Who Watches the Watchers? On the Reliability of Softwarizing Cloud Application Management
Jiawei Tyler Gu, Zhen Tang, Yiming Su, Bogdan Alexandru Stoica, Xudong Sun, William X. Zheng, Yue Zhang, Akond Rahman, Chen Wang, Tianyin Xu
Abstract
Modern cloud applications are increasingly managed by software programs, often named "operators," which automate laborious, human-based operations. While operator programs largely prevent human mistakes, their own reliability has unprecedented impact on managed applications. This paper discusses the emerging challenges of operator program reliability on cloud-native platforms like Kubernetes. Our work is grounded in a rigorous analysis of 412 real-world failures of thirteen Kubernetes operators. We find that challenges of operator reliability come from the multifold complexity of an operator's interactions with its managed applications, environment, and user interface. Among these, operators' interactions with managed applications are the largest contributor to realworld operator failures, but they are largely overlooked-these interactions are often ad hoc and lack well-defined interfaces. We advocate to rethink the management interface of cloud applications and demonstrate this urgent need by showing the prevalence of defects in existing operators. Specifically, we develop a simple testing tool to exercise interactions between operators and the managed cloud applications, which discovered 86 new bugs in six popular Kubernetes operators. Unready Ready Replica-0 Primary Replica-1 failover() Error Log lag: 0Mb Replica-0 Primary Replica-1 failover() Data loss Role: SyncStandby Replica-0 Primary Replica-1 failover() Error Role: AsyncStandby Log lag: 1Mb (a) ZL/PostgresOp-429 (b) ZL/PostgresOp-600 (c) ZL/PostgresOp-2276
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 7ef3c29a-8b76-48c1-a24d-3a9eae1128ffBuilds on21
- Twine: A Unified Cluster Management System for Shared InfrastructureChunqiang Tang, Kenny Yu, Kaushik Veeraraghavan, Jonathan Kaldor et al.OSDI 2020 · 107 citations
- Using Lightweight Formal Methods to Validate a Key-Value Storage Node in Amazon S3James Bornholt, Rajeev Joshi, Vytautas Astrauskas, Brendan Cully et al.SOSP 2021 · 63 citations
- Testing Configuration Changes in Context to Prevent Production FailuresXudong Sun, Runxiang Cheng, Jianyan Chen, Elaine Ang et al.OSDI 2020 · 61 citations
- Gang of eight: a defect taxonomy for infrastructure as code scriptsAkond Rahman, Effat Farhana, Chris Parnin, Laurie A. WilliamsICSE 2020 · 58 citations
- Understanding and discovering software configuration dependencies in cloud and datacenter systemsQingrong Chen, Teng Wang, Owolabi Legunsen, Shanshan Li et al.FSE 2020 · 54 citations
Related papers
- An Empirical Study on Kubernetes Operator BugsQingxin Xu, Yu Gao, Jun WeiISSTA 2024 · 7 citations
- Garen: Reliable Cluster Management with Atomic State ReconciliationMingi Kim, Ahnjae Shin, Jaewoo Maeng, Myeongjae Jeon et al.EuroSys 2026 · 1 citation
- Acto: Automatic End-to-End Testing for Operation Correctness of Cloud System ManagementJiawei Tyler Gu, Xudong Sun, Wentao Zhang, Yuxuan Jiang et al.SOSP 2023 · 17 citations
- Push-Button Reliability Testing for Cloud-Backed Applications with RainmakerYinfang Chen, Xudong Sun, Suman Nath, Ze Yang et al.NSDI 2023 · 29 citations
- Breaking the Bulkhead: Demystifying Cross-Namespace Reference Vulnerabilities in Kubernetes OperatorsAndong Chen, Ziyi Guo, Zhaoxuan Jin, Zhenyuan Li et al.NDSS 2026 · 2 citations
