Istio Egress Gateway Configuration
The concept name was not provided, but based on the sources, this definition covers Istio Gateways in SAP BTP, Kyma Runtime. An Istio Gateway is a component used to manage inbound and outbound traffic at the edge of the service mesh, allowing developers to expose workloads and control how external requests reach services running in a Kyma cluster. Developers can choose between the default gateway or configure a custom Istio Gateway depending on their routing and security requirements. Egress Gateways can additionally be used to route outbound traffic, including mutual TLS (mTLS) requests, from workloads to external services.
Tutorials that teach this
Docs explaining this concept
Prerequisites
- Concept Egress Traffic Control The concept name provided is "undefined," and the supplied source snippets do not contain enough information to define a specific, identifiable SAP developer concept. The sources reference topics such as [Network Policies for the Application Connector Module](https://help.sap.com/docs/btp/sap-business-technology-platform/88a95d9b190f42e68c6d05ba9d1352ce?locale=en-US&state=PRODUCTION&version=Cloud) and [Istio module network policy management](https://help.sap.com/docs/btp/sap-business-technology-platform/7ab48f8496d84bfda479ca651011d064?locale=en-US&state=PRODUCTION&version=Cloud), but without a valid concept name or sufficient source content, a grounded definition cannot be produced.
- Concept Kyma APIRule Creation and Exposure The concept name provided is "undefined," and the available sources do not supply a clear, specific definition for a named SAP developer concept. Based on the sources, which cover topics such as Wildcard Host, Short Host Name, and deploying workloads in the [Kyma environment](https://help.sap.com/docs/btp/sap-business-technology-platform/fe4ba5b46f794037a4aee13df9df2d3c?locale=en-US&state=PRODUCTION&version=Cloud), no single coherent concept labeled "undefined" can be grounded. A developer uses an [APIRule](https://help.sap.com/docs/btp/sap-business-technology-platform/dec7a0b1573c474293d7e36412a4b9a8?locale=en-US&state=PRODUCTION&version=Cloud) in SAP BTP, Kyma runtime to configure routing and expose services, with options such as wildcard hostnames to route traffic from matching subdomains or short host names to simplify configuration.
- Concept Kyma Runtime deployment The concept name is undefined and cannot be determined from the provided source snippets. The sources reference SAP BTP Kyma runtime, Docker containers, and related deployment tutorials, but do not define a specific named concept that can be documented. A meaningful definition cannot be written without a valid concept name grounded in the sources.
- Concept Kubernetes Namespace Management The concept name was not provided (marked as "undefined"), and the available source snippets do not contain enough detail to construct a fully grounded, accurate definition for an unspecified concept. Only [S1] offers substantive content — describing **Kyma Dashboard** as a tool used to access various features and functionalities of [SAP BTP, Kyma runtime](https://help.sap.com/docs/btp/sap-business-technology-platform/482ae2f53fa64568af28ba1349f5836c?locale=en-US&state=PRODUCTION&version=Cloud) — while the remaining sources are tutorial titles without descriptive body text. Without a valid concept name, a reliable definition cannot be produced.
- Concept Kubernetes NetworkPolicy for Egress Traffic Control
- Concept Istio Custom Resource Configuration The provided sources do not contain sufficient information to define the concept **"undefined"**. The sources cover topics such as Istio sidecar containers, Istio trust domains, and network connectivity diagnostics, but none of them describe or explain a concept explicitly identified as "undefined." A definition cannot be responsibly written without source-grounded content.
- Concept Kyma Istio Service Mesh Module The concept name is not defined in the provided sources, so a precise definition cannot be grounded. Based on the available source snippets, the [Istio module](https://help.sap.com/docs/btp/sap-business-technology-platform/26ffe00c24574db58697992b93f397ac?locale=en-US&state=PRODUCTION&version=Cloud) is a [Kyma module](https://help.sap.com/docs/btp/sap-business-technology-platform/0dda141a58d54f29a860a4b3164bf4a9?locale=en-US&state=PRODUCTION&version=Cloud) that developers use to manage and configure the Istio service mesh within SAP BTP, Kyma Runtime. Using Kyma's modular approach, developers can install only the modules they need, and with the Istio module they can expose workloads via Istio VirtualService or Gateway API.
- Concept Mutual TLS (mTLS) and X.509 Certificate Credentials The provided sources do not contain enough information to write a grounded definition for an undefined concept. Please provide a valid concept name and sufficient source snippets to support a definition.
- Concept Kyma Instance Access via kubectl The concept name is missing or undefined, and the provided source snippet does not contain enough detail to identify and define a specific SAP developer concept. Please provide a valid concept name and relevant source snippets so an accurate definition can be written.
- Concept Kyma Cluster Module Configuration The concept name is missing or marked as "undefined," and the provided sources do not contain enough detail to construct a grounded, accurate definition. A valid concept name and supporting source content are required to produce a reliable reference definition.
- Concept Istio Gateway Custom Resource An Istio Gateway Custom Resource (CR) is a Kubernetes resource used to configure an ingress gateway that manages external traffic entering a service mesh. In Kyma, a preconfigured instance of this CR — named `kyma-gateway` — is provided out of the box in the [`kyma-system` namespace](https://help.sap.com/docs/btp/sap-business-technology-platform/f515bd74f3a04d338a8f004f9f1b48b7?locale=en-US&state=PRODUCTION&version=Cloud), allowing developers to expose services externally without manually configuring gateway-level routing rules.
- Concept Istio Service Mesh Istio is an open-source [service mesh](https://help.sap.com/docs/btp/sap-business-technology-platform/ca84edb503ce4999b07237e5eed9eefc?locale=en-US&state=PRODUCTION&version=Cloud) that developers use on SAP BTP to manage and configure communication between workloads in a Kyma cluster. It works by injecting sidecar proxies into Pods, which handle traffic management, observability, and security without requiring changes to application code. Developers use the [Istio module](https://help.sap.com/docs/btp/sap-business-technology-platform/26ffe00c24574db58697992b93f397ac?locale=en-US&state=PRODUCTION&version=Cloud) to expose workloads via VirtualService resources, secure them with JWT authentication, and configure custom Certificate Authority (CA) certificates for mutual TLS.
- Concept Istio ServiceEntry The concept name is not defined in the provided sources, and the sources do not contain sufficient content to construct a grounded definition. A definition cannot be written without a clearly identified concept and supporting source material.
- Concept Kyma Environment The concept name was not provided, so a precise definition cannot be produced from the available sources. Based on the source snippets, the **Kyma environment** is a platform-as-a-service offering within [SAP Business Technology Platform (SAP BTP)](https://help.sap.com/docs/btp/sap-business-technology-platform/15547f7e7ecd47ee9fa052b0e18c7b0a?locale=en-US&state=PRODUCTION&version=Cloud) that allows developers to build, extend, and run applications and services. It supports the consumption of SAP BTP services and uses availability zones to provide resilience and high availability for workloads.
- Concept Istio Module on Kyma The concept name was not provided (marked as "undefined"), and the supplied source snippets do not contain enough shared, focused content to define a single, specific SAP developer concept. The sources touch on distinct topics — reverting Istio module deletion, managing network policies, and exposing workloads via Gateway API in SAP BTP, Kyma Runtime — without a clear unifying concept to define. A valid concept name is required to produce an accurate, grounded definition.