How to get VMs to talk to Kubernetes

A very common scenario in an everyday cloud-native developer’s life is to make disparate systems and services to talk to each other. A classic example is how to call a Kubernetes service from a Virtual Machine (VM) without using LoadBalancer-type Kubernetes services, i.e. using Cluster-IP or Pod-IP. These types of communication needs are common in typical production […]

Kamesh Sampath | January 14, 2022
Read More

Announcing Gloo Edge 1.10 with enhanced AWS Lambda integrations, plus many security, reliability, and ease-of-use improvements

Today, the Solo team released Gloo Edge 1.10, our latest version of the popular Kubernetes-native, Envoy Proxy-based API gateway. The raft of new features are focused on tighter integration with AWS Lambda serverless functions, more observability metrics, security capabilities, and over 100 enhancements altogether. Solo leads the community in making Envoy Proxy the smart choice […]

Nikki Rouda | January 13, 2022
Read More

Blocking the Log4Shell Vulnerability with Gloo Mesh

Zero-trust Security Series Recently, the world of Java development and operations reeled as the Log4J zero-day vulnerability was exposed in CVE-2021-4428. Jim Barton, a Field Engineer at Solo.io, showed us how to thwart this vulnerability through Gloo Edge and WAF (Web Application Firewall) rules using Gloo Edge’s embedded modsecurity rules. Jim’s blog provides a fast […]

Will McKinley | January 10, 2022
Read More

​​BumbleBee: Build, Ship, Run eBPF tools

Today we are thrilled to announce BumbleBee, an open-source project focused on simplifying the user experience around building eBPF tools. BumbleBee helps to build, run and distribute eBPF programs using OCI images. It allows you to focus on writing eBPF code, while taking care of the user space components – automatically exposing your data as […]

Idit Levine | January 5, 2022
Read More

Get started with eBPF using BumbleBee

What is eBPF? eBPF stands for extended Berkeley Packet Filter. The Linux kernel has been around for a long time, however, it is not easy to modify or extend the kernel unless you know how to patch it. If you are familiar with Kubernetes’s custom resources or Envoy filters, you understand how important it is […]

Lin Sun | January 5, 2022
Read More

eBPF for Service Mesh? Yes, but Envoy Proxy is here to stay

  Our goal here at Solo.io is to bring valuable solutions to our customers around application networking and service connectivity. Back in October, we announced our plans to enhance our enterprise service-mesh product (Gloo Mesh Enterprise) with eBPF to optimize the functionality around networking, observability, and security. To what extent can eBPF play a role […]

Idit Levine | December 16, 2021
Read More

Navigating Istio Config: a look into Istio’s toolkit

Let’s talk about debugging Istio by looking directly at the generated Envoy configuration…. An Istio service mesh gives you dynamic traffic control capabilities by deploying an Envoy Proxy next to each of your containers and then programming it with a configuration to drive your desired behavior. Typically, this configuration can be hundreds or thousands of […]

Ram Vennam | December 15, 2021
Read More

Block Log4Shell attacks with Gloo Edge

Headlines have screamed “The Internet’s on fire” since the Log4Shell zero-day vulnerability CVE-2021-44228 emerged. It has been rated with a Critical CVSS score of 10 (out of 10). TechCrunch reports that numerous Big Tech systems are vulnerable. The root cause is an issue in the commonly used open-source Java library Log4j. Many enterprise developers (including yours […]

Jim Barton | December 14, 2021
Read More

A tour of the WasmPlugin resource in Istio 1.12

WebAssembly (Wasm) is a fast, efficient, and portable binary instruction format for programming languages that helps users to extend their web applications as well as their server side applications. It provides an embeddable and safe execution environment for platform extensions and has been gaining momentum with popular cloud-native technologies including Kubernetes, Envoy Proxy, and Istio […]

Lin Sun | December 7, 2021
Read More

Prevent security risks with multi-cluster Istio deployments

Here at Solo.io we treat security very seriously. In order to help ensure good security, when we’re aware of a potential weakness, we aim to address it as quickly and completely as possible. Here’s an example related to istiod, kubeconfig, and multi-cluster Istio service meshes. Istio had a potential CVE report related to the use […]

Nikki Rouda | December 6, 2021
Read More

Deploying Envoy proxies outside Kubernetes with Gloo Edge

Some things should always be separated, shouldn’t they? Like oil and water. Wheat and chaff. Church and state. And how about deploying Envoy proxies and their control planes, like Gloo Edge? By default, you might think of them as living together. In the Gloo Edge documentation, the default scenario deploys an Envoy proxy and its […]

Jim Barton | November 24, 2021
Read More

The 3 best ways to learn Flux and Flagger for GitOps with your Envoy Proxy API gateways

GitOps continues to gain traction as the preferred model for application development and delivery in the age of Kubernetes-orchestrated containers. Here at Solo.io, we are constantly exploring the best ways for you to incorporate Istio and Envoy Proxy for service meshes and API gateways with your GitOps strategy. As you learn about other open source […]

Daniel Wessels | November 16, 2021
Read More