Summary
Keywords
Full Transcript
In this video, we will learn multitenancy and RBAC with Istio. ▬▬▬▬▬Timestamp▬▬▬▬▬▬ 00:00 - 04:00 Intro and agenda 04:01 Background of multi-tenancy in Kubernetes. 10:12 Multi-tenancy in a single cluster 12:47 Multi-tenancy and RBAC in Kubernetes cluster - restricting access to API server. 13:30 Multi-tenancy using Network Policy - restricting communications using IP and port. 15:20 Multi-tenancy using Network Istio - restricting communications using a set of rules with a high degree of control. 18:37 Multi-tenancy and RBAC with Istio 20:00 Sample Authorization Policy 21:20 Demo - Configuring Authorization Policy to restrict namespace and individual services 36:35 Restrict/Allow namespace communications 43:00 Restrict/Allow selective application communication 45:50 Multi-tenancy in multi-cluster with single Istio control plane 49:33 Multi-tenancy in multi-cluster with multiple Istio control plane To access the code used in the webinar, please refer to the public repo: https://github.com/imesh-ai/webinar If you want to learn and train with Istio service mesh from scratch then try our 3hr course:https://www.udemy.com/course/istio-service-mesh-hands-on-fundamentals-for-devops-and-sre/ For more information, you can read our informative blog- https://imesh.ai/blog/implementing-stronger-rbac-and-multitenancy-in-kubernetes-using-istio/ IMESH offers a Kubernetes-native application network and security platform to manage multi-cloud and hybrid-cloud environments. The IMESH platform is built on top of Istio service mesh and Envoy API gateway and helps cloud, platform, and security teams to make Kubernetes applications more secure, manageable, and reliable. ▬▬▬▬▬ Connect ▬▬▬▬▬▬ Website- https://imesh.ai/ Follow us- https://www.linkedin.com/company/imeshai ▬▬▬▬▬▬ Thanks ▬▬▬▬▬▬
