Solo.io Introduces Istio Ambient Mesh
September 08, 2022

Solo.io introduced Istio Ambient Mesh, an evolution of Istio and a next-generation architecture that gives applications and infrastructure teams greater flexibility, security, and performance.

The new framework meets the ever-changing requirements of forward-looking enterprises as they deploy more diverse applications at greater scale. Solo.io co-developed Istio Ambient Mesh with Google, and the new Istio Ambient Mesh architectural framework will be contributed to the Istio Project.

“Istio is the future of service mesh, and Ambient Mesh brings a whole new level of flexibility for companies that deploy Istio — along with ease of use, boosted performance, and reduced cost,” said Idit Levine, CEO and co-founder, Solo.io. “Since its inception five years ago, Istio has become the de facto service mesh standard. All along, we have listened to customers and recognized the need to enable larger, more diverse types of applications. Our work on the Istio Steering Committee and Istio Technical Oversight Committee has placed us in the unique position to chart the course of Istio. We have customers running 30 billion transactions a day — and the number, scope, and scale of these workloads is always increasing. Istio Ambient Mesh allows companies to adjust for cost, observability, and performance based on their individual application needs — this is a market first, and a ‘must-have’ for modern enterprises.”

Solo.io works with some of the largest production deployments of Istio in the industry and, given the company’s Istio community leadership, is well-prepared to meet these enterprise needs.

Until now, the Istio architecture has been centered around a sidecar architecture that ensured maximum security and observability. But as microservice architectures evolved, the need for a strict sidecar architecture for all applications has evolved, with many applications requesting the optimizations of a sidecarless architecture. Istio Ambient Mesh delivers both sidecar or sidecarless architectures, with a consistent control plane for any deployment model. Companies now have greater flexibility to deploy applications on Istio, while continuing to have a proven model for scaling and securing applications.

The Istio community receives a wide variety of feedback from users about how they deploy service mesh to enable microservices applications — everything from performance and security to resource utilization to ease of use. Istio Ambient Mesh addresses several challenges the Istio community has reported, including:

- Improving the performance of applications that use a service mesh

- Reducing the compute/memory overhead resources required for a service mesh

- Simplifying ongoing operations of the service mesh

- Enabling greater flexibility for applications that do not always require full Layer 7 services from the service mesh (for example, if only Layer 4 is needed)

- Enabling multi-tenancy applications using the service mesh, with the full flexibility of both high performance and high security

- Addressing the modularity of future technologies that may be incorporated into the service mesh

Istio Ambient Mesh offers a more flexible set of architectural choices, meaning that performance, security, and application offload can now be configured on a highly granular basis. The new framework also delivers on three critical areas that will improve the overall experience for Istio users. Istio Ambient Mesh:

- Enables a sidecarless architecture that moves the proxy functionality from the pod-level to the node-level, improving overall application performance — and this new architectural option delivers 10-20x less compute and memory overhead, significantly reducing overall cost.

- Delivers a fully transparent experience for applications, which will not only simplify operations, but also make it easier for system upgrades and new applications to be deployed into the mesh.

- Offers a new optional security element, PEP (“policy enforcement point”), that delivers full Layer 7 security inspection.

Istio Ambient Mesh is fully compatible with sidecar-based Istio deployments, and either sidecar or sidecarless deployments are managed by the Istio control plane. With the Ambient Mesh enhancements, Istio delivers both modes with a consistent control plane. Also, with Istio Ambient Mesh, there is no loss of platform or policy management capabilities on the overall service mesh, no loss of application-specific security and application offload capabilities, and no need for application or infrastructure teams to immediately learn new programming languages.

Istio Ambient Mesh is fully open source and part of the Istio project; it is also fully compatible with Istio. Istio Ambient Mesh is an optional configuration of Istio and can co-exist with previous configurations of Istio.

Istio Ambient Mesh is currently available in beta to Solo.io customers and will be fully GA in the upcoming Solo.io Gloo Mesh 2.1 platform release. It is currently available as a tech preview in Gloo Mesh.

Share this

Industry News

November 21, 2024

Red Hat announced the general availability of Red Hat Enterprise Linux 9.5, the latest version of the enterprise Linux platform.

November 21, 2024

Securiti announced a new solution - Security for AI Copilots in SaaS apps.

November 20, 2024

Spectro Cloud completed a $75 million Series C funding round led by Growth Equity at Goldman Sachs Alternatives with participation from existing Spectro Cloud investors.

November 20, 2024

The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native software, has announced significant momentum around cloud native training and certifications with the addition of three new project-centric certifications and a series of new Platform Engineering-specific certifications:

November 20, 2024

Red Hat announced the latest version of Red Hat OpenShift AI, its artificial intelligence (AI) and machine learning (ML) platform built on Red Hat OpenShift that enables enterprises to create and deliver AI-enabled applications at scale across the hybrid cloud.

November 20, 2024

Salesforce announced agentic lifecycle management tools to automate Agentforce testing, prototype agents in secure Sandbox environments, and transparently manage usage at scale.

November 19, 2024

OpenText™ unveiled Cloud Editions (CE) 24.4, presenting a suite of transformative advancements in Business Cloud, AI, and Technology to empower the future of AI-driven knowledge work.

November 19, 2024

Red Hat announced new capabilities and enhancements for Red Hat Developer Hub, Red Hat’s enterprise-grade developer portal based on the Backstage project.

November 19, 2024

Pegasystems announced the availability of new AI-driven legacy discovery capabilities in Pega GenAI Blueprint™ to accelerate the daunting task of modernizing legacy systems that hold organizations back.

November 19, 2024

Tricentis launched enhanced cloud capabilities for its flagship solution, Tricentis Tosca, bringing enterprise-ready end-to-end test automation to the cloud.

November 19, 2024

Rafay Systems announced new platform advancements that help enterprises and GPU cloud providers deliver developer-friendly consumption workflows for GPU infrastructure.

November 19, 2024

Apiiro introduced Code-to-Runtime, a new capability using Apiiro’s deep code analysis (DCA) technology to map software architecture and trace all types of software components including APIs, open source software (OSS), and containers to code owners while enriching it with business impact.

November 19, 2024

Zesty announced the launch of Kompass, its automated Kubernetes optimization platform.

November 18, 2024

MacStadium announced the launch of Orka Engine, the latest addition to its Orka product line.