You can deploy AirWatch Content Gateway on a physical or virtual appliance using a standalone installer or as a service on Unified Access Gateway appliance. Deploying the Content Gateway as a service on the Unified Access Gateway eliminates manual configuration and maintenance of Content Gateway using security updates. The Unified Access Gateway appliance platform goes through multiple security audits and patches are provided for security vulnerabilities.

AirWatch Content Gateway offers basic and relay-endpoint architecture models for deployment. Both configurations support load-balancing for high-availability and SSL offloading. Configure your AirWatch Content Gateway deployment in a way that best addresses your security needs and existing setup.

Consider using a load balancer in the DMZ to forward traffic on the configured ports to an AirWatch component. Also consider using dedicated servers to eliminate the risk of other web apps or services causing performance issues.

  Content Gateway (CG) Remote File Storage (RFS)
Configuration Framework Endpoint-Only Relay-Endpoint Standalone Behind CG
AirWatch Deployment
SaaS
On-Premise
Security Options
Load-balancing √* √* √*

SSL Offloading

Server Options
Shared
Dedicated √** √** √** √**
Virtual
Physical

* Recommended – Consider using a load balancer in the DMZ to forward traffic on the configured ports to an AirWatch component. See Load Balancing Content Gateway for more information.

** Recommended – Consider using dedicated servers to eliminate the risk of other web apps or services causing performance issues.