Пікірлер
@palashrangari7854
@palashrangari7854 21 күн бұрын
Can we use traefik ingress controller instead of istio-ingress gateway? Traffic coming from traefik routers fails when the peerauthentication mode is STRICT in all namespace
@youtux2
@youtux2 Ай бұрын
Brilliant! THanks for a clear and easy to understand explanation of what I've seen perceived as a relatively obscure and underappreciated setting, but a very important one!
@palashrangari7854
@palashrangari7854 Ай бұрын
Please make a video for Let's Encrypt as external CA.
@int3rned497
@int3rned497 Ай бұрын
Thank you very much - This helped me set it up in our project! Can you please tell me what is that beautiful VSCode Theme?
@modestas2890
@modestas2890 Ай бұрын
Hi, is there any way to make sure skaffold dev does not delete your persistent volumes? I find this is a deal-breaker when trying to set up a k8s local environment since it erases all of your data everytime.
@ajprasad6865
@ajprasad6865 2 ай бұрын
Thanks so much!
@chandrasekhar5858
@chandrasekhar5858 2 ай бұрын
Hi you explained very well but i have one doubt that where destination rule configuration Please reply me back that helps me to go further in understanding istio
@yashowantanipun1551
@yashowantanipun1551 3 ай бұрын
How do we connect to product service from order pod when strict mode was enforced for both services? How do we get the client certificates ?
@ranrubin7377
@ranrubin7377 3 ай бұрын
Thanks for the video, I'm new to Istio and it's very helpful. You've changed the Istio ingress controller service to NodePort and created another service of LoadBalancer. Why not changing the Istio ingress controller service to LoadBalancer with ALB annotation and avoid the need to another service?
@matc8085
@matc8085 4 ай бұрын
How do you get autocomplete in your terminal
@tuliphitler8159
@tuliphitler8159 4 ай бұрын
How to generate loadbalancer using aws ingress
@vibales
@vibales 4 ай бұрын
Great example, finally got working my project 🎉
@matc8085
@matc8085 5 ай бұрын
Your content on istio is the best
@yehimadojot
@yehimadojot 5 ай бұрын
Like your videos, because you explain the important things in a good way. Can you do also a video about the descheduler? Because if you use Anti-Affinity or Topology Spread Contraints this is only for the scheduler. If you scale down an application (manual or autoscaling), this rules will not be taken in consideration by the descheduler to keep the high-availability. So imo there is a need to keep also a look at the descheduler if you want high availability when autoscaling.
@matc8085
@matc8085 5 ай бұрын
Your content is superb
@tomasferrari92
@tomasferrari92 6 ай бұрын
Do you think having a gateway for each environment (Dev,uat, prod) is a good decision? Thank you!
@matc8085
@matc8085 6 ай бұрын
This was an excellent explanation know I understand the benefit of istio
@TechyWithLorna
@TechyWithLorna 6 ай бұрын
Thank you for the video, so helpful
@sadhucat4476
@sadhucat4476 6 ай бұрын
Solid video, really appreciate the overview explanation at the beginning. Subscribed!
@arozendojr
@arozendojr 7 ай бұрын
Can you answer a question, is it possible to use jaeger + istio, for every request and response event of each microservice? automatic without changing microservice/pod code? How can I look for the configuration I should do?
@domw2391
@domw2391 7 ай бұрын
What protocol you use between communication between services? Rest or gPRC?
@danshepard6851
@danshepard6851 8 ай бұрын
Hey dude, you really helped me with setting this up, even better than AWS's Containers from the Couch. You'll probably never see this, but I really appreciate it!
@ryebridgeriver5473
@ryebridgeriver5473 8 ай бұрын
Great video, I'm subscribing ! I was wondering if I could use topology spread constaints to deploy Pods which consume EBS volumes accross multiple availabilty zones ? Say you have 3 redis replicas and you want to spread them into 3 zones so they'll be able to consume their respective volume if a zone goes down ?
@Angeloti8052
@Angeloti8052 9 ай бұрын
Wow. That was a lot to unpack. very well articulated and delivered. Keep up the good work.
@trevor369
@trevor369 9 ай бұрын
Subscribed 😊
@MrLearner-zr2by
@MrLearner-zr2by 10 ай бұрын
Nice work, Mr. Mwila. It would be great if you could provide a walkthrough of the app you're going to mesh!
@chrispure7461
@chrispure7461 11 ай бұрын
I have kube installed on my bare metal . I have a rest service running on master mode machine ( not in kube). In kube i have some pods which want to access the rest service. How do pods communicate with on kube rest service on one of the node(master node). Pods are getting host not resolved error.
@TheProximator
@TheProximator Жыл бұрын
Great content, thanks a lot :)
@deepsy2k
@deepsy2k Жыл бұрын
about the bridging configuration I didn't have to do it when configuring a cluster without RKE, does kubeadm do it for you when creating a cluster? and even though RKE does all the configuration it doesn't know how to configure the bridging?
@mhosseinhosseini-ld4km
@mhosseinhosseini-ld4km Жыл бұрын
if anyone knows please...does istio uses workload to register/deploy application?
@tintin-wr7vt
@tintin-wr7vt Жыл бұрын
Thank @Lukonde for istio content, it helps me
@Explore_with_Azizul-maqsud
@Explore_with_Azizul-maqsud Жыл бұрын
Awesome. please carry on. Ty
@RafaelDurelli
@RafaelDurelli Жыл бұрын
Great videos. Keep going :)
@saddamsidimouhamed3205
@saddamsidimouhamed3205 Жыл бұрын
Thank you so much for what you doing. That very helpful! Great!
@user-pv3is5zb9u
@user-pv3is5zb9u Жыл бұрын
if we scale the nodes do they add to rancher directly?
@DamienMalakay
@DamienMalakay Жыл бұрын
great video but the guy clearly doesn't reply on his content, I see 2 comments below and still no reply
@rahulgupta395
@rahulgupta395 Жыл бұрын
Do you know how does it work during AZ failure or when specific AWS has capacity issue in a specific AZ?
@ayeleru7489
@ayeleru7489 Жыл бұрын
Nice concise, simple. Great vid. thanks
@HrishikeshLimaye
@HrishikeshLimaye Жыл бұрын
how can we do it for multi setup environments where clusters resides on different region or different aws accounts?
@Luther_Luffeigh
@Luther_Luffeigh Жыл бұрын
I saw you on AWS couch channel but didn’t realize you had your own channel. Thanks to ESO page that pointed to this channel…love your content 🙌🏽🚀🔥
@mrvadym1
@mrvadym1 Жыл бұрын
Nice explnation and demo!
@sabeernitb
@sabeernitb Жыл бұрын
thanks Lukonde for the excellent content, very well explained.
@feezankhattak1573
@feezankhattak1573 Жыл бұрын
Please make an video with let's encrypt for ssl. for parent as well as subdomains. Thanks.
@MrKofiray71
@MrKofiray71 Жыл бұрын
Excellent demo. Are you able to do the same for a Multi Cluster Mesh ?
@kevinm2567
@kevinm2567 Жыл бұрын
I'm just here to say congrats Luke! You taught me Flutter years ago 😄Your growth in tech has been an inspiration to me and many others 💯 Kubernetes is the new frontier and I'm glad to see that you already have experience in this field 🔥
@sg8168
@sg8168 Жыл бұрын
ArgoCD will self-heal the changes by flagger, how to handle this?
@LukondeMwila
@LukondeMwila Жыл бұрын
Hey @sg8168, sorry for the very late response. You can configure the sync interval in ArgoCD using the timeout.reconciliation value in the argocd-cm ConfigMap. Also, the canary rollout duration by Flagger is something you can configure. So you just need to make sure they don't conflict. For example, Flaggers canary rollout time should be less than the ArgoCD sync interval. This way Flagger has enough time to either rollout or rollback before ArgoCD tries to self-heal.
@taniaduggal6459
@taniaduggal6459 Жыл бұрын
🔥🔥 Amazing!!
@CRISTIANESTUPINAN
@CRISTIANESTUPINAN Жыл бұрын
and using LENS can I still see the secrets or could it no longer be done?
@joebowbeer
@joebowbeer 11 ай бұрын
Yes. k8s secrets are best avoided, for the reason you state, among others. Encrypted volumes (e.g., ASCP) are preferred in terms of security. But currently ESO is easier to use with AWS parameter store and secret manager than ASCP, in many cases, so it's a tradeoff.
@mijhaelcastrociviero2848
@mijhaelcastrociviero2848 Жыл бұрын
great tutorial! I think external secrets fits better when you have to manage many kubernetes clusters
@karmarocks
@karmarocks Жыл бұрын
Great video :) If we need to access Linux machine from Windows browser (both machines are connected), how can we change from localhost to Linux machine? Using IP does not work, maybe --address param in kubectl?