Announcing Built On Envoy: Making Envoy Extensions Accessible to Everyone

Learn more

Announcing Vanilla Kubernetes with eBPF Support for Tetrate Istio Subscription Plus

In February 2025, we enhanced the TIS+ experience with the addition of workloads running on Istio clusters in ambient mode.

Announcing Vanilla Kubernetes with eBPF Support for Tetrate Istio Subscription Plus

In January 2025, we announced the general availability of Tetrate Istio Subscription Plus (TIS+) as a hosted Kubernetes network troubleshooting solution for Application Developers and Application Operations. In February 2025, we enhanced the TIS+ experience with the addition of workloads running on Istio clusters in ambient mode.

This month, we are excited to announce support for workloads that are not managed by Istio, but are running on vanilla Kubernetes clusters. With TIS+, a single pane of glass and a common API platform for Observability and Monitoring is now available for all your microservices based containerized applications! 

Troubleshooting and observability in hybrid Kubernetes environments (where some clusters run in eBPF mode and others are managed by Istio as part of a Service Mesh) can become fragmented if not managed under a unified management plane. With a normalized metrics and distributed tracing enabled platform, debugging and troubleshooting complexities are greatly reduced and thereby shortening the duration for issue isolation and issue resolution.

Taken together, TIS and TIS+ provide a comprehensive solution to support every stage of your Istio journey. From Istio break/fix support to troubleshooting the full TIS offering empowers organizations to confidently deploy, manage, and optimize Istio in any environment.

TIS+ is available standalone or as an add-on to your TIS package.

To see TIS+ in action, visit our website, get a demo, or read onwards!

Tetrate offers an enterprise-ready, 100% upstream distribution of Istio, Tetrate Istio Subscription (TIS). TIS is the easiest way to get started with Istio for production use cases. TIS+, a hosted Day 2 operations solution for Istio, adds a global service registry, unified Istio metrics dashboard, and self-service troubleshooting.

Learn more

Vanilla Kubernetes with eBPF

eBPF Kubernetes cluster management refers to leveraging eBPF (Extended Berkeley Packet Filter) to handle networking, security, observability, and performance monitoring within a Kubernetes environment. Unlike traditional Kubernetes cluster management, which relies on iptables, sidecars, and userspace proxies, eBPF operates directly in the Linux kernel, providing efficient, low-latency, and highly scalable management capabilities. 

In a deployment with any cluster type (Istio with sidecars, Istio in ambient mode, and now with no Istio at all) or with a hybrid deployment with any combination of these variants, a common workload-agnostic Observability solution like TIS+ becomes key.

Starting March 2025, TIS+ will support – with a seamless and consistent user experience – full service discovery and observability of clusters running without Istio (or on Vanilla Kubernetes). In this mode, TIS+ will:

  • Offer service discovery and service dependency visualization, and provide a full service topology, health, and inter-service communication view of the deployment
  • Collect aggregated metrics from the data path services
  • Support distributed call tracing for Services that are instrumented to export Trace spans in Zipkin or OpenTelemetry formats.
Post Image

Figure 1: A single view with Ambient and Non-Istio enabled workloads

Post Image

Figure 2: A Single Service Inventory from ambient and eBPF enabled clusters

Post Image

Figure 3: Detailed metrics for a Service in an eBPF enabled cluster

What’s Next

In this monthly blog series, we will continuously announce TIS+ features, capabilities, and news.

Stay tuned for the upcoming blogs that will cover:

  • TIS+ support for virtual machines
  • Istio Config validation correctness checks
  • New User Interface capabilities
  • Cross-Cluster traffic configurations and visualization

Get Started

Here are some resources to help you get started:

Product background Product background for tablets
Building AI agents

Agent Router Enterprise provides managed LLM & MCP Gateways plus AI Guardrails in your dedicated instance. Graduate agents from prototype to production with consistent model access, governed tool use, and runtime supervision — built on Envoy AI Gateway by its creators.

  • LLM Gateway – Unified model catalog with automatic fallback across providers
  • MCP Gateway – Curated tool access with per-profile authentication and filtering
  • AI Guardrails – Enforce policies, prevent data loss, and supervise agent behavior
  • Learn more
    Replacing NGINX Ingress

    Tetrate Enterprise Gateway for Envoy (TEG) is the enterprise-ready replacement for NGINX Ingress Controller. Built on Envoy Gateway and the Kubernetes Gateway API, TEG delivers advanced traffic management, security, and observability without vendor lock-in.

  • 100% upstream Envoy Gateway – CVE-protected builds
  • Kubernetes Gateway API native – Modern, portable, and extensible ingress
  • Enterprise-grade support – 24/7 production support from Envoy experts
  • Learn more
    Decorative CTA background pattern background background
    Tetrate logo in the CTA section Tetrate logo in the CTA section for mobile

    Ready to enhance your
    network

    with more
    intelligence?