https://store-images.s-microsoft.com/image/apps.35035.a4899440-1b6f-49e3-ab2d-42ba2c244686.dc137ca7-7cf0-4c71-b15b-5f4694c4f26b.419a0f5b-8b6c-4b8c-8fbd-a3eb946f0d7d

Tetrate Enterprise Gateway (Transactable)

by Tetrate

Azure benefit eligible

Tetrate Enterprise Gateway (TEG) is a cloud-native, Envoy-based API gateway for Kubernetes

Tetrate Enterprise Gateway (TEG) is an enterprise-grade, Envoy-based API gateway and Kubernetes ingress controller optimized for Azure Kubernetes Service (AKS) deployments. Built for organizations with demanding security, compliance, and scale requirements, TEG provides comprehensive traffic management, advanced security controls, and deep observability that seamlessly integrates with Azure ecosystem services including Azure Monitor, Azure Active Directory, Azure Key Vault, and Azure DevOps.

Supporting both the modern Kubernetes Gateway API standard and legacy Istio ingress patterns, TEG enables platform teams to deliver secure, scalable, and policy-driven API infrastructure across multi-cloud, hybrid, and on-premises environments. TEG’s cloud-native architecture leverages GitOps workflows for declarative configuration management, namespace-level multi-tenancy for secure team isolation, and zero-downtime updates that align with modern DevOps practices, making it the ideal choice for financial services, healthcare, government, and regulated industries operating on Azure.

Core capabilities include:
  • Advanced Traffic Routing (path-based, header-based, weighted, canary deployments)
  • Enterprise Security (Web Application Firewall with OWASP ModSecurity rules, rate limiting with Redis backend, OAuth2/OIDC/JWT authentication, mutual TLS encryption, FIPS 140-2 compliance)
  • Centralized certificate lifecycle management with automated rotation
  • Multi-cluster federation for consistent policy enforcement
  • Real-time observability through Prometheus metrics and Azure Monitor integration
  • Distributed tracing with Jaeger/Zipkin
  • Request/response transformation
  • External authorization services
  • Custom Envoy filters via WebAssembly
  • HTTP/3 and gRPC support
  • TCP/UDP proxying
  • Extensive protocol support (REST, GraphQL, WebSocket)

Organizations achieve:
  • 60-70% reduction in operational overhead
  • Faster time-to-market with self-service API provisioning
  • Complete visibility into API traffic and security events
  • Horizontal scalability across Azure Availability Zones with 99.99% SLA
  • Seamless integration with Azure Arc for hybrid deployments, Azure Policy for compliance automation, and Azure Private Link for secure backend connectivity

TEG provides the robust, future-proof foundation required for successful cloud-native transformation on Azure.

At a glance

https://store-images.s-microsoft.com/image/apps.43733.a4899440-1b6f-49e3-ab2d-42ba2c244686.dc137ca7-7cf0-4c71-b15b-5f4694c4f26b.9e054570-2f8d-44de-9a07-9fd6616779ce
https://store-images.s-microsoft.com/image/apps.35490.a4899440-1b6f-49e3-ab2d-42ba2c244686.dc137ca7-7cf0-4c71-b15b-5f4694c4f26b.bf5f8c19-2b48-4c08-917e-2565222e8b10