1 Apr 2021
This workshop series is for those looking to learn more about how Istio works and how to operationalize it for their organization. In this first of a two-part series of workshops on operationalizing Istio service mesh, we dive into Istio foundations with a focus on understanding how it all works and how to roll it out to your organization.
- 4 participants
- 3:08 hours
24 Mar 2021
Which service mesh is right for you? With an increasing number of mesh technologies, it can be daunting to decide which is best for you organization. In this talk, we explore when you may need a mesh, which features to start with, and how to select the right mesh for you.
- 1 participant
- 48 minutes
24 Mar 2021
WebAssembly filters allow users the power to extend and customize Istio to their liking. But how do organizations actually develop them? Tooling exists for traditional software development, but established methods and tooling are difficult to come by in the emerging WebAssembly ecosystem. In this talk we will attempt to answer the following, based on our experience working Istio + WebAssembly in customer environments for over one year.
- 2 participants
- 33 minutes
24 Mar 2021
Gloo Edge uses Envoy Proxy and after running Envoy in production at a variety of organizations, including some of the largest in the world, we've amassed a deep understanding of how to run Envoy at scale. In this session, we cover some common tips and tricks for operationalizing Envoy, the Gloo control plane, and where to look when things go wrong.
- 2 participants
- 36 minutes
24 Mar 2021
Lin Sun and Louis Ryan from the Istio technical oversight committee, lead an update on the development of the project and the roadmap for 2021.
- 2 participants
- 29 minutes
24 Mar 2021
Istio uses Envoy proxy for both north/south and east/west traffic but the edge requires more complementary pieces to properly secure. In this talk, we explore why you need to treat the edge differently with things like Ext-Auth, Rate Limiting and OPA, and how Gloo Edge comes pre-packaged to integrate with Istio.
- 2 participants
- 35 minutes
24 Mar 2021
Running Istio across multiple clusters can bring a lot of value, but can be difficult. In this session, we review some of benefits of a multi-cluster architecture including single-pane of glass operations and global service routings and what patterns and practices can be used to ease operations.
- 2 participants
- 26 minutes
24 Mar 2021
A developer portal is a necessary piece of technology when facilitating access to services running in your architecture. In this talk, we'll see how the Developer portal for Istio evolves to support more and more workflows and technologies to enable self-service, policy automation, and API security deep within a mesh.
- 2 participants
- 34 minutes
24 Mar 2021
Follow along how Waylay integrated Gloo Edge into their new SaaS platform to achieve on-demand, multi-tenant deployments. The talk will focus on the integration of authentication, metrics and dynamic, claim-based routing.
- 2 participants
- 30 minutes
24 Mar 2021
Learn about T-Mobile’s journey of adopting Istio across 100+ clusters to support microservices for fraud detection, billing, sales and APIs across many teams. The talk will cover things such as tenancy, install/upgrade, feature adoption, CI/CD integration, and architecture tradeoffs.
- 1 participant
- 20 minutes
24 Mar 2021
Lin and Christian will be joined by many guests from the service mesh community to share their passion and belief in service mesh as well as Istio. You will also hear from a few Gloo users and learn about our technical roadmap for Gloo along followed by some interesting demos.
- 19 participants
- 55 minutes
24 Mar 2021
Running a service mesh across multiple clusters, zones, or clouds increases operator burden for day-2 activities. In this talk, we'll see how Gloo Mesh aims to eliminate this burden and overhead.
- 2 participants
- 31 minutes
24 Mar 2021
Including legacy workloads are a reality of today's cloud-native architectures. Technology like Envoy proxy can simplify application networking but what about for legacy technology or security protocols? In this talk we see how running Gloo Edge in large enterprises has influenced the roadmap and improved the evolution of application architectures.
- 2 participants
- 38 minutes
24 Mar 2021
In this talk, we dig deeply into Istio's security policies including Authentication/Authorizations and how it works under the covers with Envoy proxy.
- 1 participant
- 40 minutes
24 Mar 2021
Envoy at the edge continues to evolve as cloud-native architectures include service mesh, mutli-cluster, and multi-platform. In this talk, we'll explore the edge and how it converges with east west topologies.
- 2 participants
- 25 minutes
24 Mar 2021
Collecting telemetry and logging in a service mesh across multiple clusters can be complex. In this session, we look at common multi-cluster observability patterns and how to solve problems like large-scale collection, querying, and aggregation.
- 2 participants
- 26 minutes
24 Mar 2021
Istio has many powerful security features for protecting your applications from malicious actors inside and outside of your network. Users rely on Istio features to meet various compliance standards designed for protection of sensitive data environments. These include encryption, authentication, authorization, monitoring tools, and control of ingress and egress traffic. Unfortunately, enabling and using these features is not as simple as clicking a checkbox. Configuring these policies correctly requires a deeper understanding of default behaviors, installation settings and the Istio CRDs. Failure to configure properly can result in data breaches or unintended behaviors. In this session, you will get an overview of the basics, out of the box functionality, and relevant Istio CRDs. In addition, you learn best practice guidelines for incrementally adopting these features and tools you can use to validate your security posture.
- 1 participant
- 33 minutes
24 Mar 2021
How Pegasystems and Solo partnered to accelerate Pega's journey to Kubernetes and the service mesh. This would discuss how Pega started with Gloo and then moved to Gloo + Istio so that we could gradually introduce new technologies as our business requirements and knowledge of k8s/envoy grew.
- 2 participants
- 29 minutes
24 Mar 2021
In this talk, I'll share the lessons I learned while deploying Istio on multiple Kubernetes clusters with more than 1000 Pods.
I decided to run everything on KinD clusters and I had to tune many parameters at different levels (Linux kernel, Kubernetes, Istio, ...).
After that, I'll explain how multi cluster communication can be configured using either the native Istio discovery service (EDS) or Gloo Mesh. I'll compare both solutions and how they scale.
Finally, I'll demonstrate how Gloo Mesh can be used to provide high-availability of applications across clusters, zones, and regions.
I decided to run everything on KinD clusters and I had to tune many parameters at different levels (Linux kernel, Kubernetes, Istio, ...).
After that, I'll explain how multi cluster communication can be configured using either the native Istio discovery service (EDS) or Gloo Mesh. I'll compare both solutions and how they scale.
Finally, I'll demonstrate how Gloo Mesh can be used to provide high-availability of applications across clusters, zones, and regions.
- 1 participant
- 37 minutes