Canal Mesh: A Cloud-Scale Sidecar-Free Multi-Tenant Service Mesh Architecture
Enge Song, Yang Song, Chengyun Lu, Tian Pan, Shaokai Zhang, Jianyuan Lu, Jiangu Zhao, Xining Wang, Xiaomin Wu, Minglan Gao, Zongquan Li, Ziyang Fang
Abstract
In recent years, service mesh frameworks have gained significant popularity in building microservice-based applications. A key component of these frameworks is a proxy in each K8s pod, named sidecar, which handles inter-pod traffic. Our empirical measurement reveals that such per-pod sidecars cause numerous problems, including intrusion into the user pod, excessive resource occupation, significant overhead in managing many sidecars, and performance degradation caused by passing traffic through the sidecar.
In this paper, we introduce Canal Mesh, a cloud-scale sidecar-free multi-tenant service mesh architecture. Canal decouples service mesh functions from the user cluster and deploys a centralized mesh gateway in the public cloud to handle these functions, thus reducing user intrusion and orchestration overhead. Through service consolidation and multi-tenancy, the infra costs of service mesh are also reduced. To address the rising issues due to cloud-based deployment, such as service availability, tenant isolation, noisy neighbor, service elasticity, and additional infra costs, we leverage techniques including hierarchical failure recovery, shuffle sharding, rapid intervention, precise scaling, cloud infra reuse and resource aggregation, etc. Our evaluation shows that Canal Mesh's performance, resource consumption, and control plane overhead are significantly better than Istio and Ambient. We also share experiences from years of deploying Istio and Canal in production.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext a09b9a53-ed25-4e2d-927a-654b5e6e3b1eCited by top-tier papers8
- Rajomon: Decentralized and Coordinated Overload Control for Latency-Sensitive MicroservicesJiali Xing, Akis Giannoukos, Paul Loh, Shuyue Wang et al.NSDI 2025 · 12 citations
- ResCCL: Resource-Efficient Scheduling for Collective CommunicationTongrui Liu, Chenyang Hei, Fuliang Li, Chengxi Gao et al.SIGCOMM 2025 · 11 citations
- MeshTest: End-to-End Testing for Service Mesh Traffic ManagementNaiqian Zheng, Tianshuo Qiao, Xuanzhe Liu, Xin JinNSDI 2025 · 7 citations
- High-level Programming for Application NetworksXiangfeng Zhu, Yuyao Wang, Banruo Liu, Yongtong Wu et al.NSDI 2025 · 6 citations
- Hermes: Enhancing Layer-7 Cloud Load Balancers with Userspace-Directed I/O Event NotificationTian Pan, Enge Song, Yueshang Zuo, Shaokai Zhang et al.SIGCOMM 2025 · 5 citations
Builds on6
- Sailfish: accelerating cloud-scale multi-tenant multi-service gateways with programmable switchesTian Pan, Nianbing Yu, Chenhao Jia, Jianwen Pi et al.SIGCOMM 2021 · 111 citations
- NetMARKS: Network Metrics-AwaRe Kubernetes Scheduler Powered by Service MeshLukasz Wojciechowski, Krzysztof Opasiak, Jakub Latusek, Maciej Wereski et al.INFOCOM 2021 · 95 citations
- SPRIGHT: extracting the server from serverless computing! high-performance eBPF-based event-driven, shared-memory processingShixiong Qi, Leslie Monis, Ziteng Zeng, Ian-Chin Wang et al.SIGCOMM 2022 · 85 citations
- Disaggregating Stateful Network FunctionsDeepak Bansal, Gerald DeGrace, Rishabh Tewari, Michal Zygmunt et al.NSDI 2023 · 33 citations
- LuoShen: A Hyper-Converged Programmable Gateway for Multi-Tenant Multi-Service Edge CloudsTian Pan, Kun Liu, Xionglie Wei, Yisong Qiao et al.NSDI 2024 · 27 citations
Related papers
- Enabling Fast and Stable Service Mesh Communication via Piggyback Layer-7 Traffic Control on Programmable SwitchesGonglong Chen, Jiacong Li, Yuxin Xu, Baiyan Ke et al.INFOCOM 2026
- ServiceRouter: Hyperscale and Minimal Cost Service Mesh at MetaHarshit Saokar, Soteris Demetriou, Nick Magerko, Max Kontorovich et al.OSDI 2023
- HybridMesh: A Hardware-software Hybrid Approach for Accelerating Service Mesh IngressMyoungsung You, Jaehyun Nam, Minjae Seo, Taejune Park et al.NSDI 2026 · 2 citations
- Copper and Wire: Bridging Expressiveness and Performance for Service Mesh PoliciesDivyanshu Saxena, William Zhang, Shankara Pailoor, Isil Dillig et al.ASPLOS 2025 · 3 citations
- Collaborative Orchestration with Probabilistic Routing for Dynamic Service Mesh in CloudsYi Hu, Haonan Ding, Haoxuan Chen, Jianwen He et al.INFOCOM 2025 · 5 citations
