Skip to content
Wayline Access StudioIndependent route planning

Waypoint 03 · SSH routes

Draw each hop as a responsibility.

A jump host is not just another box in a diagram. It changes who authenticates where, which name is resolved, what must remain connected and who reviews the route.

Two infrastructure operators reviewing a multi-hop route
Every line on the route map is paired with an owner and a verification point.

Route ledger

SegmentRecordVerify
Operator → gatewayGateway name, SSH port, approved authHost identity and access policy
Gateway → targetTarget name as gateway resolves itReachability and least privilege
Local listenerBind address and local portExposure on the operator device
Service destinationRemote host and portApplication ownership

Design sequence

  1. Start from a business destination, not a preferred tunneling feature.
  2. Locate DNS, firewall, authentication and audit boundaries.
  3. Select the simplest supported route that meets the boundary constraints.
  4. Test from a non-privileged pilot account and record failure signals.

Map forwarding responsibilities →