Blog
  • AI Gateway
  • AI Security
  • AIOps
  • API Security
  • API Gateway
|
    • API Management
    • API Development
    • API Design
    • Automation
    • Service Mesh
    • Insomnia
    • View All Blogs
  1. Home
  2. Blog
  3. Enterprise
  4. Kong Konnect Enterprise & Amazon Elastic Container Service Anywhere (ECS-A)
Enterprise
May 27, 2021
3 min read

Kong Konnect Enterprise & Amazon Elastic Container Service Anywhere (ECS-A)

Claudio Acquaviva
Principal Architect, Kong

One of the most powerful capabilities provided by Kong Konnect API Cloud Platform is the support for Hybrid deployments. In other words, it implements distributed API Gateway Clusters with multiple instances running on several environments at the same time.

Moreover, Kong Enterprise provides a new topology option, named Hybrid Mode, with a total separation of the Control Plane (CP) and Data Plane (DP). That is, while the Control Plane is responsible for administration tasks, the Data Plane is exclusively used by API Consumers.

Read more about Hybrid deployment.

Kong Konnect Enterprise Features

Kong Gateway Enterprise including modules and plugins that extend and enhance the functionality of the Kong Konnect platform.

  • Kong Gateway is a lightweight, fast, and flexible cloud-native API gateway. The gateway runs in front of any RESTful API.
  • Kong Admin API provides a RESTful interface for administration and configuration of Services, Routes, Plugins, and Consumers.
  • Kong Dev Portal is used to onboard new developers and to generate API documentation, create custom pages, manage API versions, and secure developer access.
  • Kong Immunity uses machine learning to autonomously identify service behavior anomalies in real-time to improve security, mitigate breaches and isolate issues.
  • Kubernetes Ingress Controller – Kong for Kubernetes Enterprise (K4K8S) is a Kubernetes Ingress Controller.
  • Kong Manager is the Graphical User Interface (GUI) for Kong Gateway (Enterprise). Use Kong Manager to create new routes and services, activate or deactivate plugins, organize teams, adjust policies, and monitor performance.
  • Kong Gateway plugins provide advanced functionality like authentication, rate-limiting, and transformations.
  • Kong Vitals provides useful metrics about the health and performance of your Kong Gateway (Enterprise) nodes, as well as metrics about the usage of your gateway-proxied APIs.
  • Insomnia enables spec-first development for all REST and GraphQL services.

Kong and AWS

Kong's plug-in architecture and open-source core make the platform extensible for any use case. Kong accelerates moving mission-critical services to the AWS cloud by reducing disruption to the business during and after migration. Kong works and supports all AWS platforms including EC2/ASG, EKS, Lambda, ECS, etc.

Also, Kong enables AWS services integration to legacy on-premise systems that are not designed to handle cloud-volume requests like RDS, Aurora, ElastiCache, Elasticsearch, Cognito, etc.

At the same time, in order to support API Lifecycle processes, Kong provides tools to enhance existing CI/CD pipelines implemented with AWS DevOps services like AWS CodeCommit, AWS CodeBuild and AWS CodePipeline.

Kong Konnect Enterprise and Amazon Elastic Container Service Anywhere (ECS-A)

Amazon Elastic Container Service (ECS) has been one of the most used platforms to deploy Kong Konnect Enterprise API Gateway Cluster. As an example, here is a short presentation on how Kong can take advantage of ECS:

Amazon ECS Anywhere (ECS-A), an extension of Amazon ECS, will allow customers to deploy native Amazon ECS tasks in any environment. This will include the traditional AWS managed infrastructure, as well as customer-managed infrastructure, to implement real Hybrid deployments.

Reference Architecture

This post will explore how to use Amazon ECS-A and Kong Konnect Enterprise to implement a Distributed API Gateway.

Here’s a Reference Architecture of a Hybrid Kong Konnect Enterprise Cluster implemented in Elastic Container Anywhere (ECS-A)

  • The first ECS Cluster implements the Control Plane. Notice the PostgreSQL Database, Control Plane’s metadata repository, is located behind the CP.
  • The second ECS Cluster implements the Data Plane. Notice it’s totally db-less since it connects to Control Plane to receive all APIs definitions with their policies.
  • The AWS Secrets Manager is responsible for storing the Konnect Enterprise license file as well as the Digital Certificate and Private Key pair used to build an encrypted tunnel both Planes use to communicate to each other.

Kong Konnect Enterprise & Elastic Container Service Anywhere (ECS-A)

Conclusion

Kong Konnect Enterprise and Amazon ECS-A make it easy to run services in Hybrid deployments across multiple platforms. You can learn more about products showcased in this blog through the official documentation: Amazon Elastic Container Services and Konnect Enterprise.

Feel free tohttps://konghq.com/blog/engineering/how-to-manage-your-api-policies-with-opa-open-policy-agent apply and experiment with your API policies like caching with AWS ElastiCache for Redis, log processing with AWS Elasticsearch Services, OIDC-based authentication with AWS Cognito, canary, GraphQL integration, and more with the extensive list of plugins provided by Kong Konnect.

This is the Part I of the Kong Konnect Enterprise and AWS ECS-A blog post series. Check back for Part II, including a detailed tutorial on how to deploy Konnect on ECS-A.

Kong KonnectAWS

More on this topic

Webinars

Accelerate Your Financial Services API Strategy in AWS with Kong Konnect

Webinars

EU: Modernization & Maximizing Efficiency in AWS With Kong Konnect

See Kong in action

Accelerate deployments, reduce vulnerabilities, and gain real-time visibility. 

Get a Demo
Topics
Kong KonnectAWS
Share on Social
Claudio Acquaviva
Principal Architect, Kong

Recommended posts

Enable Enterprise-Wide Agentic Access to APIs

Kong Logo
EnterpriseOctober 3, 2025

Feed Agents (and humans, too) with *all* of your APIs While multi-gateway vendor deployments have been found to be lacking as a long-term strategy, the reality is that every large organization is — at some point — going to struggle with trying to wr

Alex Drag

Kong Cloud Gateways: A Year in Review

Kong Logo
Product ReleasesDecember 17, 2025

A quick refresher: Kong Cloud Gateways Kong Cloud Gateways are fully managed, high-performance data planes running on customer-dedicated infrastructure, orchestrated and operated by Kong through Kong Konnect . Customers can choose between: Serverle

Josh Wigginton

Stay Vendor Agnostic: Using an Abstraction Layer to Navigate Acquisitions

Kong Logo
EnterpriseDecember 12, 2025

The challenges of an acquisition frequently appear in a number of critical areas, especially when dealing with a platform as important as Kafka: API Instability and Change : Merged entities frequently rationalize or re-architect their services, whic

Hugo Guerrero

Merge API Management & Identity to Unlock Your API Platform's Potential

Kong Logo
EnterpriseOctober 7, 2025

The challenge: A disconnected world Consider the typical enterprise architecture in a relatively mature organization, an API management layer defines and deploys services to an API gateway, an Identity Provider (IDP) manages human user identities, a

Dan Temkin

The Observability Gap: Why API and AI Monitoring Must Converge Now

Kong Logo
EnterpriseSeptember 25, 2025

The convergence reality Organizations are gradually realizing that API and AI observability aren't two separate problems; they're intertwined and require unified solutions. Without waiting on engineering, it's hard to answer simple questions like "

Alex Drag

Kong Gateway Operator 1.6: Improved Support for Konnect and AWS Transit Gateways

Kong Logo
Product ReleasesJune 3, 2025

We're continuing our efforts to make Kong Gateway Operator (KGO) the preferred way to install, upgrade, scale, and manage a Kong Gateway or Kubernetes Ingress — whether you’re managing from Kong Konnect or Kubernetes. With this latest release, we're

Umair Waheed

Kong Konnect Advanced Analytics: Running Faster Than StatsD

Kong Logo
EngineeringMarch 5, 2025

Using Konnect Advanced Analytics for a faster real-time measurement of what your users are experiencing Earlier this year the Kong Konnect Analytics team was looking to leverage the stability and flexibility of our own Kong Gateway to handle the e

Hiroshi Fukada

Ready to see Kong in action?

Get a personalized walkthrough of Kong's platform tailored to your architecture, use cases, and scale requirements.

Get a Demo
Powering the API world

Increase developer productivity, security, and performance at scale with the unified platform for API management, AI gateways, service mesh, and ingress controller.

Sign up for Kong newsletter

    • Platform
    • Kong Konnect
    • Kong Gateway
    • Kong AI Gateway
    • Kong Insomnia
    • Developer Portal
    • Gateway Manager
    • Cloud Gateway
    • Get a Demo
    • Explore More
    • Open Banking API Solutions
    • API Governance Solutions
    • Istio API Gateway Integration
    • Kubernetes API Management
    • API Gateway: Build vs Buy
    • Kong vs Postman
    • Kong vs MuleSoft
    • Kong vs Apigee
    • Documentation
    • Kong Konnect Docs
    • Kong Gateway Docs
    • Kong Mesh Docs
    • Kong AI Gateway
    • Kong Insomnia Docs
    • Kong Plugin Hub
    • Open Source
    • Kong Gateway
    • Kuma
    • Insomnia
    • Kong Community
    • Company
    • About Kong
    • Customers
    • Careers
    • Press
    • Events
    • Contact
    • Pricing
  • Terms
  • Privacy
  • Trust and Compliance
  • © Kong Inc. 2025