Announcing Built On Envoy: Making Envoy Extensions Accessible to Everyone

Learn more

Kubernetes Ingress and Envoy Gateway

Envoy Gateway Addresses Common Needs for Kubernetes Ingress Traffic Handling As Kubernetes became the accepted container orchestration solution for cl

Kubernetes%20Ingress%20and%20Envoy%20Gateway

Envoy Gateway Addresses Common Needs for Kubernetes Ingress Traffic Handling

As Kubernetes became the accepted container orchestration solution for cloud-native applications and our systems grew in complexity and scale, the management of traffic into and within Kubernetes clusters became a critical concern. 

Before the Gateway API and implementations like Envoy Gateway, cloud-native engineers used Node Ports, Load Balancers, and Ingress API Implementations to manage ingress traffic to their Kubernetes clusters. 

Providing a way to expose services running in a Kubernetes cluster to external callers isn’t just about connectivity. As traffic flows, we need to manage it, secure it, and observe it. That we needed more sophisticated solutions to manage Kubernetes’ ingress traffic is not news, but it provides the history of how Envoy Gateway came about to serve common needs. 

Envoy Gateway empowers you to easily configure and use the widely established Envoy Proxy for your Kubernetes ingress traffic. Envoy Proxy, an edge and service proxy designed for cloud-native applications, addresses these traffic management, security, and observability requirements. 

Envoy Gateway integrates seamlessly with Kubernetes and supports the Kubernetes Gateway API, offering a robust, scalable, and flexible approach to managing ingress traffic.

When Is Envoy Gateway the Right Choice to Handle Your Kubernetes Ingress Traffic?

There are many reasons why Envoy Gateway may or may not be the right choice for your architecture. To help identify if Envoy Gateway is a good fit, here are the five top motivations for using Envoy Gateway to handle your Kubernetes Ingress traffic.

  1. Advanced Traffic Management: If you need advanced routing capabilities such as retries, traffic splitting, timeouts, circuit breaking, or traffic shadowing.
  2. Security: If you need security features like mutual TLS, rules for access control, WAF integration, and the ability to integrate with external authorization services.
  3. Observability:  If monitoring and troubleshooting are crucial for your system, and you want observability features including detailed metrics, distributed tracing, and logging.
  4. Scalability: If your application needs to scale horizontally and handle high volumes of traffic, Envoy Gateway can manage this effectively.
  5. Compatibility with Kubernetes Gateway API: If you plan to adopt the Kubernetes Gateway API, Envoy Gateway is designed to work seamlessly with it, providing a consistent and modern API for managing Kubernetes ingress traffic configurations.

Get Started with Envoy Gateway

Envoy Gateway is ideal for modern cloud-native applications, offering robust, scalable, and flexible ingress traffic management.  Ready to optimize your Kubernetes ingress with Envoy Gateway? Speak to our experts today to learn how Envoy Gateway can elevate your infrastructure ›

Product background Product background for tablets
Building AI agents

Agent Router Enterprise provides managed LLM & MCP Gateways plus AI Guardrails in your dedicated instance. Graduate agents from prototype to production with consistent model access, governed tool use, and runtime supervision — built on Envoy AI Gateway by its creators.

  • LLM Gateway – Unified model catalog with automatic fallback across providers
  • MCP Gateway – Curated tool access with per-profile authentication and filtering
  • AI Guardrails – Enforce policies, prevent data loss, and supervise agent behavior
  • Learn more
    Replacing NGINX Ingress

    Tetrate Enterprise Gateway for Envoy (TEG) is the enterprise-ready replacement for NGINX Ingress Controller. Built on Envoy Gateway and the Kubernetes Gateway API, TEG delivers advanced traffic management, security, and observability without vendor lock-in.

  • 100% upstream Envoy Gateway – CVE-protected builds
  • Kubernetes Gateway API native – Modern, portable, and extensible ingress
  • Enterprise-grade support – 24/7 production support from Envoy experts
  • Learn more
    Decorative CTA background pattern background background
    Tetrate logo in the CTA section Tetrate logo in the CTA section for mobile

    Ready to enhance your
    network

    with more
    intelligence?