Blog
  • AI Gateway
  • AI Security
  • AIOps
  • API Security
  • API Gateway
|
    • API Management
    • API Development
    • API Design
    • Automation
    • Service Mesh
    • Insomnia
    • View All Blogs
  1. Home
  2. Blog
  3. Enterprise
  4. Considerations for Deploying a Multi-Cloud Architecture with Kong Gateway, Kuma Service Mesh and Aviatrix
Enterprise
December 18, 2020
3 min read

Considerations for Deploying a Multi-Cloud Architecture with Kong Gateway, Kuma Service Mesh and Aviatrix

Kong

Introduction

Building a multi-region or multi-cloud environment for your applications requires a lot of attention.

In a typical deployment, you would have an API gateway running close to the several application runtimes. You should enhance your deployment to support different regions in a given cloud, or in an even more distributed and hybrid scenario, multiple services running across other public clouds and on-premise environments.

The task gets even more challenging when we consider service mesh-based applications implementing canary releases, A/B testings, blue-green deployments, etc. Moreover, a zero-trust network requirement for distributed environments should be considered mandatory.

1. Architecting a Global, Multi-Cloud Transit Network

From the networking perspective, the multi-cloud environment should address critical requirements. For example, it should:

  • Be scalable and not require redesign or have scaling impact when it adds/removes new VPC/VNets. As such, it should avoid direct VPC/VNet peering and use a hub-and-spoke-based transit architecture.
  • Support various communication requirements, including public and private IPs, direct peering with two clouds, etc.
  • Provide a scalable networking capability to be consumed by all application components, including the API gateway and service mesh.
  • Assist additional network services, like next-gen firewall (NGFW), IPS, IDS, DPI, etc., that one can insert transparently without re-architecting any aspect of the deployment or changing the application.

In summary, we recommend pursuing three key attributes:

  1. Networking: A repeatable architecture, be it single cloud or multi-cloud
  2. Security: Flexible network architecture to implement connections across different security domains/zones
  3. Operations: Visibility, control and troubleshooting capabilities that don't require in-depth cloud knowledge

Aviatrix provides complete and easy-to-manage connectivity solutions to support all typical networking requirements for single cloud and multi-cloud application development.

2. Implementing Microservice-Based Application Topologies

From the distributed application perspective, you should consider and address all topics listed above. Furthermore, all the necessary networking connectivity requirements should be in place already so you can implement all diverse topologies on top of the multi-region/multi-cloud platform.

Among these topologies and architecture, we could mention:

  • A distributed service mesh deployment with microservices running on different clouds
  • API gateway implementing a single point of contact to microservices running on different environments and all sorts of runtimes like Linux, Docker, Kubernetes, etc.
  • Distributed API gateway layer having a control plane running on a cloud and multiple data planes across different environments and clouds

3. Referencing Architecture Layers

Kong provides technologies to implement both layers in enterprise architecture:

  • Kong API gateway: For multi-cloud and hybrid, optimized for microservices and distributed architectures
  • Kuma: A service mesh implementation for distributed service connectivity

The following picture describes a reference architecture:

Notice the reference architecture focuses on the communication between the service mesh components from the application perspective only.

With the extensible list of networking requirements listed above, we recommend implementing a multi-cloud deployment with a combination of both companies' technologies. The picture below describes an example of a hybrid application platform:

While Kong and Kuma are implementing an application platform composed of both an API gateway and service mesh, Aviatrix solves all networking connectivity idiosyncrasies across multiple clouds.

4. Controlling Your Architecture with Kong and Aviatrix

A multi-region/multi-cloud application platform implementation must deal with multiple abstraction layers, including different network infrastructure and services running across multiple runtimes.

The synergistic use of network support technologies provided by Aviatrix, combined with products designed for cloud environments provided by Kong, allows architects to create topologies for their applications to address their technical and business requirements. In other words, customers conduct the technological decision-making process for the application architecture design. The products used must support the process and not the other way around.

Multi CloudKong GatewayMulti Cloud

More on this topic

Videos

Going Multi-Cloud: Running Kong at Scale Across AWS and Azure

Reports

Kong Konnect

See Kong in action

Accelerate deployments, reduce vulnerabilities, and gain real-time visibility. 

Get a Demo
Topics
Multi CloudKong GatewayMulti Cloud
Share on Social
Kong

Recommended posts

Deploying Hybrid Kong API Gateway with EKS Anywhere

Kong Logo
EngineeringSeptember 8, 2021

Modern microservices -based architectures require companies to change not just the way they build applications but also how to deploy them. Basically, the new microservices foundation should be based on two main pillars: hybrid deployments and Kub

Claudio Acquaviva

What’s Holding Us Back From True Hybrid and Multi-Cloud Applications?

Kong Logo
EnterpriseNovember 3, 2021

There are good reasons for spreading workloads and applications across multiple clouds. Options include using a combination of public and on-premises cloud platforms, a strategy known as hybrid cloud—or using more than one public cloud provider, a s

Shaun O’Meara

Extending Connectivity to Cloud Native and VM-based Applications

Kong Logo
EnterpriseJune 25, 2021

We all know that what customers see in the market is, in fact, only a small percent of the shifts happening within our organizations. Recently, Time Magazine stated that "Every Company is a Tech Company… The Disruption is Just Beginning." We're

Ishwari Lokare

Multi-Cluster & Multi-Cloud Service Meshes With CNCF’s Kuma and Envoy

Kong Logo
EnterpriseSeptember 10, 2020

When we first created Kuma - which means " bear" in Japanese - we dreamed of creating a service mesh that could run across every cluster, every cloud and every application. These are all requirements that large organizations must implement to sup

Marco Palladino

Multi-Cloud API and AI Infra Gets Smarter: Managed Redis for Kong DCGW

Kong Logo
Product ReleasesSeptember 16, 2025

Global, multi-cloud agentic infrastructure Modern enterprises are embracing multi-cloud strategies to avoid vendor lock-in, optimize costs, and ensure resilience. Yet managing API infrastructure (which also happens to be AI infrastructure) across mu

Alex Drag

Kong's Dedicated Cloud Gateways: A Deep Dive

Kong Logo
Product ReleasesJune 18, 2025

Why switch to Dedicated Cloud Gateways? Well, the drivers for moving to managed cloud gateways are simple enough, as they mirror all the reasons behind why you would want to move any workload to the cloud. By choosing a DCGW, you benefit from faster

Michael Field

Terraform Your Way to the Cloud with Konnect Dedicated Cloud Gateways

Kong Logo
EngineeringApril 16, 2025

Automate Everything: Kong Gateway + API Management with Terraform Across Any Cloud Too many organizations manually manage their API gateways and policy enforcement today. As humans, we make mistakes. You’ve got one team manually configuring Kong or

Declan Keane

Ready to see Kong in action?

Get a personalized walkthrough of Kong's platform tailored to your architecture, use cases, and scale requirements.

Get a Demo
Powering the API world

Increase developer productivity, security, and performance at scale with the unified platform for API management, AI gateways, service mesh, and ingress controller.

Sign up for Kong newsletter

    • Platform
    • Kong Konnect
    • Kong Gateway
    • Kong AI Gateway
    • Kong Insomnia
    • Developer Portal
    • Gateway Manager
    • Cloud Gateway
    • Get a Demo
    • Explore More
    • Open Banking API Solutions
    • API Governance Solutions
    • Istio API Gateway Integration
    • Kubernetes API Management
    • API Gateway: Build vs Buy
    • Kong vs Postman
    • Kong vs MuleSoft
    • Kong vs Apigee
    • Documentation
    • Kong Konnect Docs
    • Kong Gateway Docs
    • Kong Mesh Docs
    • Kong AI Gateway
    • Kong Insomnia Docs
    • Kong Plugin Hub
    • Open Source
    • Kong Gateway
    • Kuma
    • Insomnia
    • Kong Community
    • Company
    • About Kong
    • Customers
    • Careers
    • Press
    • Events
    • Contact
    • Pricing
  • Terms
  • Privacy
  • Trust and Compliance
  • © Kong Inc. 2025