Kong Installation before LB or between LB and Firewall

Hi,

I am trying to find why I should install kong above the firewall servers, can I have kong as the first LB and proxy server, then forward the request to the firewall servers.

Which one of these options make the best choice:

  1. External LB -> Kong -> Firewall -> Application Servers
  2. Kong -> External LB -> Firewall -> Application Servers
    Another setup where there is a reverse proxy server :
    3.External LB -> RPrxy -> Kong -> Firewall -> Application Servers
    4.Kong -> RPrxy -> Firewall -> Application Servers

Thanks in advance.

Personally I like the:

External LB -> Kong -> Firewall -> Application Servers

Flow, granted your External LB has a proper WAF(Web Application Firewall) solution. The firewall rules are pretty simple to enable routing from your Kong nodes to app servers.


© 2019 Kong Inc.    Terms  •  Privacy  •  FAQ