Talk details

The Journey of Migrating 2500 Apps to Multi-Cluster Kubernetes and Zero Trust Istio
Topics:
Software Delivery Craft Matters
software architecture
tools
modernization
microservices
maintenance
management
design
Level: Intermediate

Embracing cloud-native technologies and shifting towards a modern infrastructure model is a transformative journey filled with strategic decisions and technical challenges. In this presentation, we delve into the intricacies of migrating 2500 applications to a multi-cluster Kubernetes environment integrated with Zero Trust Istio. Adopting new technologies to meet business demands poses complex challenges, and the outcomes often fall short of initial promises. This session explores what real-life migration journeys entail when adopting platform engineering and surging cloud-native technologies.

Istio, a service mesh, offers significant advantages for large-scale deployments of APIs and services in containerized environments. Many discussions highlight Istio's features but often overlook the practical aspects of operationalizing and harnessing these technologies effectively. We will explore the journey undertaken by a leading European retailer to integrate zero-trust networking across their extensive service network, employing straightforward controls.

Join us as we navigate through the real-world challenges, strategic solutions implemented, and the tangible benefits of deploying Istio across numerous Kubernetes clusters. This talk will cover the stringent demands for security and high availability, providing insights into how these were met through a thoughtful, phased migration strategy. Learn about the operational impacts, scalability of multi-cluster setups, and strategies for handling multi-tenancy and standardization effectively.

Speakers
Craft 2024 - Aram Hakobyan
Aram Hakobyan
Platfrom Lead at Zooplus SE

Over 20 years of technical background includes distributed, highly scalable, and redundant systems design and support; Container Orchestration Systems based on Mesos and Kubernetes, center and infrastructure management and maintenance mainly based on Linux platforms; Distributed and high-performing networks design based on Firewalls, Load Balancers, Routers, Core Switches, etc...