diff --git a/.spelling b/.spelling index 5f6cae85cf14..40b970da3ba7 100644 --- a/.spelling +++ b/.spelling @@ -87,6 +87,7 @@ 4ms 4s 5000qps +50k 50Mb 5ms 5xx @@ -212,6 +213,7 @@ BluePerf Bluesky boilerplates bol.com +Bolot Bookinfo bookinfo boolean @@ -240,6 +242,7 @@ CDNs CentOS Cernich CFP +Chaand Chandrasekhara channel Chaomeng @@ -582,6 +585,7 @@ gdb GenAI Geneve GEP-91 +Gergely GHSA-8mq4-c2v5-3h39 GiB GIDs @@ -743,6 +747,7 @@ jason Jayaraman Jeet Jianpeng +Jin Jog Joglekar Jonh @@ -766,6 +771,7 @@ k8s Kafka kagent Karim +Karma's katacoda Katie Kaul @@ -856,6 +862,7 @@ Luyao Lyft macOS Maertens +Maertens Maglev maintainership Makefile @@ -1013,6 +1020,7 @@ p90 p99 PaaS Padmanabhan +Pankaj Papertrail parenthesization Parienty @@ -1080,6 +1088,7 @@ proxyless proxy_http_version Pub/Sub PubNub +Punakshi pwd px.dev Qin @@ -1163,6 +1172,7 @@ Savcı sayin Schaaf Schade +Schade schedulable schemas SDKs @@ -1211,6 +1221,7 @@ Sidecarless SignalFX Signout sigstore +Sikka sinkInfo SkyWalking slack.istio.io @@ -1485,6 +1496,7 @@ Xie Xining xRoute Xu +Xuan Yahya yaml yamls diff --git a/content/en/blog/2025/istio-at-kubecon-na/cncf-awards.png b/content/en/blog/2025/istio-at-kubecon-na/cncf-awards.png new file mode 100644 index 000000000000..5d634acf655a Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/cncf-awards.png differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/index.md b/content/en/blog/2025/istio-at-kubecon-na/index.md new file mode 100644 index 000000000000..5e66639de3cb --- /dev/null +++ b/content/en/blog/2025/istio-at-kubecon-na/index.md @@ -0,0 +1,116 @@ +--- + +title: "Istio at KubeCon + CloudNativeCon North America 2025: A Week of Momentum, Community, and Milestones" +description: "Highlights from Istio Day and KubeCon North America 2025 in Atlanta." +publishdate: 2025-11-25 +attribution: "Faseela K, for the Istio Steering Committee" +keywords: ["Istio", "KubeCon", "service mesh", "Ambient Mesh", "Gateway API"] + +--- + +{{< image width="75%" link="./kubecon-opening.jpg" caption="Istio at KubeCon NA 2025" >}} + +KubeCon + CloudNativeCon North America 2025 lit up Atlanta from **November 10–13**, bringing together one of the largest gatherings of open-source practitioners, platform engineers, and maintainers across the cloud native ecosystem. For the Istio community, the week was defined by packed rooms, long hallway conversations, and a genuine sense of shared progress across service mesh, Gateway API, security, and AI-driven platforms. + +Before the main conference began, the community kicked things off with **Istio Day on November 10**, a colocated event filled with deep technical sessions, migration stories, and future-looking discussions that set the tone for the rest of the week. + +## Istio Day at KubeCon NA + +Istio Day brought together practitioners, contributors, and adopters for an afternoon of learning, sharing, and open conversations about where service mesh—and Istio—are headed next. + +{{< image width="75%" link="./istioday-opening.jpg" caption="IstioDay: North America" >}} + +Istio Day opened with [Welcome + Opening Remarks](https://www.youtube.com/watch?v=f5BxnlFgToQ) from John Howard from Solo.io and Keith Mattix from Microsoft, setting the tone for an afternoon focused on real-world mesh evolution and the growing energy across the Istio community. + +The day quickly moved into applied AI with [Is Your Service Mesh AI Ready?](https://www.youtube.com/watch?v=4ynwGx1QH5I), where John Howard explored how traffic management, security, and observability shape production-grade AI workloads. + +{{< image width="75%" link="./istioday-talk.jpg" caption="IstioDay: Is Your Service Mesh AI Ready" >}} + +Momentum continued with [Istio Ambient Goes Multicluster](https://www.youtube.com/watch?v=7dT2O8Bnvyo) as Jackie Maertens and Steven Jin Xuan from Microsoft demonstrated how Ambient Mesh behaves across distributed clusters—highlighting identity, connectivity, and operational simplifications in multi-cluster deployments. + +A burst of energy came with the lightning talk [Validating Your Istio Setups? The Tests Are Already Written](https://www.youtube.com/watch?v=ViUMfYzc8o0), where Francisco Herrera Lira from Red Hat showed how built-in validation tooling can catch common configuration issues before they reach production. + +In [Optimizing Istio Autoscaling: From Resource-Centric to Connection-Aware](https://www.youtube.com/watch?v=wHvS_h7FBv4), Punakshi Chaand and Pankaj Sikka shared how Intuit improved reliability by tuning autoscaling behaviors based on connection patterns rather than raw resource metrics. + +Next, [Running Databases in Istio’s Service Mesh](https://www.youtube.com/watch?v=3Jy9VKWgHww) with Tyler Schade and Michael Bolot from GEICO Tech challenged long-held assumptions, offering practical lessons on securing and operating stateful workloads inside a mesh. + +Modernizing traffic entry points took the stage as Lin Sun from Solo.io and Ahmad Al-Masry from Harri walked through [Is Zero-Downtime Migration Possible? Moving From Ingress & Sidecars to Gateway API](https://www.youtube.com/watch?v=J0SEOc6M35E), focusing on progressive migration strategies that avoid outages during architectural shifts. + +The final session, [Credit Karma's Istio Migration: 50k+ Pods, Minimal Impact, Lessons Learned](https://www.youtube.com/watch?v=OjT4NmO5MvM), saw Sumit Vij and Mark Gergely outline how they executed one of the largest Istio migrations to date with careful automation and rollout discipline. + +The day closed with [remarks from John Howard and Keith Mattix](https://www.youtube.com/watch?v=KU30VVnoAf0), celebrating the speakers, contributors, and a community that continues to push the boundaries of what Istio makes possible. + +## Istio at the Main KubeCon Conference + +Outside of Istio Day, the project was highly visible across KubeCon, with maintainers, end users, and contributors sharing technical deep dives, production stories, and cutting-edge research. + +This KubeCon was especially meaningful for the Istio community because Istio appeared not only across expo booths and breakout sessions, but also throughout several of the KubeCon keynotes, where companies showcased how Istio plays a critical role in powering their platforms at scale. + +{{< image width="75%" link="./istio-at-keynotes.png" caption="Istio at KubeCon Keynotes" >}} + +The week’s momentum fully met its stride when the Istio community reconvened with the [Istio Project Update](https://www.youtube.com/watch?v=vdCMLZ-4vUo), where project leads shared latest releases, roadmap advances, and how Istio is meeting emerging demands from AI workloads, multicluster mesh, and operational scale. + +In [Istio: Set Sailing With Istio Without Sidecars](https://www.youtube.com/watch?v=SwB7W8g9r6I), attendees explored how sidecar-less Ambient Mesh architecture is rapidly moving from experiment to adoption, opening new possibilities for simpler deployments and leaner data-planes. + +The session [Lessons Applied Building a Next-Generation AI Proxy](https://www.youtube.com/watch?v=qa5vSE86z-s&pp=0gcJCRUKAYcqIYzv) took the crowd behind the scenes of how mesh technologies adapt to AI-driven traffic patterns—applying the mesh not just to services, but to model-serving, inference, and data flow. + +Over at **Automated Rightsizing for Istio DaemonSet Workloads (Poster Session)**, practitioners gathered to compare strategies for optimizing control-plane resources, tuning for high scale, and reducing cost without sacrificing performance. + +The narrative of traffic-management evolution featured prominently in [Gateway API: Table Stakes](https://www.youtube.com/watch?v=RWFDjA6ZeWc) and its faster sibling [Know Before You Go! Speedrun Intro to Gateway API](https://www.youtube.com/watch?v=Cd0hGGydUGo). These sessions brought forward foundational and introductory paths to modern ingress and mesh control. + +Meanwhile, [Return of the Mesh: Gateway API’s Epic Quest for Unity](https://www.youtube.com/watch?v=tgs6Wq5UlBs) scaled that conversation: how traffic, API, mesh, and routing converge into one architecture that simplifies complexity rather than multiplies it. + +For long-term reflection, [5 Key Lessons From 8 Years of Building Kgateway](https://www.youtube.com/watch?v=G3Iu2ezSkVE) delivered hard-earned wisdom from years of system design, refactoring, and iterative improvements. + +In [GAMMA in Action: How Careem Migrated To Istio Without Downtime](https://www.youtube.com/watch?v=igJXmbwMYAc&pp=0gcJCRUKAYcqIYzv), the real-world migration story—a major production rollout that stayed up during transition—provided a roadmap for teams seeking safe mesh adoption at scale. + +Safety and rollout risks took center stage in [Taming Rollout Risks in Distributed Web Apps: A Location-Aware Gradual Deployment Approach](https://www.youtube.com/watch?v=-fhXEJD-ycs), where strategies for regional rollouts, steering traffic, and minimizing user impact were laid out. + +Finally, operations and day-two reality were tackled in [End-to-End Security With gRPC in Kubernetes](https://www.youtube.com/watch?v=fhjiLyntYBg) and [On-Call the Easy Way With Agents](https://www.youtube.com/watch?v=oDli4CBkky8), reminding everyone that mesh isn’t just about architecture, but about how teams run software safely, reliably, and confidently. + +## Community Spaces: ContribFest, Maintainer Track & the Project Pavilion + +At the Project Pavilion, the Istio kiosk was constantly buzzing, drawing users with questions about Ambient Mesh, AI workloads, and deployment best practices. + +{{< image width="75%" link="./istio-kiosk.png" caption="Istio Project Pavilion" >}} + +The Maintainer Track brought contributors together to collaborate on roadmap topics, triage issues, and discuss key areas of investment for the next year. + +{{< image width="75%" link="./istio-contributors.jpg" caption="Istio Maintainers" >}} + +At ContribFest, new contributors joined maintainers to work through good-first issues, discuss contribution pathways, and get their first PRs lined up. + +{{< image width="75%" link="./istio-contribfest.png" caption="Istio ContribFest Collaboration" >}} + +## Istio Maintainers Recognized at the CNCF Community Awards + +This year’s [CNCF Community Awards](https://www.cncf.io/announcements/2025/11/12/cncf-honors-innovators-and-defenders-with-2025-community-awards-at-kubecon-cloudnativecon-north-america/) were a proud moment for the project. Two Istio maintainers received well-deserved recognition: + +* John Howard — Top Committer Award +* Daniel Hawton — "Chop Wood, Carry Water" Award + +{{< image width="75%" link="./cncf-awards.png" caption="Istio at CNCF Community Awards" >}} + +Beyond these awards, Istio was also represented prominently in conference leadership. Faseela K, one of the KubeCon NA co-chairs and an Istio maintainer, participated in a keynote panel on [Cloud Native for Good](https://youtu.be/1iFYEWx2zC8?si=JUa-8fwtYe5IefE7). + +During closing remarks, it was also announced that Lin Sun, another long-time Istio maintainer, will serve as an upcoming KubeCon co-chair, highlighting the project’s strong leadership presence within CNCF. + +{{< image width="75%" link="./kubecon-co-chairs.jpg" caption="Istio Leadership on Keynote Stage" >}} + +## What We Heard in Atlanta + +Across sessions, kiosks, and hallways, a few themes emerged: + +* Ambient Mesh is shifting from exploration to real-world adoption. +* AI workloads are driving innovation in mesh traffic patterns and operational practices. +* Multicluster deployments are becoming commonplace, with attention to identity, control, and failover. +* Gateway API is solidifying as a core tool for modern traffic management. +* New contributors are joining in meaningful numbers, supported by ContribFest, hands-on guidance, and community engagement. + +## Looking Ahead + +KubeCon NA 2025 showcased a community that is vibrant, growing, and tackling some of the hardest challenges in modern cloud infrastructure—from AI traffic management to zero-downtime migrations, from scaling planet-wide control planes to building the next generation of sidecar-less mesh. + +As we look ahead to 2026, the energy from Atlanta gives us confidence: the future of service mesh is bright, and the Istio community is leading the way, together. + +{{< image width="75%" link="./kubecon-eu-2026.png" caption="See you in Amsterdam" >}} diff --git a/content/en/blog/2025/istio-at-kubecon-na/istio-at-keynotes.png b/content/en/blog/2025/istio-at-kubecon-na/istio-at-keynotes.png new file mode 100644 index 000000000000..73543ca56db0 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istio-at-keynotes.png differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/istio-contribfest.png b/content/en/blog/2025/istio-at-kubecon-na/istio-contribfest.png new file mode 100644 index 000000000000..243e81d66094 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istio-contribfest.png differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/istio-contributors.jpg b/content/en/blog/2025/istio-at-kubecon-na/istio-contributors.jpg new file mode 100644 index 000000000000..33e616329f34 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istio-contributors.jpg differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/istio-kiosk.png b/content/en/blog/2025/istio-at-kubecon-na/istio-kiosk.png new file mode 100644 index 000000000000..df343a8b35ee Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istio-kiosk.png differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/istioday-opening.jpg b/content/en/blog/2025/istio-at-kubecon-na/istioday-opening.jpg new file mode 100644 index 000000000000..e4afe63ca5d8 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istioday-opening.jpg differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/istioday-talk.jpg b/content/en/blog/2025/istio-at-kubecon-na/istioday-talk.jpg new file mode 100644 index 000000000000..03cb3ce32617 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/istioday-talk.jpg differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/kubecon-co-chairs.jpg b/content/en/blog/2025/istio-at-kubecon-na/kubecon-co-chairs.jpg new file mode 100644 index 000000000000..8c8c2ceb4d9e Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/kubecon-co-chairs.jpg differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/kubecon-eu-2026.png b/content/en/blog/2025/istio-at-kubecon-na/kubecon-eu-2026.png new file mode 100644 index 000000000000..d3394decc757 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/kubecon-eu-2026.png differ diff --git a/content/en/blog/2025/istio-at-kubecon-na/kubecon-opening.jpg b/content/en/blog/2025/istio-at-kubecon-na/kubecon-opening.jpg new file mode 100644 index 000000000000..d0f4d52737e0 Binary files /dev/null and b/content/en/blog/2025/istio-at-kubecon-na/kubecon-opening.jpg differ