• Introducing multicluster support for ambient mode (alpha) Istio 1.27 adds alpha ambient multicluster support, extending ambient’s familiar lightweight, modular architecture to deliver secure connectivity, discovery and load balancing across clusters. • Multicluster has been one of the most requested features of ambient – and as of Istio 1.27, it is available in alpha status! • We sought to capture the benefits and avoid the complications of multicluster architectures while using the same modular design that ambient users love. • This release brings the core functionality of a multicluster mesh and lays the groundwork for a richer feature set in upcoming releases. • The Power & Complexity of Multicluster Multicluster architectures increase outage resilience, shrink your blast radius, and scale across data centers. • That said, integrating multiple clusters poses connectivity, security, and operational challenges.

Article Summaries:

  • Istio 1.27 introduces alpha support for multicluster ambient mode, enabling secure connectivity, service discovery, and load balancing across multiple Kubernetes clusters. The feature builds on ambient’s lightweight, modular architecture by adding east‑west gateways with globally routable IPs and a double‑HBONE encryption scheme that secures traffic at both gateway and pod levels. Services retain their existing DNS names across clusters, allowing cross‑cluster communication without code changes. The release focuses on declarative APIs for dynamic cluster addition and removal, laying groundwork for future enhancements while addressing common multicluster challenges such as IP overlap and security.

Sources: