Skip to main content
ConnectMyAssets
Platform

SSH Bastion

Access any network device from your browser. Every session is recorded, every command is logged and risk-scored. No SSH keys scattered across laptops, no blind spots.

  • Browser-based SSH (no client install)
  • Full session recording & replay
  • Per-device RBAC access control
  • Command-level audit log with risk scoring
  • Time-limited access grants
  • MFA support

Every SSH Session, Fully Controlled

ConnectMyAssets replaces jump hosts and uncontrolled SSH access with a single, audited, browser-based gateway, no VPN required.

🌐

Browser-Based

No SSH client, no VPN, no keys on laptops. Open a session to any authorized device directly from your browser.

🎥

Session Recording

Every session is recorded keystroke-by-keystroke. Immutable audit evidence stored securely and replayable on demand.

📋

Command Audit

Every command typed is logged with timestamp, user, and target device. Search and export for compliance review.

🔒

RBAC Access

Grant access per user per device. Time-limited or permanent, read-only or interactive, fully configurable per role.

⏱️

Time-Limited Access

Grant temporary access that expires automatically. Ideal for contractors, vendors, or emergency access windows.

🔑

Vault Integration

Credentials never exposed to the user. ConnectMyAssets injects them transparently from the Vault at session open.

How It Works

01

Request Access

The operator selects a device they are authorized for. Access check happens instantly against the RBAC policy.

02

Open Session

Browser SSH session opens immediately. Credentials are injected from the Vault, the user never sees them.

03

Everything Is Logged

The session is recorded, every command is logged and risk-scored, and the full audit trail is stored for compliance review.

Full Traceability, Sessions & Commands

Every connection is timestamped and stored. Every command entered is captured individually, so you can search, filter, and export exactly what you need for audits or incident response.

Session Logs

Command Logs

Command Intelligence

Built-In Command Risk Engine

ConnectMyAssets embeds a command analysis engine that automatically assigns a risk level to every command executed through the Bastion. From routine read operations to destructive or suspicious actions, each command is classified, scored, and surfaced in real time.

Whether you're hardening your change management process, running a post-incident investigation, or giving your SOC team eyes on privileged access activity, the risk engine turns raw command logs into actionable intelligence.

🔴
Instant Risk Visibility
High-risk commands (config wipes, ACL changes, route deletions) are flagged immediately, no manual triage needed.
🔍
Behavioral Auditing
Detect unusual command patterns or privilege escalation attempts. Build a baseline and spot deviations fast.
🛡️
SOC-Ready Monitoring
Security teams get a structured, filterable feed of all privileged commands ranked by risk, ready to integrate with your SIEM.
Command Risk Classification
show running-configLow
show ip routeLow
interface GigabitEthernet0/1Medium
ip access-list extended BLOCKHigh
write eraseCritical

Risk levels are configurable per organization and device type

End Uncontrolled SSH Access

Know who accessed what device, when, and what they did, down to the command level and its risk score. One gateway. Full audit. Zero blind spots.