Layer7 API Management

 View Only

Migration from 10.1 CR02 appliance based gateway form factor to 11.0 container gateways

  • 1.  Migration from 10.1 CR02 appliance based gateway form factor to 11.0 container gateways

    Posted Mar 11, 2023 01:32 PM

    Hello Team,

    We're currently running our gateway clusters as appliances in a combination of on-prem VMs as well as AVS .Each environment has two types of gateways deployed one at DMZ with dual NICs and one intranet with a single NIC.

    As we're planning for upgrading to gateway v11.0, we're thinking of migrating to MYSQL backed container gateways. The plan is to have the container gateways run in our on-prem openshift clusters and  connect to AWS mysql RDS as the backend DB.

    We want to keep the network architecture similar i.e have one set of container gateways run in the DMZ Openshift Workers nodes and the likewise the intranet gateway containers ones in intranet nodes.

    Currently we use a tactical assertion for running the AWS based assertions.

    We're planning to use the Layer 7's Github published helm charts to install the container gateways, and use the init containers to bootstrap and package the tactical assertions. 

    Once the container gateways have been installed, use restman to export the gateway configurations from our source appliance based gateway and then import it in our container based gateways? 

    Do you see any challenge with this approach based on your experience with other customers, any known limitations that we must be aware of while migrating from appliance to container gateways?

    We are currently using AWS Opensearch for our offbox logging solution and are planning to re-utilize the same for our container gateways as well. 

    Thanks

    Abhishek Bose