skywalking-java/docs/en/setup/envoy/als_setting.md

1.4 KiB

Observe service mesh through ALS

Envoy ALS(access log service) provides fully logs about RPC routed, including HTTP and TCP.

You need three steps to open ALS.

  1. Open envoyAccessLogService at istio. See more on istio helm chart.
    # Configure envoy gRPC access log service.
    envoyAccessLogService:
      enabled: false
      host: # example: accesslog-service.istio-system
      port: # example: 15000
      tlsSettings:
        mode: DISABLE # DISABLE, SIMPLE, MUTUAL, ISTIO_MUTUAL
        clientCertificate: # example: /etc/istio/als/cert-chain.pem
        privateKey: # example: /etc/istio/als/key.pem
        caCertificates: # example: /etc/istio/als/root-cert.pem
        sni: # example: als.somedomain
        subjectAltNames: []
        # - als.somedomain 
      tcpKeepalive:
        probes: 3
        time: 10s
        interval: 10s
  1. Open SkyWalking envoy receiver.
  2. Active ALS k8s-mesh analysis
envoy-metric:
  default:
    alsHTTPAnalysis:
      - k8s-mesh

Notice, only use this when using envoy under Istio controlled. Otherwise, you need to implement your own ALSHTTPAnalysis and register it to receiver.