Lesson 4 / 26
Gateway vs Mesh vs Load Balancer vs Ingress
Place each component correctly and know how Kubernetes Ingress and the Gateway API fit.
Overlapping tools, different jobs
A load balancer spreads connections across servers (layer 4 or 7) and is the simplest building block. A reverse proxy (nginx, HAProxy, Envoy) forwards requests and is the engine inside many other products. An API gateway adds API-specific policy (keys, quotas, transformation, developer portal, analytics) on top. In Kubernetes, an Ingress resource describes HTTP routing from outside to services and needs an ingress controller to implement it; the newer Gateway API (Gateway, HTTPRoute) is a more expressive, role-oriented successor that many gateways and meshes support. A service mesh is about service-to-service traffic and can also provide an ingress gateway. Real systems often combine: cloud load balancer → API gateway → mesh.
Where each one sits
Use the table to decide which layer owns a given requirement.
Component Scope Typical jobs
Load balancer L4/L7, any traffic spread load, health checks, TLS passthrough
Reverse proxy L7 routing, caching, compression (nginx, HAProxy, Envoy)
API gateway north-south auth, quotas, rate limits, transformation, analytics
Ingress / Gateway API (K8s) cluster edge declarative routes into the cluster
Service mesh east-west mTLS, retries, circuit breaking, telemetry between servicesQuick check: Which is mainly about service-to-service traffic inside a cluster?
- CDN
- Service mesh
- DNS registrar
- Email gateway
Answer
Service mesh — A mesh governs east-west calls; gateways and ingress handle the edge.