Where does the Mykonos Web Security (MWS) Appliance live in my network?

The MWS acts as a reverse proxy, sitting logically between end users on the internet and the application server, or servers, it protects. The MWS is limited to HTTP and HTTPS traffic and doesn’t serve as a hardware routing device, operating at Layer 7 (Application) rather than Layer 3 (Network).  In a normal deployment, the MWS will sit logically between the site’s load balancer and the application server.  

If your site employs a Web Application Firewall (WAF)  the MWS can go either between the WAF and the Load Balancer, or between the WAF and the Application server.  We recommend placing the MWS between the WAF and the Load Balancer in order to see all of the potentially hostile traffic.
