---
title: "Tigera at AWS re:Invent 2018 Highlights"
source: "https://www.tigera.io/blog/tigera-at-aws-reinvent-2018-highlights/"
---

[Company Blog](https://www.tigera.io/category/company-blog/)

# Tigera at AWS re:Invent 2018 Highlights

By [Vince Lau](https://www.tigera.io/blog/author/vincetigera-io/) on Dec 04, 2018 • 3 min read

## AWS App Mesh, Security Groups and Network Flow Logs with CloudWatch

We wrapped up at AWS re:Invent 2018 and are thrilled to have been part of this amazing event that brought together over 40,000 IT professionals. Notably different from last years event was that many more booth visitors said they are in production with Kubernetes. In addition, more than half of the people we spoke with are actively researching managed Kubernetes services such as Amazon EKS.

On the topic of containers and Kubernetes, I want to thank AWS for all the support and our newly awarded AWS container competency. AWS recognized the completeness of Tigera’s container offerings and awarded the [AWS Container Competency](https://www.tigera.io/news/tigera-achieves-amazon-web-services-container-competency-status-at-launch/) status! Check out Terry Wise’s reference to Tigera at his [keynote session](http://m.youtube.com/watch?v=7NJs7CsstHc). Among all the cool AWS keynotes and announcements this week, I want to point out a few highlights:

- - App Mesh: The concept of service mesh is something that Tigera has embraced with our integration of Istio into Tigera Secure. We are excited about [AWS’s latest service mesh offering](http://aws.amazon.com/about-aws/whats-new/2018/11/introducing-aws-app-mesh---service-mesh-for-microservices-on-aws/). AWS App Mesh makes it easy to run microservices by providing consistent visibility and network traffic controls for every microservice in an application.

- - [Tigera Secure Enterprise Edition](https://www.tigera.io/tigera-products/compare-products/): Our flagship product is now supported on EKS. Our enterprise product works on both self-managed Kubernetes and Amazon EKS clusters and adds enterprise-grade zero trust security and compliance capabilities on top of our Secure Cloud Edition, such as: - Hierarchical policy controls with role-based access controls, to enable multiple teams to independently manage their respective security policies - Dynamic graphical visualization of network flows - Intrusion detection, alerting and remediation

- - Security Group Integration: We received positive feedback at the show for our work with AWS Security Groups. Tigera enables you to integrate AWS Security Groups (SGs) with Kubernetes’ model for network security, known as Network Policy. Since Network Policy was designed to be platform agnostic, it is not aware of Security Groups (or any other cloud-specific security mechanism). Booth visitors were amazed at how Tigera found a way to enable this fine-grained policy control. All namespaces, service accounts, and pods can be added to a list of Security Group IDs, enabling you to define which Security Groups are applied to which pods with an RBAC model.

- Network Flow Logs with CloudWatch: Gaining visibility into accurate Kubernetes network traffic was another feature that our booth visitors couldn’t wait to try when they get back home. [Tigera Secure CE](https://www.tigera.io/tigera-products/compare-products/) captures network traffic at the container level, appends workload metadata to the flow logs, and pipes that data into CloudWatch. We also integrate with existing security operations center threat analytic and log aggregation systems. re:Invent attendees expressed concerns about traditional network logging methods providing only limited 5-tuple flow logs. Additional work in terms of adding context and correlations to traditional logs is needed and often involved very pricey volume-based SIEM solutions. Needless to say, attendees were relieved to see this Tigera feature address the limited Kubernetes visibility and SIEM issue.

One of the coolest giveaways, besides our Tiger mascot, was the 30-day free trial for our Secure Cloud Edition product that’s available on  AWS Marketplace. If you missed the chance to sign up at our booth, [here’s your opportunity again](https://www.tigera.io/tigera-products/compare-products/). We look forward to seeing you at the next AWS event.

————————————————-

[**Free Online Training**](https://www.tigera.io/events/)

Access Live and On-Demand Kubernetes Tutorials

[**Calico Enterprise – Free Trial**](https://www.calicocloud.io/home)

Solve Common Kubernetes Roadblocks and Advance Your Enterprise Adoption

[Event](https://www.tigera.io/tags/event/)[Partner/Integration](https://www.tigera.io/tags/partner-integration/)[Products](https://www.tigera.io/tags/products/)

## Related posts

[![Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/app/uploads/2026/09/Meet-Mylo-An-AI-native-way-to-work-with-Calico.png)](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

[Technical Blog](https://www.tigera.io/category/technical-blog/)

#### [Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

By [Phil DiCorpo](https://www.tigera.io/blog/author/phil-dicorpo/)
on Sep 3, 2026

A library of Calico tools and skills — delivered through the Calico MCP Server What if your hardest network question took ten minutes instead of ten days? Anyone who has operated Kubernetes networking at scale...

[Read more](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

[![The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/app/uploads/2026/08/The-Safest-Place-to-Run-an-AI-Agent-Is-On-a-Cluster-That-Doesnt-Trust-It.png)](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

#### [The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 27, 2026

Every organization running AI agents has already made a hosting decision. Most made it by accident. The sales team switched on the agent built into their CRM. Engineering is piloting a coding agent in a...

[Read more](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

[![AI Red Team Agents Automate Attacks on your AI Agents. Runtime Policies Automate their Defense.](https://www.tigera.io/app/uploads/2026/08/AI-Red-Team-Agents-Automate-Attacks-on-your-AI-Agents.-Runtime-Policies-Automate-their-Defense.png)](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

#### [AI Red Team Agents Automate Attacks on your AI Agents. Runtime Policies Automate their Defense.](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 24, 2026

The AI red teaming market grew up fast this year. OpenAI bought Promptfoo, Cisco and Microsoft shipped automated attack suites, and a seed-stage startup publicly compromised 50 of 55 live customer service bots. These platforms...

[Read more](https://www.tigera.io/blog/ai-red-team-agents-automate-attacks-on-your-ai-agents-runtime-policies-automate-their-defense/)

<!-- plugin=object-cache-pro client=phpredis metric#hits=6144 metric#misses=17 metric#hit-ratio=99.7 metric#bytes=2209940 metric#prefetches=0 metric#store-reads=408 metric#store-writes=21 metric#store-hits=421 metric#store-misses=6 metric#sql-queries=39 metric#ms-total=1211.81 metric#ms-cache=71.07 metric#ms-cache-avg=0.1661 metric#ms-cache-ratio=5.9 -->
