Ory logo

Kong API Gateway Integration

Kong is an open-source API gateway that manages, secures, and routes API traffic, acting as a middleware layer between clients and backend services

Kong logo

Kong API Gateway

Benefits with Ory + Kong API Gateway Integration

Use Cases

CIAM

Solves the challenge of securing consumer microservices by enforcing fine-grained authorization policies at the API gateway edge.

Explore CIAM

B2B IAM

Enhances enterprise security by decoupling complex identity logic from APIs, reducing B2B development overhead.

Explore B2B IAM

Agent IAM

Overcomes the challenge of governing machine traffic by validating AI agent sessions before requests reach backend services

Explore Agent IAM

Core Functionality

  1. Edge-Native Validation

    Validates identity tokens and session cookies directly at the API gateway for minimal latency.

  2. Secure Cryptographic Checks

    Verifies JWT signatures using edge-cached public keys and robust cryptographic plugins.

  3. Seamless Traffic Routing

    Automatically injects authenticated user headers and dynamically blocks unauthenticated requests.

  4. Optimized Performance

    Efficiently manages caching and rate-limiting keyed to validated user identities to protect backend services.

  5. Flexible Implementation

    Adapts easily using standard plugins or custom serverless functions for tailored access control

Frequently Asked Questions