cd /news/ai-infrastructure/how-to-proxy-every-ai-traffic-patter… · home topics ai-infrastructure article
[ARTICLE · art-63792] src=konghq.com ↗ pub= topic=ai-infrastructure verified=true sentiment=· neutral

How to Proxy Every AI Traffic Pattern Through One Gateway

Portkey.ai outlines three AI traffic patterns—App-to-LLM, Agent-to-Agent, and Model Context Protocol—that require a unified proxy gateway for authentication, rate limiting, guardrails, and audit trails, warning that without such a proxy, enterprises face API key leaks, unverified agent actions, and unmonitored MCP server access.

read1 min views52 publishedJul 17, 2026
How to Proxy Every AI Traffic Pattern Through One Gateway
Image: Konghq (auto-discovered)

1. App-to-LLM (North-South Traffic)

App-to-LLM traffic is the direct path from your application to a model provider, like a chatbot calling OpenAI. It needs centralized authentication, per-application rate limits, logging, and guardrails. Because this path handles the raw data payload, the proxy must govern both the connection and the content—managing infrastructure controls (centralized authentication, provider failover, rate limiting) alongside data guardrails (PII sanitization, semantic caching, and prompt injection defense).

Without a Proxy: API keys leak into client repositories, compliance boundaries are breached as sensitive data leaves the network in plaintext, and identical queries repeatedly burn budget by hitting the model instead of a local cache.

2. Agent-to-Agent (East-West Traffic)

Agent-to-agent (A2A) traffic is communication between autonomous agents — one delegating a task to another across services or organizations. Governance here requires establishing verifiable agent identity, enforcing strict per-agent authorization boundaries, and halting cascading, infinite token-depletion loops.

Without a Proxy: Agents execute actions on behalf of other systems without cryptographic identity verification, leaving the enterprise blind to a rapidly growing class of non-human traffic.

3. Model Context Protocol / MCP (Integration Traffic)

MCP traffic connects autonomous agents directly to the local data sources, file systems, and development tools they invoke to execute tasks. Proxying this specialized protocol requires protocol-aware authentication, granular tool-call authorization, and context-window threshold management to safely bound what a model can see and do.

Without a Proxy: Shadow MCP servers spin up across the organization without central access control, granting autonomous agents unmonitored access to internal infrastructure with zero audit trail when a tool call goes wrong.

── more in #ai-infrastructure 4 stories · sorted by recency
── more on @openai 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/how-to-proxy-every-a…] indexed:0 read:1min 2026-07-17 ·