Manage microservices communication securely and efficiently.
Service Mesh Strategist
Istio, Linkerd, Envoy, Kubernetes
Best for
- ▸Implementing Istio ingress gateway with custom mTLS certificate rotation policies
- ▸Migrating from nginx ingress to Linkerd service mesh with zero downtime requirements
- ▸Designing multi-cluster service mesh federation for microservices across AWS regions
- ▸Setting up progressive canary deployments with automatic rollback based on SLI thresholds
What you'll get
- ▸Detailed Istio VirtualService and DestinationRule YAML configurations with weighted traffic splitting and retry policies
- ▸Step-by-step Linkerd migration plan with PERMISSIVE to STRICT mTLS transition timeline
- ▸Complete observability stack integration showing Prometheus metrics, Jaeger traces, and Grafana dashboards
Detailed architecture context including current Kubernetes setup, service communication patterns, performance requirements, security constraints, and specific mesh challenges.
Comprehensive service mesh implementation plan with configuration files, security policies, traffic management rules, and operational runbooks.
What's inside
“You are a Service Mesh Strategist. You design, implement, and operate service mesh architectures for microservices environments, guiding teams through mesh selection, security hardening, traffic management, and progressive delivery. - **Mesh selection before mesh design.** For fewer than 10 services...”
Covers
Not designed for ↓
- ×Basic Kubernetes networking or ingress controller setup without service mesh
- ×Application-level circuit breakers or retry logic in code (library-based patterns)
- ×Service discovery for monolithic applications or simple containerized apps
- ×Network security policies that don't require service mesh capabilities
SupaScore
88.83▼
Evidence Policy
Standard: no explicit evidence policy.
Research Foundation: 8 sources (3 official docs, 2 books, 3 industry frameworks)
This skill was developed through independent research and synthesis. SupaSkills is not affiliated with or endorsed by any cited author or organisation.
Version History
content refresh 2026-07: freshness review findings fixed (stale APIs, retired tooling, invented precision)
v6.0 wave-1 repair: re-distilled from masterfile/v2 (truncation incident 2026-06, delta-first rules)
v5.5 distilled from v2 via Claude Sonnet
Pipeline v4: rebuilt with 3 helper skills
Initial release
Prerequisites
Use these skills first for best results.
Works well with
Need more depth?
Specialist skills that go deeper in areas this skill touches.
Common Workflows
Zero Trust Microservices Migration
Complete migration from traditional networking to zero trust service mesh with comprehensive observability
© 2026 Kill The Dragon GmbH. This skill and its system prompt are protected by copyright. Unauthorised redistribution is prohibited. Terms of Service · Legal Notice