Disclosure Today
  • Home
  • Business
  • Gaming
  • Crypto
Friday, June 9, 2023
No Result
View All Result
  • Home
  • Business
  • Gaming
  • Crypto
No Result
View All Result
Disclosure Today
No Result
View All Result
Home Crypto

Scaling Container Technologies at Coinbase with Kubernetes

Coinbase by Coinbase
June 6, 2022
in Crypto
0
24
SHARES
800
VIEWS
Share on FacebookShare on Twitter

Tl;dr: Our recent evaluation of Kubernetes underscored its suitability for scaling Coinbase into the future. In the past, a migration to Kubernetes raised concerns due to the operational burden of running and securing the control plane in-house. We’ve now concluded that managed Kubernetes offerings reduce this operational burden without compromising our stack security.

By Clare Curtis, Coinbase Staff Software Engineer

Almost two years ago we released a blog post detailing why Kubernetes is not part of our technical stack. At the time, migrating to Kubernetes would have created a whole new set of problems that outweighed any near-term benefits. However, as these technologies have matured, our newly-formed Compute Team devised a strategy for leveraging Kubernetes in a way that can deliver a more flexible and scalable version of our current system.

Coinbase has grown substantially since we first considered migrating to Kubernetes. With any growth of this kind, it is important to prioritize scalability concerns. As we continue to scale, one of the main areas in need of future-proofing is Coinbase’s compute platform. In mid-2020, our largest service was configured to run a relatively small number of hosts, whereas today it’s running 10x that number.

In this same period, we quadrupled the size of our engineering organization causing a substantial increase in the number of deployments — each needing completely new hosts. The increase in the number of deployments have raised concerns over future scalability as we are already running into technical limitations of current APIs and resources. Recurring issues with getting enough capacity and having it delivered in a reasonable timeframe, caused an increase in failed deployments and required our largest services to dramatically slow down their release process.

While these issues are solvable, we decided to take this opportunity to evaluate whether it made sense to continue investing in a homegrown system or consider an open source alternative that would be much more scalable in the long term.

In our evaluation of Kubernetes, we found that one of the biggest advantages of a migration is that it decouples host provisioning from service deployment, moving the burden of managing host acquisition from individual teams to the broader Infrastructure team. This empowers the Infrastructure team to take a holistic approach to host management. Also, capacity constraints are less likely to affect deployments, and we reduce the amount of cloud provider specific knowledge that individual engineers need to maintain.

The Kubernetes community has created a wealth of knowledge and tooling that we can utilize to provide better support to teams and quickly enable new features. Additionally, as Kubernetes is extensible, there is still the option to build tooling internally and open source it for use within the wider community.

Security is incredibly important at Coinbase and securing Kubernetes clusters is a non-trivial undertaking. Transitioning from highly-isolated and single-tenant compute to a system which promotes multi-tenancy requires deliberate security design and consideration. Because we have high-security workloads where we have to guarantee isolation, we must run separate clusters and build automated tooling that handles all cluster operations. Giving individuals access to operate high-security infrastructure is not allowed.

Managed Kubernetes offerings, such as AWS EKS, take on the responsibility of operating, maintaining, and securing the control plane, reducing the operational burden of running many clusters. Reducing our operational burden and security responsibility enables us to focus on building the orchestration and automation that is required to support many clusters across a large engineering organization. EKS has significantly matured over the past few years and shown that it provides stable, operational Kubernetes while also integrating with features that are commonly used in EC2 such as being able to attach security groups to pods and IAM Roles to service accounts. Having those integrations reduces the risk and cost associated with migration, as they allow for migration without having to change the identity or access patterns of our current platform.

While the migration to Kubernetes spurred concerns in the past, we’ve now concluded that managed Kubernetes offerings, such as AWS EKS, can reduce the operational burden without compromising security. Ultimately, we realized there is a clear ceiling to the ability of our homegrown system to scale, and while there is a large set up and migration cost associated with a move to Kubernetes, we are confident that it will be more flexible and scalable than our current system.

Read More

Previous Post

Whales Swing Vote to Move ApeCoin Off Ethereum

Next Post

Reuters Blasts Binance for $2.35B Money Laundering Problem

Next Post

Reuters Blasts Binance for $2.35B Money Laundering Problem

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Advance Wars remake pushed back to spring 2022

Advance Wars remake pushed back to spring 2022

October 23, 2021

Destination Norway for a stunning cycling holiday

July 17, 2022

Live news updates: Ukraine says troops maintaining a ‘circular defence’ of Mariupol

March 29, 2022

Sea of Thieves ship prices, progression, and customization detailed in new season 7 trailer

August 2, 2022

US stocks and Treasuries drop after inflation hits 40-year high

February 10, 2022
Video game soundtrack award added to Grammys

Video game soundtrack award added to Grammys

June 10, 2022

Kirby 64’s “game-breaking bug” will be patched “early next week”

May 28, 2022

Ubisoft: Gamers “don’t get” what NFTs could do for them

January 29, 2022

Take-Two completes Zynga acquisition

May 24, 2022

ECB scales back stimulus plan as Ukraine war drives up inflation expectations

March 10, 2022

Enterprise-grade Liquid Staking Standard with Support of Coinbase Cloud and Figment

May 17, 2022

November sees fewer UK games job vacancies

December 6, 2022

Pittsburgh bridge collapses ahead of Biden’s visit to discuss infrastructure

January 28, 2022

Super Bowl 2022 trailers: From Black Adam to Lord of the Rings, here’s what to expect

February 13, 2022

Who Dis? The answer will be in Marvel’s next What if…?

November 15, 2021

Football super-agent Mino Raiola dies in Milan, aged 54

April 30, 2022
  • Home
  • Crypto

© 2021 Disclosure / Today.

No Result
View All Result
  • Home
  • Crypto

© 2021 Disclosure / Today.