You are designing a microservices architecture that will be hosted in an Azure Kubernetes Service (AKS) cluster. Apps that will consume the microservices will be hosted on Azure virtual machines. The virtual machines and the AKS cluster will reside on the same virtual network.
You need to design a solution to expose the microservices to the consumer apps. The solution must meet the following requirements:
* Ingress access to the microservices must be restricted to a single private IP address and protected by using mutual TLS authentication.
* The number of incoming microservice calls must be rate-limited.
* Costs must be minimized.
What should you include in the solution?
One option is to deploy APIM (API Management) inside the cluster VNet.
The AKS cluster and the applications that consume the microservices might reside within the same VNet, hence there is no reason to expose the cluster publicly as all API traffic will remain within the VNet. For these scenarios, you can deploy API Management into the cluster VNet. API Management Premium tier supports VNet deployment.
https://docs.microsoft.com/en-us/azure/api-management/api-management-kubernetes
Bronwyn
10 months agoCaprice
10 months agoTresa
11 months agoLoreen
11 months agoPhuong
11 months agoNoah
11 months agoJade
11 months agoLucy
11 months agoLajuana
11 months agoAnglea
11 months agoTeri
11 months agoRobt
11 months agoVincenza
11 months ago