Krzysztof Słonka Profile picture
Service Mesh operator at @allegrotech. vi/vim fan
Jan 19, 2021 13 tweets 6 min read
(Thread-1) I’ve just turned on mTLS on a 18 year old PHP monolith and it JUST worked 🤯. Now the traffic originating from it can be validated by other services in our infrastructure using @EnvoyProxy RBAC mechanism. #servicemesh #mTLS #security #microservices @CloudNativeFdn envoy-control RBAC incoming... (2) Service Mesh enables new features for legacy workloads that would take months to implement. Our system allows gradual and granular migration to mTLS using strict or permissive modes. As a developer you define a list of URLs and clients that are allowed to access them. incoming permissions defini...