istio

Installation
SKILL.md

Istio

Istio is a Service Mesh. It adds observability, security (mTLS), and traffic control to microservices. 2025 sees the rise of Ambient Mesh, removing the heavy sidecar requirement.

When to Use

  • Zero Trust: Automatic mTLS between all services without code changes.
  • Traffic Splitting: Canary deployments (send 1% of traffic to v2).
  • Observability: Golden metrics (Request rate, Error rate, Latency) for every service automatically.

Core Concepts

Sidecar Mode (Classic)

Injects an Envoy proxy container into every Pod. Captures all traffic. High resource usage.

Ambient Mode (2025)

Uses a per-node layer 4 proxy (ztunnel) and optional per-service layer 7 proxies (waypoint). Reduced cost and complexity.

Related skills
Installs
1
GitHub Stars
7
First Seen
Feb 10, 2026