DriversRecommendedOutdated drivers can make a good PC feel brokenScan driver issues before chasing fixes manually.Scan NowOctober DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsSlow PC?RecommendedPC slow today? Run a repair scan before it gets worseResolve common Windows issues and optimize system performance.Scan Now×
Skip to content
World desk5 min

What Does the AWS Load Balancer Controller Do in Kubernetes?

AWS Load Balancer Controller reconciles Kubernetes networking resources with AWS load balancers. Understand ALB and NLB mappings, target modes, Auto Mode and installation requirements.
Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

The AWS Load Balancer Controller (LBC) watches Kubernetes networking resources and reconciles them into AWS load balancers. In Amazon EKS, an Ingress commonly provisions an Application Load Balancer (ALB) for HTTP and application traffic, while a Service of type LoadBalancer commonly provisions a Network Load Balancer (NLB) for network traffic. The controller configures those AWS resources; it is not itself the load balancer. These are AWS EKS mappings, not rules Kubernetes imposes on every cloud or controller.

How does the controller connect Kubernetes to AWS?

Kubernetes resources describe how an application should receive traffic. LBC observes selected resources, their class and annotations, then creates or updates corresponding Elastic Load Balancing resources in AWS. This reconciliation connects a cluster’s declared networking configuration to AWS infrastructure. See AWS’s AWS Load Balancer Controller overview.

As an Amazon Associate I earn from qualifying purchases.

The main distinction is traffic type: ALBs operate at Layer 7 and support application-level routing, while NLBs operate at Layer 4 for network traffic. The resource-to-load-balancer mapping below describes the EKS guidance for LBC; Kubernetes itself does not require these AWS products.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Kubernetes resource Typical result in AWS EKS guidance Traffic and routing
Ingress Application Load Balancer (ALB) Layer 7 HTTP/application traffic; targets can be nodes or pod IPs, depending on target mode.
Service with type: LoadBalancer Network Load Balancer (NLB) Layer 4 network traffic; instance and IP target modes are documented.
Gateway Application Load Balancer (ALB), with LBC version 2.14.0 or later AWS says Gateway API standardizes more configuration than Ingress, which has often relied on controller-specific annotations.

For the version-specific Gateway behavior and resource mapping, consult the EKS controller overview.

How does traffic reach the pods?

Target mode determines whether a load balancer sends traffic through cluster nodes or directly to pod IP addresses. This affects routing and which environments the configuration can serve.

Instance targets: through a node and NodePort

In instance mode, the ALB registers cluster nodes as targets. It sends traffic to a Service NodePort on a node, and Kubernetes then routes the traffic to a pod. This is a node-mediated path.

IP targets: directly to pod addresses

In IP mode, the ALB registers pod IP addresses and sends traffic directly to the pods. AWS requires IP targets for ALBs serving pods on Fargate or EKS Hybrid Nodes. For hybrid workloads, pod IP addresses also need to be routable from AWS. NLBs support instance or IP targets as well, subject to the relevant service and environment requirements. AWS documents these modes in its ALB guidance and NLB guidance.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Which load-balancing path fits the traffic?

Choose based on the protocol, target destination, workload environment and required configuration—not simply on whether the application runs in Kubernetes.

  • HTTP or application-level routing: Use the Ingress-to-ALB path when the workload needs Layer 7 application traffic handling.
  • TCP or UDP network traffic: A LoadBalancer Service with an NLB is the documented EKS path for Layer 4 traffic.
  • Fargate or EKS Hybrid Nodes behind an ALB: Use IP targets; for hybrid nodes, verify that the pod IPs are reachable from AWS.
  • Exposure and placement: Decide whether the endpoint should be internal or internet-facing and ensure subnet selection fits that purpose. AWS says NLBs default to an internal scheme; making one internet-facing requires the corresponding annotation.
  • Configuration compatibility: Check that the annotations and settings you need are supported by the provisioning mode you choose.

For ALB configuration, target behavior and related security guidance, use AWS’s application and HTTP traffic guide. For NLB exposure and Service annotations, see its TCP and UDP traffic guide.

What do annotations and resource settings control?

Kubernetes resources are the configuration surface: the resource type and class identify the intended handling, while annotations can shape the AWS load balancer that is provisioned. Depending on the resource and controller behavior, settings can affect subnet selection, internal or internet-facing scheme, target type, health checks and security configuration.

Do not assume an annotation is universal across controllers or EKS operating modes. Check the current AWS documentation for the precise annotation key, accepted value and compatibility for the resource you are configuring. AWS provides examples and supported settings in its ALB Ingress guide and NLB guide.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Do you need to install LBC on EKS Auto Mode?

Not for Auto Mode’s documented NLB provisioning of LoadBalancer Services: EKS Auto Mode provisions and configures those NLBs without a separate LBC installation. However, Auto Mode does not support every Service annotation available in LBC. Compare the required settings with the Auto Mode NLB annotation guidance before choosing that route.

For other EKS configurations, AWS describes LBC as an optional networking add-on and recommends it for provisioning NLBs rather than relying on the legacy Kubernetes cloud provider controller. That legacy path can provision Classic Load Balancers; consult AWS’s networking add-ons guidance before a new deployment or migration.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What does installation and operation involve?

LBC needs an existing EKS cluster, AWS permissions to manage load-balancer resources, and suitable cluster networking prerequisites. Installation is therefore an infrastructure and IAM task, not just applying a Kubernetes object. AWS recommends Helm for users new to EKS and also documents manifest installation for advanced configurations, including restricted access to public container registries.

AWS’s manifest installation guide covers prerequisites, IAM configuration, controller installation and verification. With IAM Roles for Service Accounts (IRSA), the OIDC provider ARN in the trust policy is specific to the cluster. Use AWS’s current policy and commands rather than copying stale installation instructions, since implementation steps and version compatibility can change.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Understand the Service mutating webhook

AWS says LBC versions 2.5 and newer use a mutating webhook by default to set spec.loadBalancerClass to service.k8s.aws/nlb for new LoadBalancer Services. The behavior can be disabled with the Helm chart value enableServiceMutatorWebhook: false. This does not mean existing Classic Load Balancers are changed; AWS says existing ones continue to work. Details are in the controller overview.

What version and migration details matter?

LBC version 2.14.0 or later creates an ALB when a Kubernetes Gateway is created, according to AWS. If you plan to use Gateway API resources, check that your deployed controller version supports this behavior.

AWS identifies the AWS ALB Ingress Controller and 0.1.x versions of AWS Load Balancer Controller as deprecated. AWS says deprecated versions cannot be upgraded and must be removed before installing a current controller. Check the current release-specific AWS instructions for exact compatibility and migration steps; the live documentation may change.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Leave a Reply

Your email address will not be published. Required fields are marked *

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

More from the Wire

  1. World desk4 min
    How to Spot an AI Voice Scam Before Sending MoneyDon’t rely on how a caller sounds. Pause, call back through a known number, and verify the emergency with another trusted person before sending money.
  2. Mountain View desk4 min
    Google’s SynthID Detector: How to Check AI-Generated Images, Video and AudioGoogle’s SynthID Detector looks for an embedded watermark in supported images, video and audio. Here is what its results do—and do not—show.
  3. Redmond desk20 min
    How to create a link to File or Folder in Windows 11Windows 11 gives you several ways to point to a file or folder without moving or duplicating it. You can create a desktop shortcut,…
Recommended PC Tool
Recommended PC Tool
Windows Errors? Fix Them Before They SpreadFree repair scan
Outdated Drivers Are Slowing You DownFree scan - exact matches

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.