Copper and Wire: Bridging Expressiveness and Performance for Service Mesh Policies
Divyanshu Saxena, William Zhang, Shankara Pailoor, Isil Dillig, Aditya Akella
Abstract
Distributed microservice applications require a convenient means of controlling L7 communication between services. Service meshes have emerged as a popular approach to achieving this. However, current service mesh frameworks are difficult to use -- they burden developers in realizing even simple communication policies, lack compatibility with diverse dataplanes, and introduce performance and resource overheads. We identify the root causes of these drawbacks and propose a ground-up new mesh architecture that overcomes them. We develop novel abstractions for mesh communication, a new mesh policy language centered on these abstractions to enable expressive policies, and a novel control plane that enables using minimal dataplane resources for policy enforcement. We develop the precise semantics of our language abstractions and demonstrate how our control plane can use them to execute policies correctly and optimally. We build and evaluate a prototype on realistic workloads and policies and open-source production traces. Our results show that complex policies can be specified in up to 6.75× fewer lines, enforced with up to 2.6× smaller tail latencies and up to 39% fewer CPU resources than today.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext bd291826-ca9e-4c22-8b46-0b95b76d2b4aCited by top-tier papers1
Ask how each one uses itBuilds on5
- Sinan: ML-based and QoS-aware resource management for cloud microservicesYanqi Zhang, Weizhe Hua, Zhuangzhuang Zhou, G. Edward Suh et al.ASPLOS 2021 · 226 citations
- Automatic Policy Generation for Inter-Service Access Control of MicroservicesXing Li, Yan Chen, Zhiqiang Lin, Xiao Wang et al.USENIX Security 2021 · 64 citations
- Remote Procedure Call as a Managed System ServiceJingrong Chen, Yongji Wu, Shihan Lin, Yechen Xu et al.NSDI 2023 · 30 citations
- Murphy: Performance Diagnosis of Distributed Cloud ApplicationsVipul Harsh, Wenxuan Zhou, Sachin Ashok, Radhika Niranjan Mysore et al.SIGCOMM 2023 · 16 citations
- ServiceRouter: Hyperscale and Minimal Cost Service Mesh at MetaHarshit Saokar, Soteris Demetriou, Nick Magerko, Max Kontorovich et al.OSDI 2023
Related papers
- Enabling Fast and Stable Service Mesh Communication via Piggyback Layer-7 Traffic Control on Programmable SwitchesGonglong Chen, Jiacong Li, Yuxin Xu, Baiyan Ke et al.INFOCOM 2026
- High-level Programming for Application NetworksXiangfeng Zhu, Yuyao Wang, Banruo Liu, Yongtong Wu et al.NSDI 2025 · 6 citations
- HybridMesh: A Hardware-software Hybrid Approach for Accelerating Service Mesh IngressMyoungsung You, Jaehyun Nam, Minjae Seo, Taejune Park et al.NSDI 2026 · 2 citations
- Collaborative Orchestration with Probabilistic Routing for Dynamic Service Mesh in CloudsYi Hu, Haonan Ding, Haoxuan Chen, Jianwen He et al.INFOCOM 2025 · 5 citations
- Canal Mesh: A Cloud-Scale Sidecar-Free Multi-Tenant Service Mesh ArchitectureEnge Song, Yang Song, Chengyun Lu, Tian Pan et al.SIGCOMM 2024 · 30 citations
