A Kafka-native gateway that provides a secure, governed access layer in front of your Kafka cluster. Zilla Plus abstracts brokers, enforces policies, & translates protocols to safely expose data streams to apps, services, & external partners.
Zilla Plus is a Kafka-native edge and service gateway. It is a flexible, secure, and reliable way to create stateless API entry points into your Apache Kafka cluster for both native and non-native Kafka clients, eliminating the need for Kafka Connectors, integration pipelines, custom code, and VPNs.
Use Zilla Plus to securely expose your Kafka cluster to external partners, decouple clients and brokers for disaster recovery, stream data to web/mobile apps for real-time experiences, turn Kafka into an IoT broker, and more!
[SECURE KAFKA GATEWAY]
Enable authorized clients to access your Kafka cluster via a custom domain name over the internet with no changes to underlying brokers. Supports IAM, SASL, and mTLS authentication via integrations with AWS Certificate Manager or your third-party certificate authority of choice.
Multiple Zilla Plus instances require only a single NLB, even if there are multiple brokers. The presence of an NLB ensures that publicly reachable Zilla Plus endpoints to Kafka can be DDoS-protected via AWS Shield.
[VIRTUAL CLUSTERS]
Logically segment a single Kafka cluster to enable multiple independent client groups to operate in isolation. You can define multiple virtual clusters over the same physical Kafka system, allowing different teams or applications to have isolated environments.
[DISASTER RECOVERY]
Deploy Amazon Kafka custom DNS name via Zilla Plus in both primary and secondary AWS regions to support seamless disaster recovery via DNS record update to the secondary AWS region without needing to reconfigure Kafka clients due to a consistent bootstrap server name.
[WEB STREAMING]
Expose Kafka topics via SSE (Server-Sent Events) endpoints and stream messages (with "fanout") to web and mobile clients at scale with reliability and security. Create OpenAPI-compliant REST endpoints that allow clients to POST and PUT updates to Kafka topics.
[IOT INGEST & CONTROL]
Turn Kafka into a fully-fledged IoT broker, enabling MQTT clients to directly publish and subscribe to topics. Both MQTT messages and client state are stored in Kafka, removing the need for a separate dedicated MQTT broker.
[GRPC-KAFKA EVENT MESH]
Turn Kafka into a gRPC server and route service method requests and responses to and from topics. Fan out messages from a Kafka topic to multiple gRPC clients or proxy messages between a gRPC client and server through Kafka, allowing them to communicate as if they are talking directly to each other.
Highlights
[Security & Governance]: Enable authorized clients to access your Kafka cluster via a custom domain name over the internet with no changes to underlying brokers. Supports IAM, SASL, and mTLS authentication. Integrates with AWS Certificate Manager or any third-party Certificate Authority.
[Protocol Translation]: Seamlessly connect both native and non-native Kafka clients to your Kafka cluster. Expose topics via declaratively defined REST, SSE, gRPC, and MQTT APIs. Configure APIs via existing OpenAPI and AsyncAPI specs.
[Performance]: Zilla proxies are stateless and scale out linearly. When multiple Zilla instances are deployed, only a single NLB is required, even if multiple brokers are present. Industry-leading throughput and P99.9 latency benchmarks.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay based on usage, with two separate metering dimensions billed per hour. The first dimension charges for available vCPUs, so your cost rises with the compute capacity you run. The second dimension charges per container running each hour, so cost rises with the number of containers you deploy. These two dimensions work together and add up based on your actual deployment. Pricing scales with the size and count of the workloads you run, rather than a fixed monthly plan. You run the gateway inside your own AWS environment on services like ECS, Fargate, or EC2.
Top-of-mind questions for buyers
What counts as one container for the per-container hourly charge?
Each running instance of the gateway counts as one container per hour. If you deploy the gateway across services like ECS, Fargate, or EC2, each running gateway instance meters separately. Adding or removing instances changes the container count you pay for.
How do the vCPU charge and the container charge combine on my bill?
Both dimensions meter at the same time and add together on one invoice. The vCPU charge tracks the compute capacity you run each hour. The container charge tracks how many gateway instances run each hour. Your total rises with both compute size and instance count.
Am I charged when a gateway instance is stopped or not running?
Charges accrue per hour based on running vCPUs and running containers. The gateway is stateless, so you can add or remove instances without coordination. Instances that are not running do not meter software charges, though underlying AWS resources may still bill separately.
www.aklivity.io+1
Helpful?
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Zilla Plus comes with standard enterprise support, which includes a 24x7, 8-hour SLA via email and direct messaging. Advanced enterprise support with a 2-hour SLA is additionally available. To learn more about our support offerings and engage with the team, please visit https://www.aklivity.io/support .
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
A Kafka-native gateway that provides a secure, governed access layer in front of your MSK cluster. Zilla Plus abstracts brokers, enforces policies, & translates protocols to safely expose data streams to apps, services, & external partners.
Zilla Security solves the #1 security problem organizations face today - preventing identity related data breaches. Zilla enables organizations to establish a security and compliance best practice to eliminate access risk. We've combined comprehensive identity and access governance, and cloud security in a single platform. Zilla monitors and gives you control over all your identity paths to data access. You get least-privilege security with total visibility, ongoing monitoring, and remediation for identity vulnerabilities. Zilla's fully automated, easy-to-use access reviews help you achieve compliance, demonstrate audit readiness, and provide robust evidence of your organization's security measures.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.