Solo.io Introduces Istio Ambient Mesh
September 08, 2022

Solo.io introduced Istio Ambient Mesh, an evolution of Istio and a next-generation architecture that gives applications and infrastructure teams greater flexibility, security, and performance.

The new framework meets the ever-changing requirements of forward-looking enterprises as they deploy more diverse applications at greater scale. Solo.io co-developed Istio Ambient Mesh with Google, and the new Istio Ambient Mesh architectural framework will be contributed to the Istio Project.

“Istio is the future of service mesh, and Ambient Mesh brings a whole new level of flexibility for companies that deploy Istio — along with ease of use, boosted performance, and reduced cost,” said Idit Levine, CEO and co-founder, Solo.io. “Since its inception five years ago, Istio has become the de facto service mesh standard. All along, we have listened to customers and recognized the need to enable larger, more diverse types of applications. Our work on the Istio Steering Committee and Istio Technical Oversight Committee has placed us in the unique position to chart the course of Istio. We have customers running 30 billion transactions a day — and the number, scope, and scale of these workloads is always increasing. Istio Ambient Mesh allows companies to adjust for cost, observability, and performance based on their individual application needs — this is a market first, and a ‘must-have’ for modern enterprises.”

Solo.io works with some of the largest production deployments of Istio in the industry and, given the company’s Istio community leadership, is well-prepared to meet these enterprise needs.

Until now, the Istio architecture has been centered around a sidecar architecture that ensured maximum security and observability. But as microservice architectures evolved, the need for a strict sidecar architecture for all applications has evolved, with many applications requesting the optimizations of a sidecarless architecture. Istio Ambient Mesh delivers both sidecar or sidecarless architectures, with a consistent control plane for any deployment model. Companies now have greater flexibility to deploy applications on Istio, while continuing to have a proven model for scaling and securing applications.

The Istio community receives a wide variety of feedback from users about how they deploy service mesh to enable microservices applications — everything from performance and security to resource utilization to ease of use. Istio Ambient Mesh addresses several challenges the Istio community has reported, including:

- Improving the performance of applications that use a service mesh

- Reducing the compute/memory overhead resources required for a service mesh

- Simplifying ongoing operations of the service mesh

- Enabling greater flexibility for applications that do not always require full Layer 7 services from the service mesh (for example, if only Layer 4 is needed)

- Enabling multi-tenancy applications using the service mesh, with the full flexibility of both high performance and high security

- Addressing the modularity of future technologies that may be incorporated into the service mesh

Istio Ambient Mesh offers a more flexible set of architectural choices, meaning that performance, security, and application offload can now be configured on a highly granular basis. The new framework also delivers on three critical areas that will improve the overall experience for Istio users. Istio Ambient Mesh:

- Enables a sidecarless architecture that moves the proxy functionality from the pod-level to the node-level, improving overall application performance — and this new architectural option delivers 10-20x less compute and memory overhead, significantly reducing overall cost.

- Delivers a fully transparent experience for applications, which will not only simplify operations, but also make it easier for system upgrades and new applications to be deployed into the mesh.

- Offers a new optional security element, PEP (“policy enforcement point”), that delivers full Layer 7 security inspection.

Istio Ambient Mesh is fully compatible with sidecar-based Istio deployments, and either sidecar or sidecarless deployments are managed by the Istio control plane. With the Ambient Mesh enhancements, Istio delivers both modes with a consistent control plane. Also, with Istio Ambient Mesh, there is no loss of platform or policy management capabilities on the overall service mesh, no loss of application-specific security and application offload capabilities, and no need for application or infrastructure teams to immediately learn new programming languages.

Istio Ambient Mesh is fully open source and part of the Istio project; it is also fully compatible with Istio. Istio Ambient Mesh is an optional configuration of Istio and can co-exist with previous configurations of Istio.

Istio Ambient Mesh is currently available in beta to Solo.io customers and will be fully GA in the upcoming Solo.io Gloo Mesh 2.1 platform release. It is currently available as a tech preview in Gloo Mesh.

Share this

Industry News

November 26, 2024

Check Point® Software Technologies Ltd. has been recognized as a Leader and Fast Mover in the latest GigaOm Radar Report for Cloud-Native Application Protection Platforms (CNAPPs).

November 26, 2024

Spectro Cloud, provider of the award-winning Palette Edge™ Kubernetes management platform, announced a new integrated edge in a box solution featuring the Hewlett Packard Enterprise (HPE) ProLiant DL145 Gen11 server to help organizations deploy, secure, and manage demanding applications for diverse edge locations.

November 26, 2024

Red Hat announced the availability of Red Hat JBoss Enterprise Application Platform (JBoss EAP) 8 on Microsoft Azure.

November 26, 2024

Launchable by CloudBees is now available on AWS Marketplace, a digital catalog with thousands of software listings from independent software vendors that make it easy to find, test, buy, and deploy software that runs on Amazon Web Services (AWS).

November 26, 2024

Kong closed a $175 million in up-round Series E financing, with a mix of primary and secondary transactions at a $2 billion valuation.

November 26, 2024

Tricentis announced that GTCR, a private equity firm, has signed a definitive agreement to invest $1.33 billion in the company, valuing the enterprise at $4.5 billion and further fueling Tricentis for future growth and innovation.

November 25, 2024

Sonatype and OpenText are partnering to offer a single integrated solution that combines open-source and custom code security, making finding and fixing vulnerabilities faster than ever.

November 25, 2024

Red Hat announced an extended collaboration with Microsoft to streamline and scale artificial intelligence (AI) and generative AI (gen AI) deployments in the cloud.

November 25, 2024

Endor Labs announced that Microsoft has natively integrated its advanced SCA capabilities within Microsoft Defender for Cloud, a Cloud-Native Application Protection Platform (CNAPP).

November 21, 2024

Red Hat announced the general availability of Red Hat Enterprise Linux 9.5, the latest version of the enterprise Linux platform.

November 21, 2024

Securiti announced a new solution - Security for AI Copilots in SaaS apps.

November 20, 2024

Spectro Cloud completed a $75 million Series C funding round led by Growth Equity at Goldman Sachs Alternatives with participation from existing Spectro Cloud investors.