Introduction to Istio
Workshop

Microservices communicate over the network, yet Kubernetes provides neither encryption nor fine-grained routing nor visibility into traffic between services out of the box. This is exactly where a service mesh like Istio comes in. On the first day you clarify when a service mesh makes sense and compare the leading solutions. Then you install Istio on your own cluster, deploy a first application into the mesh and configure traffic routing with VirtualService, DestinationRule and the Kubernetes Gateway API. On the second day you secure the mesh: mTLS for encrypted communication, AuthorizationPol

Made in Germany ISO 27001 ISO 9001 DSGVO-konform DORA Compliant 24/7 Support
UDSVolkswagenLiebherrT-SystemsVendureecoConnextPortainerBITMARCKUelzener VersicherungenFJDDWTOCCReiner SCTCyrus IndustrialDGSIEMnanocosmosInheadenSplixSchwarzgruppeINHHadesHiOrg-Serverown3dTikfinityProgram51Buben & MädchenPrime InsightsTELTECElevantiqMoovitCFToolsStadt KölnVivavisAvemio

Workshop overview

Duration, per-participant price and logistics for Introduction to Istio.

On-site options

  • Live online or on-site at your location

  • In-house: content, duration and focus can be tailored

  • Flexible dates, from 1 participant

  • German; English on request

  • Preconfigured cloud lab (also on-site)

  • Open groups: max. 8 people

  • Seat price same as online: €721.50 × days, excl. VAT

  • On-site in-house: individual quote (travel/logistics as incurred)

  • No published flat on-site surcharge

  • You provide the training room and internet

  • Open sessions: 09:00–16:00 (CET/CEST)

Curriculum

Day-by-day agenda and topics from the official syllabus.

Day 1: Understand service mesh, install Istio and route your first traffic

  • Service Mesh: Concepts and Decision Framework
  • Istio Architecture and Envoy Data Plane
  • Installing Istio and Sidecar Injection
  • Traffic Management: VirtualService and DestinationRule
  • Gateways and Ingress with Gateway API
Day 1

Day 2: Secure services, build resilience and explore ambient mesh

  • mTLS and Zero Trust with Istio
  • Access Control: Authorization Policies and JWT
  • Resilience Patterns: Circuit Breaking, Retries and Fault Injection
  • Canary Deployments and Traffic Mirroring
  • Ambient Mesh: Sidecar-less Service Mesh
Day 2

Day 3: Build observability, master operations and go production-ready

  • Observability: Metrics with Prometheus and Grafana
  • Distributed Tracing and Service Visualization
  • Day-2 Operations: Upgrades, Troubleshooting and Debugging
  • Multi-Cluster and Production Best Practices
  • Hands-on Final Project: Microservice App in the Mesh
Day 3

Workshop schedule

Published daily rhythm. Topics are listed in the curriculum.

09:00–16:00 (CET/CEST)

Official window for open sessions.

Frame

09:00 – Introductions

On day 1: meet the instructor and participants, plus the agenda and workshop structure.

Day 1

09:00 – Q&A

On later days, resolve open questions from the previous day before the day’s topics (usually 09:00–09:30 or 09:00–10:00).

Later days

Content blocks follow the curriculum

Theory and hands-on in the morning and afternoon blocks. The topic list is in the curriculum above.

Topics

12:00–13:00 – Lunch

A shared break before the afternoon.

Break

16:00–16:30 – Q&A

End of the day: questions, exchange and wrap-up.

Close

Prerequisites

What participants should bring.

Hardware

Your own notebook (Linux, macOS or Windows) with permission to install software. Devices available at extra cost.

HardwareNotebook

Environment

Each participant works in a provided cloud lab. Local installation of the training stack is not required.

LabCloud

Prerequisites

Basic Linux/terminal skills are helpful.

Prerequisites

Related workshops

Suggested follow-on courses from the catalog.

Introduction to Gateway API

  • Duration: siehe Detailseite

Kubernetes Advanced

  • Duration: siehe Detailseite