Airlock Microgateway

Kubernetes-native Protection of APIs and Microservices

Distributed application protection for Kubernetes

Airlock Microgateway protects APIs and microservices from attacks and unauthorized access while they are running. Being specifically designed for use in Kubernetes environments, it is placed close to the protected services.

Typical use cases:

  • Protecting APIs against OWASP API top 10 attacks.
  • Securing microservices against zero day attacks like Log4Shell.
  • Decentralized access control (including token validation)

The protection capabilities of Airlock Microgateway are also available in the free Community Edition.

Technical Details

 

Whitepaper: Security for cloud-native applications

You can read how companies manage to ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between Isovalent, Heise and Airlock.

Request Whitepaper (in German)

Identity-centered security

The proven combination of IAM and WAAP

Airlock Secure Access Hub is the central hub for secure access management in a digitalized world: identity-centric security from a single source, optimally coordinated. The following graphic illustrates the interaction of IAM and WAAP.

Friendly to users. Relentless to uninvited guests.

The Airlock components work together to provide maximum ease of use and effective protection without compromise. The diagram illustrates how this works.

Click on the (+) symbols to learn more about the Airlock components.

Protection against cyberattacks on APIs and applications

Be it malicious bots, zero-day exploits or typical attacks according to OWASP Top 10: Airlock Gateway keeps undesirable and malicious visitors away from your web applications and APIs, e.g. with hardened filter rules and anomaly detection based on machine learning. And in conjunction with Airlock IAM, only authenticated and authorized users are granted access to the application.

Protect yourself today from the risks of tomorrow.

Airlock Gateway

Authentication and access control

Airlock's Identity and Access Management guarantees secure and efficient access to digital services. Users benefit from an excellent user experience and single sign-on, in combination with Airlock Gateway even for non-standard applications. Airlock IAM protects against identity theft and shines with flexible registration and login flows including a large number of authentication methods.

Ensure user-friendly and secure access to your applications.

Airlock IAM

Distributed security checks for modern applications

Application protection for today's APIs and tomorrow's microservices: Airlock Microgateway is designed for use in Kubernetes environments. Security policies and compliance can be perfectly automated thanks to Security as Code. This ensures better integration of security and governance throughout the DevSecOps lifecycle. Modern zero-trust architectures also benefit from micro-segmentation and distributed access controls.

Protect your cloud-native applications.

Airlock Microgateway

CustomersAPIsPartnersIoTEmployees
Airlock
Gateway
Airlock
IAM
Airlock
Microgateways
Protected applications and APIs

Highlights

Multi-level security filters for award-winning protection against known attacks (e.g. OWASP Top 10) and zero-day exploits like Log4Shell.

Kubernetes-native: Istio service mesh support, operator and CRDs, automatic sidecar injection, hot reload.

Modular configuration with and without templates (with kustomize, helm, etc.)

Telemetry interfaces such as Prometheus metrics and structured logs in ECS format (Elastic Common Schema) facilitate monitoring and analysis.

Plugins for modern IDEs for automatic validation, code completion, and tooltips when editing the configuration.

Benefit

Cloud-native = Modern, lightweight and automation-ready
Airlock Microgateway is designed for modern Kubernetes architectures and easily integrates with GitOps processes.

Agile security = more autonomy for application teams
Enforce company-wide security policies while allowing developers to define application-specific rules. This largely eliminates manual handoffs and coordination with SecOps.

Shift Left = Security from the start
Microgateways are deployed during development and testing. This means that the architecture is similar to the productive environment and any integration hurdles are eliminated at an early stage.

Zero Trust = No bypass
Microgateways are positioned directly in front of the application so that no one can bypass them. By re-checking permissions for each call, a Zero Trust architecture is enforced.

 

Find more details in the

Microgateway Factsheet (PDF)

Airlock Microgateway in action

As a start-up in the tech sector, we sought an innovation partner that offered both high speed and extensive expertise. These are precisely the characteristics that distinguish Airlock, and during collaboration you clearly feel that you’re dealing with engineers and not just sellers. The benefit for us is that we get exactly the future-proof solutions we need – a major plus especially in times of digital transformation.

Sandro Toneatto, CTO, dacadoo AG

View reference story

We see the main advantages of using Airlock in increased customisation possibilities because of the Airlock Microgateway, which optimizes the protection of Kubernetes applications.

Andrin Farner, Consultant, Inacta AG

View reference story

Our customers manage hundreds of pieces of corporate data and communicate with thousands of contacts every day – and they do so with completely different IT systems. That’s why we chose an agile IT infrastructure, running microservices as containers in an OpenShift platform.

Rui Santos, Solution Architect, AssetMetrix

View reference story

Our whitepapers

Whitepaper: Security for cloud-native applications

You can read about how companies manage to ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between heise and Airlock.

Request whitepaper

Executive View: KuppingerCole

This KuppingerCole Executive View report provides an architectural and functional overview of the Airlock Secure Access Hub, an integrated platform for secure access management - a multicloud-native security tool for web applications, APIs and beyond.

Request Executive View

Whitepaper: Toward DevSecOps

In a DevSecOps culture, every agile team has a security expert. He fulfills non-functional requirements, so the product owner includes security in the development plan.

Read this whitepaper to learn key insights on how to successfully and efficiently implement DevSecOps, what security components are needed to make it happen, and the benefits of a microgateway architecture.

Request Whitepaper DevSecOps

Convincing performance: Gold for the Airlock Microgateway

Not only our customers, but also the independent information security community is convinced. The Airlock Microgateway was awarded Gold at the Cyber Security Excellence Awards 2022 in the Zero Trust Security category. In total, Airlock solutions have won the gold award seven times.

Information for you

-Our whitepapers-

Executive View: KuppingerCole - Airlock Secure Access Hub for applications and APIs

This KuppingerCole Executive View report provides an architectural and functional overview of the Airlock Secure Access Hub, an integrated platform for secure access management - a multicloud-native security tool for web applications, APIs and beyond.

 

Fill out the form now and receive Executive View!

Whitepaper: Security for cloud-native applications

You can read about how companies can ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between heise and Airlock.

 

Request whitepaper

Whitepaper: Zero Trust is a journey

The ongoing digital transformation of the world is progressing and having a profound impact on our personal and professional lives in ways that were difficult to imagine just a few years ago.


This white paper discusses the effects of continuous digitalization and its impact.

Request free of charge

Off to DevSecOps

In this white paper, you will learn the most important insights into how you can implement DevSecOps successfully and efficiently, which security components are required for this and the advantages of a microgateway architecture.

 

Request free of charge

Airlock 2FA - Strong authentication. Simple.

Double security - this is what two-factor authentication offers in the field of IT security.


Find out more about strong authentication and the possibilities offered by Airlock in our white paper.

Download for free

Further whitepapers

We provide you with free white papers on these and other topics:

 

  • Successful IAM projects
  • compliance
  • Data protection (DSGVO)
  • Introduction of PSD2
  • PCI DSS requirementsPCI DSS requirements
Request free of charge