Dedicated Infrastructure in a Multitenant World
CNCF [Cloud Native Computing Foundation] via YouTube
Overview
Explore a conference talk on implementing dedicated infrastructure within multitenant Kubernetes clusters. Learn how Adobe Experience Manager Cloud Service developed solutions to provide customers with dedicated infrastructure components like IPs, DNS, and VPN connectivity while maintaining multitenant cluster efficiency. Discover the extensive use of Envoy for creating secure networking tunnels between Kubernetes pods and customer-specific infrastructure, implementing encryption and mutual authentication with certificates. Gain insights into automating provisioning through Terraform, Kubernetes operators, and other services. Examine the architecture, discuss successful strategies, challenges faced, and valuable lessons learned from running this system in production. Delve into topics such as Envoy VM configuration, certificate rotation, employee debugging, connection pools, and essential resources for implementing similar solutions.
Syllabus
Introduction
Brief introduction about Adobe Experience Manager
Adobe Experience Manager on Kubernetes
Envoy VM configuration
Certificate rotation
Employee debugging
Envoy setup
Connection pools
Resources
Conclusion
Taught by
CNCF [Cloud Native Computing Foundation]