SberBank story:
moving Istio from PoC to productionIt Simple Event Hub DBs SERVICE MESH Istio Ingress Istio Egress Other External Services Tracing Store Logging Store LB January 2019 PROD PoC March 2020 Innovation trigger Peak of inflated Disillusionment Slope of Enlightenment Plateau of Productivity Istio 1.1 Don’t Forget about HA & DR Tracing Store Logging Store Event Hub DBs Istio Egress Other External Services Istio Ingress OCP 4 of Disillusionment Slope of Enlightenment Plateau of Productivity Think about Multi-Tenancy Tracing Store Logging Store Event Hub DBs Other External Services OCP 4.4 OCP 4.4 LB LB LB Istio0 码力 | 14 页 | 1.68 MB | 1 年前3
Observability and Istio TelemetryBitmain tech expert Service Mesh Meetup #4 上海海站 2018.11.25Observability CNCF LandscapeMetric, Tracing, LoggingOld game to observeService Mesh is comingProxy and SidecarIstio + Envoy Representative Service out of process adaptor Bypass adpator Adaptor In process Bypass adaptor SkyWalking backend Tracing Metric Receiver in gRPC/HTTP Analysis Core Query CoreIstio telemetry Attribute Vocabulary https://istio0 码力 | 21 页 | 5.29 MB | 6 月前3
Using Istio to Build the Next 5G PlatformAspen Mesh. All rights reserved. Visibility, Observability, Debugging Uniform metrics and tracing for all CNF traffic Enforcement Primitives to Build Zero Trust Strong identity for users, workloads Tuning Istio to Meet 5G Security Requirements 12 ©2021 Aspen Mesh. All rights reserved. ● Augment tracing to surface 5G specific tags ● Optimize HTTP/2 stream and connection settings ● Configure sidecar0 码力 | 18 页 | 3.79 MB | 1 年前3
Istio at Scale: How eBay is building a massive Multitenant Service Mesh using Istio○ Machine Learning Platforms - Tensorflow, PyTorch, Jupyter Notebook, etc. ○ Central Logging & Tracing - Prometheus, ClickHouse, etc. ○ Messaging systems - Kafka, RabbitMQ, etc. ○ Programming Languages functions as features of the infrastructure - ○ Functions: TLS Termination, Traffic Management, Tracing, Rate Limiting, Protocol Adapter, Circuit breaker, Caching, etc. #IstioCon Service Mesh Journey0 码力 | 22 页 | 505.96 KB | 1 年前3
Istio Security Assessmentprovide specific guidance for best practices. Mutual_TLS may be a sane default tracing Provide guidance on whether tracing should be enabled, the sensitive data that it collects in this mode (i.e. full0 码力 | 51 页 | 849.66 KB | 1 年前3
Istio as an API GatewayCanary Deployment ● Traffic Mirroring ● Rate Limiting ● TLS Termination ● Logging, Monitoring, Tracing API Gateway + Service Mesh together! Limitations of This Approach ● Maintaining Two Tools ● Maintaining0 码力 | 27 页 | 1.11 MB | 1 年前3
Istio Meetup China 服务网格安全 理解 Istio CNIand secure microservices. SkyWalking is an observability power tool that provides distributed tracing, service mesh telemetry analysis, metric aggregation and visualization for cloud-native workloads0 码力 | 19 页 | 3.17 MB | 1 年前3
Istio 在 Free Wheel 微服务中的实践Mesh的基础 • 网络安全:兼容Spiffe标准实现 • 配置管理:为C++实现的Proxy接 入k8s的动态配置管理 • Attribute Machine: 授权,Quota ,Tracing,监控的基础 Istio管理下的微服务 • 右图是部署mock1.v1 Pod之后发生的事 情: • Sidecar Injection: 注入initContainer, Sidecar0 码力 | 31 页 | 4.21 MB | 1 年前3
探讨和实践基于Istio的微服务治理事件监控• 应用规模较小 • 服务之间没有互相依赖 • 日志、性能指标都在单个主 机问题一:什么是用户想要的监控 什么是用户想要的监控?分布式监控的三个维度 Metrics Logging Tracing 指标监控 • 指标可被聚合 • 体现系统性能趋势 分布式追踪 • 和请求相关 • HTTP • SQL 日志系统 • 代码逻辑处理事件 • 异常、debug信息容器化和微服务下的监控需求0 码力 | 29 页 | 8.37 MB | 6 月前3
Is Your Virtual Machine Really Ready-to-go with Istio?Stack Bypass ● eBPF ○ In-kernel virtual machine ○ Running user code in kernel space safety ○ Tracing, security ○ Networking ● Hooks ○ sock_ops ■ Construct map ○ sk_msg_md ■ Match & redirect0 码力 | 50 页 | 2.19 MB | 1 年前3
共 12 条
- 1
- 2













