Microsoft has taken a significant step forward in enhancing its Azure Kubernetes Service (AKS) with the introduction of Advanced Container Networking Services (ACNS). This new bundle of open-source security and observability tools is designed to provide deeper insights into applications and advanced security features at a lower level.
ACNS integrates tools like Grafana, Prometheus, and Cilium-enabled nodes using Hubble and eBPF for deep-level integration with underlying container host systems. The service offers two linked features: Advanced Network Observability and Fully Qualified Domain Name (FQDN) filtering, which utilize Azure support for extended Berkeley Packet Filters.
The observability tools provide real-time data on network performance inside AKS clusters, enabling the early detection of performance issues. The DNS tools work with Azure networking to deploy networking policies that control access to services, reducing the risk of DNS-based outages.
ACNS is still in preview, but it has the potential to become an essential component of an Azure cloud-native environment. With a mix of security and platform tools, it's likely to appeal to startups and tech companies looking to streamline their cloud-native applications.