Proxylity UDP Gateway is a fully managed serverless solution that handles UDP and WireGuard traffic directly with AWS Lambda functions, Step Functions, SNS, SQS, DynamoDB, S3, and CloudWatch. Built for developers who need UDP protocol support without managing servers, our gateway eliminates the operational overhead of traditional UDP infrastructure. Handle RADIUS authentication, syslog collection, IoT device communication, and other UDP-based workloads with serverless scalability and pay-per-use pricing. Deploy UDP services in minutes using infrastructure-as-code, with global low-latency routing and built-in high availability across AWS regions.
Proxylity UDP Gateway is a fully managed serverless solution that handles UDP and WireGuard traffic directly with AWS Lambda, IoT Core, CloudWatch Logs, S3, DynamoDB, Step Functions, SNS, SQS, Kinesis, EventBridge, and API Gateway without managing UDP servers. Eliminates operational overhead for IoT device connectivity, syslog collection, CoAP APIs, DNS services, network monitoring, real-time gaming, and legacy protocol integration. Supports WireGuard for strong modern protection of data in transit.
Infrastructure-as-Code Native Design
Deploy production-ready UDP and WireGuard listeners in under 5 minutes using AWS CloudFormation or Terraform. CloudFormation templates define listeners, destinations, IAM roles, client IP restrictions, and batching policies. Official Terraform module available in HashiCorp Registry. Enables GitOps workflows and repeatable deployments.
Serverless UDP to AWS Lambda Integration
Process UDP packets with Lambda business logic instead of managing EC2 instances. Delivers packets as JSON objects with source IP, port numbers, timestamps, and raw payloads. Lambda response streaming enables real-time protocols by sending reply packets progressively throughout execution. Supports all AWS runtimes (Node.js, Python, Java, Go, .NET). Multi-tenant isolation with dynamic tenant ID extraction using Binary Range Expressions. .NET SDK and dotnet templates available. Configurable batching reduces Lambda invocations by up to 90%.
AWS IoT Core Integration for Connected Devices
Bridge UDP devices directly to AWS IoT Core MQTT infrastructure without protocol translation servers. Dynamic topic routing publishes to unique MQTT topics based on device identifiers extracted from payloads, enabling per-device subscriptions, Thing Shadow updates, and Rules Engine integration. Static mode wraps packets in JSON; dynamic mode preserves raw binary payloads. Ideal for industrial sensors, cellular gateways, energy management, connected vehicles, and legacy modernization.
Centralized Syslog Collection and Security Logging
Replace syslog servers with direct CloudWatch Logs integration. Publishes syslog messages (RFC3164, RFC5424, RFC6587) to CloudWatch log groups. Composite destinations route logs to CloudWatch for monitoring with metric filters and alarms, S3 via Firehose for compliance archival (SOC 2, PCI-DSS, HIPAA, FedRAMP), and Lambda for security event processing to AWS Security Hub. Integrates with SIEM platforms (Splunk, Sumo Logic, Datadog) via CloudWatch subscriptions.
Comprehensive AWS Service Integrations
AWS Lambda: Request/response and streaming, tenant isolation
Step Functions: EXPRESS or STANDARD workflow orchestration
API Gateway: Third-party HTTP/HTTPS webhook integration
EventBridge: Event-driven routing patterns
SQS: Standard and FIFO queues with dynamic message group IDs
SNS: Fan-out notification patterns
DynamoDB: Real-time storage with dynamic attribute mapping
S3: Direct object storage for archival
Kinesis Data Streams: Real-time streaming with partition keys
Kinesis Data Firehose: High-volume delivery to S3, Redshift, OpenSearch
CloudWatch Logs: Centralized logging
AWS IoT Core: MQTT topic publishing
Security and Compliance
Zero-trust architecture with IAM role assumption. Client IP restrictions using CIDR notation. All API calls auditable via CloudTrail. Encryption at rest. Compliance-ready for SOC 2, PCI-DSS, HIPAA, FedRAMP with S3 Object Lock. Multi-region deployment supports data residency and GDPR.
Common Use Cases
RADIUS authentication with Lambda querying DynamoDB or RDS. IoT connectivity bridging CoAP to AWS IoT Core. Syslog routing to CloudWatch and Security Hub. DNS filtering with Lambda. Real-time gaming with DynamoDB. SNMP trap collection. Legacy modernization without firmware changes.
Transparent Pricing and Free Tier
1 million packets free monthly. Pay only for delivered traffic with no minimums or contracts. Pricing: $1.25 per million (1-100M) to $0.60 (1T+). Port-hours: $0.00139/hour. Compatible with AWS credits. Batching reduces API calls by 90%. Automatic scaling to zero, no idle costs.
Deploy in under 5 minutes at proxylity.com/docs. Free trial available through AWS Marketplace.
Highlights
Global, high availability architecture delivers UDP and WireGuard traffic to AWS Lambda, Step Functions, SNS, SQS, DynamoDB, and S3 with tunable latency. Deploy in multiple AWS regions for compliance and performance, with automatic high availability and failover.
Simple, transparent usage-based pricing with 1 million packets free per month. Pay only for actual UDP traffic processed. No minimum fees, long-term contracts, or infrastructure costs. Includes generous free tier for development and testing.
Deploy UDP services seamlessly using infrastructure-as-code (Terraform, CloudFormation). Eliminate server maintenance, patching, and scaling concerns. Focus on business logic while we handle network protocols, security, and global infrastructure management.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay for two things: packets processed and active UDP Listeners. Packet pricing uses volume tiers that reset monthly. Your first 1 million packets each month are free. Beyond that, you pay per million packets, with the per-unit rate stepping down as you cross higher volume bands, up to and above 1 trillion packets. Both inbound deliveries and outbound responses count. Each Listener bills per port-hour, regardless of traffic, and is not pro-rated. You also get a free Listener included in your subscription or free tier.
Top-of-mind questions for buyers
What counts as one packet for billing?
A packet is any UDP datagram delivered to a destination or sent back as a response to a client. Packets up to 1KB count as one. Larger packets count as multiples by size in KB, rounded up. A 1.5KB packet counts as 2, and a 3.2KB packet counts as 4.
How do the packet charges and the Listener charge combine on my bill?
Both charges apply at the same time and add together. Each Listener bills per port-hour regardless of traffic. Packet volume bills separately using monthly tiers. If a Listener routes to several destinations, each inbound packet is counted once per destination, multiplying packet charges.
Am I charged for a Listener when no traffic is flowing?
Yes. Each Listener bills per port-hour simply for existing, no matter the traffic. Charges are not pro-rated, so a Listener active for any part of an hour bills the full hour. Deleting a Listener stops new charges after the current hour.
proxylity.com
Helpful?
Vendor refund policy
Refunds will not be provided for past usage. Credits may be applied at discretion of our team. To discuss a credit request, please contact your service representative or reach out to billing@proxylity.com.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
High-End Remote Desktop for Windows with NICE DCV QUIC/UDP Support and NVIDIA GRID Performance Drivers on G4 and G3 graphics-intensive instances (3D Post-Processing, Media & Entertainment, Gaming). Optimized NICE DCV configurations are covered by the charges.
Multiply your UDP traffic to multiple destinations instantly. Duplicate inbound traffic streams to multiple hosts, simplifying complex data flows and test environments.
Multi-Port Forward Server that listens on multiple user-defined ports. Inbound TCP or UDP traffic can be routed to internal or external hosts, and the destination ports can be changed.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.