Cloud Native 7 min read

Kube-OVN v1.10.0 Release Highlights: Windows Support, Custom Subnet ACLs, Kubevirt Enhancements, Submariner Integration, and Performance Improvements

The Kube-OVN v1.10.0 release introduces Windows node support, user‑defined subnet ACLs, enhanced Kubevirt networking, Submariner multi‑cluster integration, and a series of control‑plane performance optimizations that together improve scalability, flexibility, and stability for cloud‑native Kubernetes deployments.

Cloud Native Technology Community
Cloud Native Technology Community
Cloud Native Technology Community
Kube-OVN v1.10.0 Release Highlights: Windows Support, Custom Subnet ACLs, Kubevirt Enhancements, Submariner Integration, and Performance Improvements

Kube-OVN v1.10.0 is now generally available, bringing major enhancements to functionality, performance, stability, and usability. New capabilities include Windows node support (Overlay VXLAN on Windows Server 2019 with Hyper‑V), user‑defined subnet ACLs allowing flexible L2‑L4 traffic matching, and Kubevirt networking improvements such as static VM IP allocation, DPDK acceleration, and built‑in DHCP support.

The release also integrates Submariner for multi‑cluster connectivity, offering encrypted traffic, Service and DNS inter‑cluster communication, and compatibility with other CNI plugins. Control‑plane performance has been dramatically improved through large‑scale testing (15K Pods), with optimizations like IPAM initialization time reduction (527 s → 29 s), O(n) to O(1) complexity reductions for port‑group and QoS checks, EIP/SNAT toggle for faster creation, router‑policy replacement for static routes, and upgraded OVN/OVS components.

Additional features include CRD splitting for EIP/SNAT/DNAT, zero‑downtime upgrades, namespace‑to‑multiple‑subnet binding, VPC peering, and webhook enhancements.

Example of a custom subnet ACL configuration:

spec:
  acls:
  - action: reject
    direction: to-lport
    match: ip4.src==10.16.0.12 && ip4.dst==2.2.0.3
    priority: 2022
  - action: allow
    direction: from-lport
    match: ip4.src==10.16.0.12 && ip4.dst==2.2.0.2
    priority: 2222
  ...

The community encourages feedback, contributions, and adoption, providing links to issue boards, adopter lists, documentation, and communication channels.

performancecloud-nativeNetworkCNIKubeVirtWindows SupportKube-OVNSubmariner
Cloud Native Technology Community
Written by

Cloud Native Technology Community

The Cloud Native Technology Community, part of the CNBPA Cloud Native Technology Practice Alliance, focuses on evangelizing cutting‑edge cloud‑native technologies and practical implementations. It shares in‑depth content, case studies, and event/meetup information on containers, Kubernetes, DevOps, Service Mesh, and other cloud‑native tech, along with updates from the CNBPA alliance.

0 followers
Reader feedback

How this landed with the community

login Sign in to like

Rate this article

Was this worth your time?

Sign in to rate
Discussion

0 Comments

Thoughtful readers leave field notes, pushback, and hard-won operational detail here.