Slide 1

Slide 1 text

Empower Your Microservices with Istio Service Mesh Hossam Barakat Lead Consultant at Readify @hossambarakat_ | www.hossambarakat.net

Slide 2

Slide 2 text

@hossambarakat_ • Intro to Istio Service Mesh • Istio Architecture • Traffic Routing • Reliability • Observability Agenda

Slide 3

Slide 3 text

@hossambarakat_ Monolith Service Service Service Service

Slide 4

Slide 4 text

@hossambarakat_ Monolith Container Engine Container Container Container Container Orchestration Engine

Slide 5

Slide 5 text

@hossambarakat_ Distributed Services Same Host Service A Service B Host A Service A Host B Service B Network

Slide 6

Slide 6 text

@hossambarakat_

Slide 7

Slide 7 text

@hossambarakat_ • The network is reliable. • Latency is zero. • Bandwidth is infinite. • The network is secure. • Topology doesn't change. • There is one administrator. • Transport cost is zero. • The network is homogeneous. Fallacies of distributed computing

Slide 8

Slide 8 text

@hossambarakat_ We can achieve that using application frameworks

Slide 9

Slide 9 text

@hossambarakat_ Using Application Level Frameworks Host A Service A Host B Service B Network Service Discovery Retry Policies Service Discovery Retry Policies

Slide 10

Slide 10 text

@hossambarakat_ Let’s write this new service in Elixir!

Slide 11

Slide 11 text

No content

Slide 12

Slide 12 text

@hossambarakat_ Host A Sidecar Proxy Sidecar Proxy Service A Host B Service B Service Discovery Retry Policies Sidecar Proxy Service Discovery Retry Policies Network

Slide 13

Slide 13 text

@hossambarakat_ Enter Service Mesh

Slide 14

Slide 14 text

@hossambarakat_ Service Mesh Data Plane

Slide 15

Slide 15 text

@hossambarakat_ Service Mesh Control Plane Control Plane

Slide 16

Slide 16 text

@hossambarakat_ Istio

Slide 17

Slide 17 text

@hossambarakat_ Istio Architecture Service A Service B

Slide 18

Slide 18 text

@hossambarakat_ Istio Architecture Service A Proxy Service B Pilot Proxy Mixer Citadel

Slide 19

Slide 19 text

@hossambarakat_ Istio Architecture Service A Proxy Service B Pilot Proxy Mixer Citadel Control Plane

Slide 20

Slide 20 text

@hossambarakat_ Kubernetes

Slide 21

Slide 21 text

@hossambarakat_ Pods Pod

Slide 22

Slide 22 text

@hossambarakat_ Sidecar Pod

Slide 23

Slide 23 text

@hossambarakat_ Service 10.0.0.2 Pod B 10.0.0.3 Pod C IP: 10.0.0.30 DNS: myservice Service 10.0.0.1 Pod A

Slide 24

Slide 24 text

@hossambarakat_ Espresso Shop

Slide 25

Slide 25 text

@hossambarakat_ Espresso Shop

Slide 26

Slide 26 text

@hossambarakat_ Espresso Shop

Slide 27

Slide 27 text

@hossambarakat_ Espresso Shop Services Web Product Catalog Reviews

Slide 28

Slide 28 text

@hossambarakat_ Espresso Shop on Istio Web Product Catalog Reviews V1 Proxy Proxy Proxy Reviews V2 Proxy X

Slide 29

Slide 29 text

@hossambarakat_

Slide 30

Slide 30 text

@hossambarakat_ Traffic Routing

Slide 31

Slide 31 text

@hossambarakat_ • Envoy Proxy • Pilot Traffic Routing

Slide 32

Slide 32 text

@hossambarakat_ • Envoy is an open source edge and service proxy, designed for cloud-native applications Envoy Proxy

Slide 33

Slide 33 text

@hossambarakat_ Pilot

Slide 34

Slide 34 text

@hossambarakat_ Request Routing Configuration Sidecar DestinationRule VirtualService Gateway ServiceEntry

Slide 35

Slide 35 text

@hossambarakat_ Routing Configurations Web Virtual Service Destination Rule Reviews V1 Reviews V2

Slide 36

Slide 36 text

@hossambarakat_

Slide 37

Slide 37 text

@hossambarakat_ Canary Deployment Web Proxy Reviews V1 Proxy Reviews V2 Proxy

Slide 38

Slide 38 text

@hossambarakat_

Slide 39

Slide 39 text

@hossambarakat_ User Role Based Routing Web Proxy Reviews V1 Proxy Reviews V2 Proxy

Slide 40

Slide 40 text

@hossambarakat_

Slide 41

Slide 41 text

@hossambarakat_ Reliability

Slide 42

Slide 42 text

@hossambarakat_ • Timeout • Retry • Fault Injection • Circuit breakers Reliability

Slide 43

Slide 43 text

@hossambarakat_ Timeout Web Proxy Reviews V1 Proxy

Slide 44

Slide 44 text

@hossambarakat_

Slide 45

Slide 45 text

@hossambarakat_ Fault Injection Web Proxy Reviews V1 Proxy

Slide 46

Slide 46 text

@hossambarakat_

Slide 47

Slide 47 text

@hossambarakat_ Circuit Breaker

Slide 48

Slide 48 text

@hossambarakat_ Observability

Slide 49

Slide 49 text

@hossambarakat_ • Distributed Tracing • Metrics • Success rates • Request volumes • Request duration • Latency Observability

Slide 50

Slide 50 text

@hossambarakat_ Mixer

Slide 51

Slide 51 text

@hossambarakat_ Mixer Adapters https://istio.io/docs/reference/config/policy-and-telemetry/adapters/

Slide 52

Slide 52 text

@hossambarakat_

Slide 53

Slide 53 text

@hossambarakat_

Slide 54

Slide 54 text

@hossambarakat_ Summary

Slide 55

Slide 55 text

@hossambarakat_ • https://github.com/hossambarakat/EspressoShop • Learn Istio using Interactive Hands-on Scenarios (Katacoda) • https://istio.io/docs/ Resources https://bit.ly/istio-ndc-oslo

Slide 56

Slide 56 text

@hossambarakat_ Questions?

Slide 57

Slide 57 text

Thanks Hossam Barakat @hossambarakat_ www.hossambarakat.net