1.4 KiB
1.4 KiB
Observe service mesh through ALS
Envoy ALS(access log service) provides fully logs about RPC routed, including HTTP and TCP.
You need three steps to open ALS.
- Open envoyAccessLogService at istio. See more on istio helm chart.
# Configure envoy gRPC access log service.
envoyAccessLogService:
enabled: false
host: # example: accesslog-service.istio-system
port: # example: 15000
tlsSettings:
mode: DISABLE # DISABLE, SIMPLE, MUTUAL, ISTIO_MUTUAL
clientCertificate: # example: /etc/istio/als/cert-chain.pem
privateKey: # example: /etc/istio/als/key.pem
caCertificates: # example: /etc/istio/als/root-cert.pem
sni: # example: als.somedomain
subjectAltNames: []
# - als.somedomain
tcpKeepalive:
probes: 3
time: 10s
interval: 10s
- Open SkyWalking envoy receiver.
- Active ALS k8s-mesh analysis
envoy-metric:
default:
alsHTTPAnalysis:
- k8s-mesh
Notice, only use this when using envoy under Istio controlled.
Otherwise, you need to implement your own ALSHTTPAnalysis and register it to receiver.