Istio-redirector: the way
to go to manage
thousands of HTTP
redirectionsBy creating a tool to ease the transition from a .csv file to an Istio VirtualService file ## • Golang service ☐ Convert .csv to VirtualService ☐ Open Pull Request on Github ☐ Fetch info from Kubernetes0 码力 | 13 页 | 1.07 MB | 1 年前3
Istio audit report - ADA Logics - 2023-01-30 - v1.0summarised ## 6 fuzzers written and added to Istio's OSS-Fuzz integration ## 1 CVE found in Golang ## 1 vulnerability found that affected Googles managed Istio offering ## 11 issues found • 5 system Google’s managed Istio offering, and it led to further investigation that revealed a vulnerability in Golang itself. The finding was reported by the auditing team to the Istio maintainers, because Istio does MaxBytesHandler introduces an http request smuggling attack vector. The issue was disclosed to the Golang security team who fixed the vulnerability and assigned it CVE-2022-41721. ## Project summary Ada0 码力 | 55 页 | 703.94 KB | 2 年前3
Istio Security Assessment>Kubernetes Service MeshMethod Code-assisted Platforms Golang, Kubernetes Dates 2020-07-06 to 2020-07-31 Environment Local access to the control plane can obtain unauthenticated access to this information. Description The Golang trace profiling library used by Pilot provides administrators debug information about Pilot itself current implementation used by pilot-a gent to generate the initial Envoy proxy configuration uses the Golang text/template package to render a text template into a JSON file. This implementation does not perform 0 码力 | 51 页 | 849.66 KB | 2 年前3
Automate mTLS
communication with
GoPay partners with
Istiointernal API calls • 3000+ deployments every week • REST as well as gRPC services Services written in Golang, Java, Clojure, Ruby ## gRPC, Envoy, and gopay • GoPay has been using gRPC since 2016 - GoPay had0 码力 | 16 页 | 1.45 MB | 2 年前3
Istio at Scale: How eBay is building a massive Multitenant Service Mesh using IstioClickHouse, etc. ☐ Messaging systems - Kafka, RabbitMQ, etc. ☐ Programming Languages - Java, Python, Go, Golang, Scala, etc. ## ● Running on variety of Hardware ☐ General-purpose x86 servers ☐ GPUs #IstioCon0 码力 | 22 页 | 505.96 KB | 1 年前3
Istio 在 Free Wheel 微服务中的实践业务端产品需要对接客户,提供视频广告投放优化界面,类似于 Web ERP,是一个典型的三层架构。 ## 微服务之痛 - 两年来,我们将若干复杂的Rails单体应用拆分、迁移到微服务架构,逻辑用Golang重写,引入了Kubernetes。随着模块越来越多,复杂的通信带来矛盾日渐突出:流量管理、监控... ## 最初的尝试:Gateway - 如右图,最初我们尝试用一个自研的简单Gateway来0 码力 | 31 页 | 4.21 MB | 1 年前3共 6 条- 1













