Well this might seem a stupid question, but i am confused on this.
Have been reading about firewalls and their deployment architecture
And the term bastion host comes a lot.
What i m not able to understand is that in a screened subnet architecture, does the bastion host act as a reverse proxy,
and is the link from router connected to a bastion host and then a link from bastion host to the subnet having servers, or the link from router is connected to the subnet hosting servers and bastion host is also placed in their itself connected with the switch that also conencts servers

And if we r placing a firewall, then does the bastion host also perform some functioning of a firewall or not.