MeshTest: End-to-End Testing for Service Mesh Traffic Management
Naiqian Zheng, Tianshuo Qiao, Xuanzhe Liu, Xin Jin
Abstract
We present MeshTest, the first end-to-end testing framework for traffic management of service mesh. The key idea of MeshTest is to automatically generate input configurations with end-to-end semantics, and then create real test request suites on each input. There are two technical challenges. First, the input space of service mesh configurations is large and complex. The input configurations should be carefully orchestrated to form end-to-end service flow paths. Second, the abstract output network behavior cannot be directly checked for correctness, and we need to generate a set of real requests that are capable of checking possible behaviors. To address these challenges, we model the service flows of traffic management in service mesh, and propose a novel Service Flow Exploration technique to enumerate all possible configuration resources and interactions between them in the input configuration. We design and implement MeshTest, which contains an automatic input configuration generator based on Service Flow Exploration and a Service Mesh Oracle which leverages formal methods to generate test request suites. MeshTest has found 23 new bugs (19 confirmed and 10 fixed) in two popular service mesh systems, Istio and Linkerd.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 70c760fa-33d8-44f7-a852-e1b03e8f1962Builds on38
- Angora: Efficient Fuzzing by Principled SearchPeng Chen, Hao ChenS&P 2018 · 616 citations
- Tiramisu: Fast Multilayer Network VerificationAnubhavnidhi Abhashkumar, Aaron Gember-Jacobson, Aditya AkellaNSDI 2020 · 146 citations
- APKeep: Realtime Verification for Real NetworksPeng Zhang, Xu Liu, Hongkun Yang, Ning Kang et al.NSDI 2020 · 99 citations
- NNSmith: Generating Diverse and Valid Test Cases for Deep Learning CompilersJiawei Liu, Jinkun Lin, Fabian Ruffy, Cheng Tan et al.ASPLOS 2023 · 90 citations
- DistAI: Data-Driven Automated Invariant Learning for Distributed ProtocolsJianan Yao, Runzhou Tao, Ronghui Gu, Jason Nieh et al.OSDI 2021 · 76 citations
Related papers
- SafeTree: Expressive Tree Policies for MicroservicesKaruna Grewal, Brighten Godfrey, Justin HsuOOPSLA 2025 · 1 citation
- MESSI: Behavioral Testing of BGP ImplementationsRathin Singha, Rajdeep Mondal, Ryan Beckett, Siva Kesava Reddy Kakarla et al.NSDI 2024 · 8 citations
- Copper and Wire: Bridging Expressiveness and Performance for Service Mesh PoliciesDivyanshu Saxena, William Zhang, Shankara Pailoor, Isil Dillig et al.ASPLOS 2025 · 3 citations
- Intender: Fuzzing Intent-Based Networking with Intent-State Transition GuidanceJiwon Kim, Benjamin E. Ujcich, Dave TianUSENIX Security 2023
- SpecWeaver: End-to-End HTTP API Specification Inference across Multi-layer Routing in Production Web ServicesWenbo Hu, Jie Lu, Jingting Chen, Feng Li et al.FSE 2026
