<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>零信任 on PlumePHP</title><link>https://plumephp.com/tags/%E9%9B%B6%E4%BF%A1%E4%BB%BB/</link><description>Recent content in 零信任 on PlumePHP</description><generator>Hugo</generator><language>zh-CN</language><lastBuildDate>Tue, 01 Sep 2026 10:00:00 +0800</lastBuildDate><atom:link href="https://plumephp.com/tags/%E9%9B%B6%E4%BF%A1%E4%BB%BB/index.xml" rel="self" type="application/rss+xml"/><item><title>Service Mesh 生产实战：Istio 流量治理、mTLS 与可观测性完全落地</title><link>https://plumephp.com/service-mesh-istio-production/</link><pubDate>Tue, 01 Sep 2026 10:00:00 +0800</pubDate><guid>https://plumephp.com/service-mesh-istio-production/</guid><description>&lt;h1 id="service-mesh-生产实战istio-流量治理mtls-与可观测性完全落地"&gt;Service Mesh 生产实战：Istio 流量治理、mTLS 与可观测性完全落地&lt;/h1&gt;
&lt;p&gt;在现代云原生架构中，微服务之间的通信复杂度随着服务数量呈指数级增长。Service Mesh 作为专门处理服务间通信的基础设施层，已经成为 Kubernetes 生态中不可或缺的一环。Istio 作为当前最成熟的 Service Mesh 实现之一，经历了从 Sidecar 到 Ambient 的架构演进，在生产环境中积累了大量实践经验。本文将从架构原理出发，系统讲解 Istio 的流量治理、mTLS 零信任安全以及可观测性方案，并提供可直接落地的 YAML 配置。&lt;/p&gt;</description></item></channel></rss>