Loading…
Monday, December 10 • 12:30pm - 12:50pm
A VPP-based Implementation of Kubernetes Services and Policies - Nikos Bregiannis, Cisco

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Kubernetes network policies specify how groups of pods are allowed to communicate with each other and other network endpoints. For a packet forwarding engine, such as VPP, this is an abstract definition for access control between endpoints. This presentation will introduce a pure userspace implementation of kubernetes policies in VPP showing high performance and adding the flexibility of different data plane rendering. Service is a Kubernetes abstraction providing an entry point of access to a group of pods. In a Contiv/VPP,  load-balancing and translations between services and endpoints are done inside VPP using the high-performance VPP-NAT plugin. VPP-NAT plugin is an implementation of NAT44 and NAT64 for VPP. This presentation will introduce a Service Proxy implementation in VPP that enables high-performance load-balancing, forwarding and dynamic source-NAT node-outbound IPv4 traffic.

Speakers
avatar for Nikos Bregiannis

Nikos Bregiannis

Software Engineer, Cisco Systems, Inc.
Nikos Bregiannis has been a software engineer for Cisco Systems for 5 years. He has been working for the Research and Innovation Department (CTAO) and has been actively contributing to the FD.io and Linux Foundation community. Nikos has contributed to the design and development of... Read More →


Monday December 10, 2018 12:30pm - 12:50pm PST
4C-4 Washington State Convention Center