Service Mesh Migration Plan
This plan covers migrating the Enterprise Scheduler and Auth Broker services onto the shared service mesh ahead of the Q4 regional expansion. Rollout will proceed in three phases across staging and production.
- Stand up mesh sidecars in staging namespace
- Migrate Enterprise Scheduler traffic behind feature flag
- Validate mTLS and retry policies before GA
| Phase | Owner | Target Date |
| Staging rollout | Ana Torres | Aug 4 |
| Canary (5%) | Marcus Webb | Aug 11 |
| Full production | Priya Nandakumar | Aug 25 |
+
+ Add row
- All sidecar containers must use image tag v2.3.1 or later for mTLS compatibility
- Enterprise Scheduler requires the MESH_ENABLED=true env var set before rollout starts
- Auth Broker health checks must be updated to probe /healthz/mesh within 48 hours of migration
kubectl apply -f mesh/sidecars.yaml --namespace platform-staging