Today marks a major step for Isovalent and our customers. With the release of Isovalent Enterprise Platform 25.11, all of our products now move forward together under a single release cadence. From now on, Networking for Kubernetes, Load Balancer, Mesh Networking, and Runtime Security will share a common release schedule and identity. This change reflects how our customers already use the platform: as one integrated solution that connects, secures, and observes workloads wherever they run. At the same time, organisations remain free to adopt only the components that meet their needs. Each capability can be installed on its own, yet all benefit from a shared release process that simplifies installation, reduces upgrade effort, and keeps long term operations predictable. A single platform for modern infrastructure Enterprises today run business-critical applications across data centers, public clouds, and edge environments. Managing consistent connectivity, security, and visibility across such a mix is no small task. The Isovalent Enterprise Platform was built to make this easier. It provides a single layer for networking, security, and observability powered by Cilium, Tetragon, and eBPF. This foundation delivers performance and visibility from the kernel to the application layer, helping platform teams simplify operations and reduce risk. With version 25.11, customers gain a unified release that aligns our products, our roadmap, and our support model. Operational simplicity By combining networking, security, load balancing, and observability into one platform, teams reduce tool sprawl and complexity. Routine maintenance, troubleshooting, and scaling become faster and more predictable. Security built for modern workloads Identity-based policies and real-time runtime visibility enable zero-trust enforcement across containers, hosts, and external systems. Security teams can detect and respond to threats without slowing innovation. Observability across every layer Deep visibility from the kernel to the application layer helps platform teams understand performance, dependency, and compliance posture in one place. Consistency across clouds and data centers The platform delivers the same behavior and performance wherever workloads run, making it easier to support multi-cloud and hybrid deployments. For platform owners, this means less time spent integrating tools and more time enabling developers. For business leaders, it means faster innovation and stronger governance, all from a single, proven platform. Key capabilities & highlights in Isovalent Enterprise Platform 25.11 Release 25.11 strengthens the Isovalent Enterprise Platform across networking, security, and observability. Each product in the suite builds on shared eBPF technology to deliver higher performance, stronger protection, and simpler day-to-day operations for enterprise environments. Networking for kubernetes Isovalent Networking for Kubernetes 1.18 focuses on steadier operations and clearer behaviour during upgrades and day two workflows. The release introduces native BGP Route Reflector support to simplify routing in larger clusters and aligns Kubernetes routing with the structured models used in large and complex data centre environments. Envoy hot restart keeps L7 traffic flowing during configuration changes, and the Egress Gateway gains native health checks for faster and more reliable failover. The release also brings significant enhancements to Hubble Timescape, including a new Connections view driven by aggregated connection logs, a system Status page for cluster health, and a more capable network policy editor that allows teams to create and refine policies directly from observed traffic. For enterprise teams, adopting Isovalent Networking for Kubernetes creates a dependable connectivity layer with strong identity, policy, routing, and visibility controls built in. It raises the standard for day to day operations, supports consistent behaviour across upgrades, and gives platform owners a network foundation designed to support growth, security, and long term stability. Runtime security Runtime Security 1.18 brings a redesigned telemetry model, stronger detection logic, and new protections for modern workloads. The new Connection Log system replaces the “log absolutely everything” approach with a pull based model that exports only the changes between snapshots, reducing noise and lowering overhead while keeping full process and network context. Real time alerts act as immediate tripwires for high risk activity, new risk scoring in policies helps teams prioritise what matters, and toxic combinations correlate multiple suspicious signals into a single meaningful alert. The release also introduces more than twenty new CVE focused detection and mitigation policies, deeper Timescape integration for visualising aggregated connection data, and ready to use Splunk workflows that give teams faster investigation paths and clearer operational insight. Security teams and platform owners gain a clear understanding of what is happening inside their workloads, along with the controls needed to respond quickly to privilege escalation attempts, lateral movement, and new exploit paths. It provides high fidelity data at low cost, meaningful alerts rather than noise, and a security layer that scales across containers, virtual machines, and hybrid environments. It is an essential part of building a platform that can detect threats early, respond quickly, and keep critical applications running without disruption. Load balancer Isovalent Load Balancer gives enterprises one consistent way to deliver traffic across datacenters, Kubernetes clusters, and public cloud environments. It is designed as a drop-in replacement for legacy appliances and virtual Application Delivery Controllers, bringing modern API driven workflows that support agile teams and automated pipelines. It runs across VMware vSphere, Red Hat OpenShift and Cloud Native platforms based on Kubernetes, delivering the same outcomes regardless of platform. Version 1.18 introduces a set of capabilities that customers can put to work immediately. The new operator framework manages the lifecycle of multiple load balancer clusters, supported by a dedicated CLI that streamlines bootstrap, upgrades, image handling, and diagnostics. VM backed management clusters enable cleaner lifecycle control, and in place upgrades with a built in registry for simpler day-2 operations. Traffic handling moves forward with dual stack support, in-cluster east-west traffic handling, configurable health checks across HTTP, TCP, and UDP, and label driven backend selection for more dynamic routing. Security is strengthened through filtering on headers, JWT claims, and certificate attributes, while operational teams gain clearer dashboards, Timescape UI integration, node maintenance workflows, and IPFIX flow logs. For platform and network teams struggling with fragmented tools spread across appliances, clouds, and virtualization platforms, this is where Isovalent Load Balancer reduces that complexity. It consolidates traffic management behind a consistent control plane, replaces ticket based workflows with automation, and removes friction from app delivery. As many organisations move away from legacy vendors and modernise their infrastructure, Isovalent Load Balancer offers a clear path to unify how applications are exposed and protected across all environments. Networking for virtualization Isovalent Networking for Virtualization enables seamless connectivity between VMware platforms running virtual machines and Kubernetes clusters hosting virtual machines without forcing teams to rework network topology or application design. It provides a consistent network layer that lets virtual machines connect to isolated address spaces that support overlapping CIDRs, multi-tenancy, and bridging to physical networks. This creates a flexible path for workloads to move between VMware and Kubernetes while keeping existing IPs intact and avoiding disruptive network changes. Applications can span both environments with consistent policy enforcement and clear visibility into network flows across virtual and container workloads. For platform owners, adopting Networking for Virtualization provides a controlled path to reduce dependency on traditional virtualization platforms while maintaining stability for critical applications. It supports phased and full migrations, enforces Cilium based security policy across VM workloads, and gives operational teams deep insight into traffic patterns during and after the transition. It is a foundation for modernizing infrastructure at a pace that fits business needs while keeping every workload reachable, protected, and observable. Built on open source innovation The Isovalent Enterprise Platform continues to build on trusted open source technologies. Cilium provides high-performance networking and security, while Tetragon delivers runtime observability and policy enforcement. Both are powered by eBPF, the Linux kernel technology that enables deep visibility, low overhead, and continuous innovation. By aligning our products under Isovalent Enterprise Platform 25.11, we are ensuring that every improvement in these technologies benefits the full platform. What this means for our customers The Isovalent Enterprise Platform helps organizations run modern applications with confidence. Customers use it to simplify operations, strengthen security, and gain visibility across every layer of their infrastructure. By combining networking, load balancing, runtime security, and observability into one integrated platform, teams can operate faster and respond to change without adding complexity. Platform owners gain a consistent foundation that scales across clusters, virtual machines, and clouds, while security and operations teams work from a shared view of performance, compliance, and risk. This approach is already proven in production. Adobe relies on Isovalent to deliver consistent networking and policy enforcement across its global platforms. Roche improved the security and manageability of its edge environments by bringing the firewall closer to its workloads. Schuberg Philis achieved PCI-DSS compliance and zero-trust enforcement for critical financial services. Form3 simplified multi-cloud operations and strengthened observability across payment systems. These customers show what success with the Isovalent Enterprise Platform looks like: predictable performance, unified security, and clear visibility at scale. It is a foundation that enables teams to focus on delivering outcomes, not managing complexity. If your organization is ready to achieve the same results, contact the Isovalent team.