The AirWatch Content Gateway is a product you can install on physical or virtual servers that reside in either the DMZ or a secured internal network zone.
VMware Tunnel offers two architecture models for deployment: basic endpoint and relay-endpoint. Both configurations support load-balancing for high availability and SSL offloading.
Configure your AirWatch Content Gateway deployment in a way that best addresses your security needs and existing setup. The variety of available options provides administrative flexibility when deciding on solution architecture.
Consider using a load balancer in the DMZ to forward traffic on the configured ports to an AirWatch component. Also consider using dedicated servers to eliminate the risk of other web apps or services causing performance issues.
|Content Gateway (CG)||Remote File Storage (RFS)|
|Configuration Framework||Endpoint-Only||Relay-Endpoint||Standalone||Behind CG|
* Recommended – Consider using a load balancer in the DMZ to forward traffic on the configured ports to an AirWatch component.
** Recommended – Consider using dedicated servers to eliminate the risk of other web apps or services causing performance issues.