Securely access your Virtual Machines without exposing RDP/SSH
What is Azure Bastion?
Azure Bastion is a PaaS (Platform) Service which you provision within your virtual network. Over SSL from within the Azure Portal, you can securely and seamlessly connect to your virtual machines via RDP/SSH, without exposing RDP/SSH ports.
How it works
Architecture

Deploy Azure Bastion
To deploy an instance of Azure Bastion, via Terraform or Powershell, please follow the link:
https://github.com/mark-patton/codesamples/tree/master/az_bastion