Home / Companies / Kong / Blog / Post Details
Content Deep Dive

Flexible Policy Match in Kuma 2.0

Blog post from Kong

Post Details
Company
Date Published
Author
Charly Molter
Word Count
929
Company Posts That Month
7
Language
English
Hacker News Points
-
Post removed?
No
Summary

Kuma 2.0 introduces a new policy matching API designed to improve the configurability of service meshes by addressing limitations in the previous system, such as unclear policy application and difficulties in composing policies due to shadowing and ordering issues. This upgrade involves the use of a "targetRef," a concept inspired by Kubernetes Gateway APIs, which categorizes dataplane proxies into logical groups like Mesh, MeshSubset, MeshService, and MeshServiceSubset, allowing for more precise and understandable configuration management. The new API simplifies understanding which proxies are configured, the traffic affected, and the specific configurations applied, by using top-level, from, and to targetRefs in policies. The system prioritizes these configurations using a hierarchical and lexicographic order, ensuring that more specific configurations take precedence. The introduction of these policies starts with features like MeshTrafficPermission, MeshAccessLog, and MeshTrace, with further developments planned for future releases. The changes aim to enhance ease of use and integration with the Kubernetes GAMMA initiative, although transitioning between new and old policies is currently not defined, with migration tools expected in future updates.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 3 1,156 140 65 -26%
Observability 1 743 172 67 -39%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.