Requirements and limitations

Ensure the following requirements are met in order to run Airlock Microgateway successfully. Note that in addition to the following requirements, a valid license is required to operate Airlock Microgateway.

  • Mixing different versions like Airlock Microgateway Operator in version 4.x and Microgateway Engine in version 4.y is not supported.
  • WebSocket support is limited to HTTP/1.1.

Compatibility overview

The following table shows the general version range of different platforms Airlock Microgateway supports.

Platform

Supported version range

Official manufacturer documentation

Kubernetes (K8s)

  • 1.30 – 1.32

Kubernetes Gateway API

  • 1.0 – 1.2 (standard channel)
  • 1.2 (experimental channel)1

OpenShift

  • 4.14 / 4.16 / 4.17

The link below opens the latest OpenShift release notes. To access the release notes of a different version, use the selector drop-down menu on the page.

OpenShift Service Mesh

  • 2.6

The link below opens the latest OpenShift release notes. To access the release notes of a different OpenShift version, use the selector drop-down menu on the page. OpenShift Service Mesh release notes can be searched within the documentation.

Istio Service Mesh

  • 1.22 – 1.24

Anthos Service Mesh

  • 1.22 – 1.24
1

The K8s Gateway API experimental channel is only required for the incubating feature of upstream TLS support between the Microgateway Engine and the application Service. See article Release notes and incubating features in Airlock Microgateway.

For compatibility with Kubernetes releases with Istio, Anthos, and OpenShift Service Meshes, see the official manufacturer's documentation.

Additional components

Airlock Microgateway requires the following components to run:

Component

Tested version

Description

cert-manager

v1.16

The cert-manager is required to secure the connection between Kubernetes API server to the Microgateway Operator Webhook.

To install the cert-manager, follow the manual: installation of the cert-manager

Network communication

The following network communication is required:

From

To service

To namespace

To port

To protocol

Microgateway Engine container

airlock-microgateway-operator-xds

<Microgateway Operator namespace>

13377

TCP