Dataplane V2 turns Kubernetes intent into eBPF programs
Dataplane V2 is easiest to understand by separating the Kubernetes contract from the Google Cloud implementation. Dataplane V2 is GKE's Cilium-based networking dataplane. The anetd DaemonSet programs eBPF for routing, Service load balancing and Kubernetes NetworkPolicy. The Kubernetes objects stay familiar, but GKE supplies controllers, infrastructure and safe defaults around them. This is why a team can move from an on-premises cluster without rewriting every workload, while still needing to redesign networking, identity and operational ownership for the cloud environment.
A useful inspection step is `kubectl -n kube-system get ds anetd`. Read the output as evidence, not as a ritual: first confirm the desired object exists, then look at status conditions, events and the Google Cloud resource it represents. In production, capture the expected result in a runbook or automated check so an operator can distinguish slow reconciliation from a configuration error.
Production gotcha: Do not install arbitrary custom eBPF programs on Dataplane V2 nodes; they can interfere with GKE's essential programs and are unsupported. The safe habit is to verify quotas, regional availability and feature support against current Google Cloud documentation before rollout. NetworkPolicy uses this enforcement engine on the next slide.