How We Securely Scaled Multi-Tenancy with VCluster, Crossplane... Ilia Medvedev & Kostis Kapelonis

  Рет қаралды 4,290

CNCF [Cloud Native Computing Foundation]

CNCF [Cloud Native Computing Foundation]

Күн бұрын

How We Securely Scaled Multi-Tenancy with VCluster, Crossplane, and Argo CD - Ilia Medvedev & Kostis Kapelonis, Codefresh
What do you do when RBAC with namespaces aren’t enough to meet your multi-tenancy needs? Namespaces are easy to implement but they generally do not provide the level of isolation that is needed when working with external users. Instead of running multiple clusters, which are complex to manage, hard to scale and often costly, we turned to vCluster. vCluster is an open source project that allows you to create virtual clusters in any Kubernetes cluster. Virtual clusters enjoy higher isolation than simple namespaces and can also be used for cluster level resources like CRDs without any versioning conflicts. Using virtual clusters in the Codefresh’s hosted GitOps platform that is powered by thousands of Argo instances we enabled high isolation between tenants while lowering the cost of application multi-tenancy. For most companies, multi-tenancy means supporting multiple teams within an organization, or perhaps a partner. For us, multi-tenancy means providing access to the general public. We needed to go deeper than RBAC, namespaces, and auditing. In this end-user talk, we’ll share how we leveraged vCluster, Crossplane, and Argo CD to approach multi-tenancy, scale, and security in a totally GitOps fashion. You’ve never seen vCluster scale like this before!

Пікірлер: 2
@keneanalemayehu6832
@keneanalemayehu6832 4 ай бұрын
This is very interesting, I am thinking of building Heroku like platform as a side project with this exact approach. One thing am not still clear on is the noisy neighbor issue and whether Vcluster is good enough to provide solid isolation.
@austinloveless5171
@austinloveless5171 Жыл бұрын
Super interesting. I'm curious to see a code sample of the composition that deploys the providers onto the other clusters.
Multi-Tenancy in Kubernetes: Best Practices Today, and Future Directions - David Oppenheimer
36:56
CNCF [Cloud Native Computing Foundation]
Рет қаралды 24 М.
Multi-Cluster Kubernetes - Past, Present, Future - Tim Hockin - #swisscnd 2022
29:32
Cloud Native Bern / Swiss Cloud Native Day
Рет қаралды 3,3 М.
Ozoda - Lada ( Official Music Video 2024 )
06:07
Ozoda
Рет қаралды 32 МЛН
Yay, My Dad Is a Vending Machine! 🛍️😆 #funny #prank #comedy
00:17
MY HEIGHT vs MrBEAST CREW 🙈📏
00:22
Celine Dept
Рет қаралды 51 МЛН
Multi-tenancy architecture | The Backend Engineering Show
25:29
Hussein Nasser
Рет қаралды 41 М.
Multi-tenancy in Kubernetes - Strategies & Considerations
57:48
Loft Labs
Рет қаралды 1,1 М.
Beyond Namespaces: Virtual Clusters are the Future of Multi-Tenancy - Lukas Gentele, Loft Labs
33:38
CNCF [Cloud Native Computing Foundation]
Рет қаралды 3,1 М.
Secure Multi-Tenant GitOps Application & Infrastructure Rollouts...- Vikram Sethi & Manabu McCloskey
37:19
CNCF [Cloud Native Computing Foundation]
Рет қаралды 1,2 М.
Crossplane Intro and Deep Dive - the Cloud Native Control Plane... - Jared Watts & Christopher Haar
36:04
CNCF [Cloud Native Computing Foundation]
Рет қаралды 6 М.
Ozoda - Lada ( Official Music Video 2024 )
06:07
Ozoda
Рет қаралды 32 МЛН