Airlock Header

Microgateway 4.7

with improved performance

Microgateway 4.7 introduces multiple improvements that make operating in Kubernetes environments more efficient: enhanced performance with documented performance data, new options for session handling, and extended OIDC functionality.

Performance

For Microgateway 4.7, performance improvements were a primary focus. Detailed performance metrics are now available, providing valuable guidance for architecture design and environment sizing. Even before go-live, the various performance profiles show how few resources Airlock Microgateway requires and how quickly it processes requests.

The example shows how different operating modes affect throughput:

  • Reverse Proxy only delivers maximum raw performance without security filters.
  • Filtering enables content security filters for strong protection while maintaining high throughput.
  • Filtering + Authentication combines content security filters with OIDC, token introspection, and token exchange – ensuring maximum security with predictable load.

Session handling enhancements

Administrators now have significantly more control over session behavior:

  • Session Idle Timeout – Configurable idle time for sessions.
  • Session Cookie – Attributes such as name, domain, path, and other settings are now freely configurable.
  • Session Mode – The new mode allows for sessionless operation if desired.
  • Session ID – Simplifies analysis and tracking of requests processed within a session.

These enhancements lay the groundwork for upcoming features such as Single Logout (SLO), logout propagation, session hijacking prevention, and more.

OIDC enhancements

Airlock Microgateway 4.7 introduces substantial improvements in the area of OpenID Connect (OIDC) for more flexible and secure integration with identity providers:

 

  • Token Introspection – new strategy "periodic": To maintain high security while reducing load on the OIDC provider, the new “periodic” strategy has been introduced. Token validity is checked at configurable intervals – ideal for high-traffic environments.
     
  • Token Exchange – configurable subject_token_type: Expands the possibilities for secure token exchange between services. This allows complex OIDC topologies to be mapped even more effectively – for example, when accessing resources across different domains or in cross-microservice authentication flows.

 

With these enhancements, we continue to develop OIDC functionality and lay the foundation for new use cases.

This new release introduces numerous improvements for greater security, flexibility, and seamless integration. We look forward to your suggestions and feedback as we continue to improve Microgateway!

Airlock Microgateway 4.7 release video

Watch our release video to find out about all the new features of Airlock Microgateway 4.7.

Information for you

-Our whitepapers-

Whitepaper: How to make cIAM a success

Increasing requirements for security and user-friendliness make Customer Identity and Access Management an essential. Read our whitepaper to find out how you can secure your competitive advantage with the right CIAM strategy.

 

Request whitepaper

Whitepaper: Security for cloud-native applications

You can read about how companies can ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between heise and Airlock.

 

Request whitepaper

Whitepaper: Zero Trust is a journey

The ongoing digital transformation of the world is progressing and having a profound impact on our personal and professional lives in ways that were difficult to imagine just a few years ago.


This white paper discusses the effects of continuous digitalization and its impact.

Request free of charge

Off to DevSecOps

In this white paper, you will learn the most important insights into how you can implement DevSecOps successfully and efficiently, which security components are required for this and the advantages of a microgateway architecture.

 

Request free of charge

Airlock 2FA - Strong authentication. Simple.

Double security - this is what two-factor authentication offers in the field of IT security.


Find out more about strong authentication and the possibilities offered by Airlock in our white paper.

Download for free

Further whitepapers

We provide you with free white papers on these and other topics:

 

  • Successful IAM projects
  • compliance
  • Data protection (DSGVO)
  • Introduction of PSD2
  • PCI DSS requirementsPCI DSS requirements
Request free of charge