Establishing a Bastion
Bastions let you create and manage sessions that provide authenticated users with ephemeral, timebound access to resources in the tenancy. Bastions establish secure bridge connections from preconfigured IP addresses to supported target hosts that do not have a public IP address (as is the case for your GoldenGate Administration Service, which is located within a private subnet).
Under Identity & Security, create a Standard Bastion, such as BastionCCSGG, which is targeted at your private subnet in the VCN you are using for your GoldenGate deployment.
Figure 17-4 Bastion

Once created, you use the bastion instance to create temporary bastion sessions which will allow you to securely bridge the connection from your local workstation to the GoldenGate Administration Service URL and port.