ChannelLife US - Industry insider news for technology resellers
Story image

LoftLabs launches vNode for enhanced Kubernetes isolation

Yesterday

LoftLabs has announced the launch of vNode, a virtual container runtime designed to enhance tenant isolation at the node level within Kubernetes.

Traditionally, multi-tenant environments have relied on namespace or cluster isolation, leaving node-level isolation a complex and costly endeavour, often necessitating separate physical nodes for each tenant. vNode offers a solution by enabling platform teams to establish virtual nodes within a shared physical node, granting each tenant the benefits of a dedicated node, including security and resource control, without requiring additional hardware.

CEO of LoftLabs, Lukas Gentele, addressed the challenges faced by organisations in Kubernetes multi-tenancy, stating, "vNode solves a frustrating trade-off in Kubernetes multi-tenancy. Organizations can either give tenants shared access to nodes, introducing security risks and limiting restrictions for tenants, or they force them onto separate, expensive nodes. Neither option is great. vNode eliminates this dilemma by enforcing strict isolation within shared nodes, keeping security high and overhead low."

vNode functions by introducing a lightweight runtime that efficiently isolates workloads within shared physical nodes. This approach negates the need for complex VM-based architectures and avoids the slow system call translation that can hinder performance. The system enables strong isolation, maintaining security boundaries while avoiding cross-tenant interference.

Gentele highlighted the efficiency and security vNode provides, allowing tenants to run privileged workloads without affecting other tenants and ensuring there are no performance bottlenecks typically associated with other isolation tools. This solution is compatible with all major cloud providers and any containerd-based nodes, thus requiring no significant re-architecting.

This latest offering from LoftLabs complements their existing product vCluster, which offers virtual Kubernetes clusters for scalable multi-tenancy. vNode enhances this solution by ensuring that tenant workloads within these virtual clusters are fully isolated at the node level. This integration is said to support scaling of Kubernetes environments while maintaining resource efficiency.

LoftLabs has also introduced new enhancements for vCluster. These include a Snapshot & Restore feature, which allows users to capture the state of their virtual cluster and restore it as needed, boosting resilience and supporting migration within Kubernetes environments. Additionally, an open-source Rancher integration is being made available, enabling vCluster users to create, manage, and update virtual clusters in Rancher without requiring the vCluster Platform.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X