be published at launch.

Built for

Protecting public-facing applications Compliance-driven security policies Multi-tier network segmentation Incident response & forensics

Highlights

Why Bastion

These describe the design intent for Bastion. Final behaviour will be confirmed at launch.

One place for firewall rules

Define rules once in a security group and apply them to many instances, instead of hand-keeping per-instance rule sets in sync.

Edge DDoS mitigation

DDoS mitigation runs on the network edge today. Bastion is the management surface that lets you see and reason about it from Cradle.

Auditable changes

Policy changes are logged, so when an incident happens you have a record of who changed which rule and when.

Capabilities

What Bastion is being built to do

Planned for launch

Centralised firewall rule management

Reusable security groups

DDoS mitigation on the network edge

Inbound and outbound rules

IP allow- and blocklists

Audit logging of policy changes

Ecosystem

Works with

Bastion is designed to fit alongside the rest of the PeaceWeb stack. Some of these products are still in active development.

Bastion is in active development

We will not charge you, and we will not pretend it is ready until it is.

In the meantime, Pulse is available today.

Explore Cradle

Pulse, Trail, Drift, Exchange, and more — see how all services work together in the Cradle platform to power your infrastructure.

All Products