View in browser
[eCHO News] Episode #13: Cilium Paid Mentorship, on k3s & Prometheus. eBPF for Anomaly Detection and Service Mesh Acceleration

eCHO news in your bi-weekly wrap up of all things eBPF and Cilium. If you want to keep up on the latest in cloud native networking, observability, and security this is your quelle

 

While this does seem to be a light news cycle because everyone is on vacation in August, there has been a lot happening around eBPF Summit. While I can't reveal the full schedule yet, as readers of this newsletter, I will give you a little sneak peak into what there will be.

 

Besides the keynotes, which you can already find on the website, topics will be broken down into four areas: eBPF in the Real World, eBPF for Networking, eBPF for Security, and eBPF Programming & Internals. I'm most looking forward to the eBPF in the Real World section because it will highlight the impact eBPF (and Cilium) are having in production today. Watch for the full schedule to be coming out later this week, let's 🐝 gin!

The Technical

Cilium Paid Mentorship Opportunity

Help improve the release security of Cilium and get paid to work on open source! Apply by August 25th

 

Journey to libbpf 1.0

Awesome to see the project reach this milestone and they have a cute new logo to boot

 

redhat-et/bpfd

"A system daemon for managing eBPF programs"

 

Process behaviour anomaly detection using eBPF and unsupervised learning Autoencoders

eBPF and ML, just waiting for the VC money to roll in πŸ’Έ Quite an interesting way to improve performance and I wonder where it will go. Github repo

 

eeriedusk/knockles

"a port knocking tool based on eBPF 🐝. It allows you to remotely open a TCP connection while being completely invisible to port scanners"

 

Gui774ume/krie

"a research project that aims to detect Linux Kernel exploits with eBPF with the goal of the project to make attackers' lives harder and ultimately prevent out-of-the-box exploits from working on a vulnerable kernel"

 

Decrypting SSL at Scale with eBPF, libbpf & K8s

"capture all HTTP, MySQL, and PostgreSQL requests and queries within a K8s cluster, without the need for a reverse proxy, a service mesh, or sidecar container"

🐝

 

The Ecosystem

Ep. #30, Cilium and eBPF with Thomas Graf of Isovalent

Podcast diving into eBPF, the origins of Cilium, the lessons learned while creating it in the open, and insights on kernel development. My favorite in a while

 

Tanzu Service Mesh Acceleration using eBPF

When even VMware is in on the party, you know it is Enterpriseℒ️ "with this capability enabled the results are impressive, both in terms of latency and QPS"

 

eBPF or Not, Sidecars are the Future of the Service Mesh

"eBPF has a future in the service mesh work" getting closer and closer every day 😈

 

Groundcover aims to improve observability and monitoring with eBPF and microservices

"instead of collecting and analyzing every bit of data available or sampling it randomly, developers can intelligently sample it"

 

The Race to Secure eBPF for Windows

"flaws have been fixed during the development stage before there is even a chance of exploitation by malicious actors" great to see more eyes securing eBPF

🐝

 

The How To

Getting started with Cilium for Kubernetes networking and observability

Learn how to spin up Cilium on a k3s cluster. "The most popular networking plugin for Kubernetes"

 

How to monitor Cilium on your Civo k3s cluster with Prometheus

Quickly set up Prometheus metrics and Grafana dashboards to monitor Cilium

 

Build a managed Kubernetes cluster from scratch β€” part 4

Learn how to install BGP routing and upgrade Cilium

 

Build a managed Kubernetes cluster from scratch β€” part 5

Deploy the Hubble adaptor for OpenTelemetry

🐝

 

The Events

eBPF Summit

Back for the third year and we are putting together a great program (Two eBPF maintainers will be speaking) Schedule coming soon so register today!

 

Cilium and eBPF @ Open Source Summit

A broad variety of talks from a Cilium workshops and talk on service mesh to eBPF for beginners and privilege escalation September 13-16th in Dublin

 

How the Hive Came to Bee: A technical deep dive

A technical deep dive of eBPF and how it works on a low level on August 31st

 

eBPF-based Security Observability & Runtime Enforcement with Cilium Tetragon

Join RaphaΓ«l Pinson at Cloud Native Computing Zurich on August 25th

 

Pimp Your Kubernetes Cluster With Cilium, eBPF-based Networking and Observability

Learn how to deploy Cilium CNI with Hubble on any cloud-provider supported by KKP including IPv4 / IPv6 dual-stack networking today!

🐝

The Videos

eCHO Episode 57:

Life of a Packet Through the Tubes

eCHO Episode 57: Life of a Packet Through the Tubes

  

eCHO Episode 58:

Cilium Service Mesh and Ingress

eCHO Episode 58: Cilium Service Mesh and Ingress

Upcoming Stream

eCHO Episode 59: TBD

Add to your calendar

The Tweet of the Week

The prize for 20,000th commit to Cilium goes to  @martyns  🐝🐝🐝 Your beekeeping suit is in the mail πŸ“­  Thanks to everyone in the community for helping us grow so far πŸš€

 

As always, if you’ve seen a blog post, a tool, or anything else eBPF or Cilium related that you think the rest of the community should hear about, send them my way. You can either hit reply or join the #echo-news channel on Cilium Slack.

🐝

 

To make sure you keep getting these emails, please add bill@isovalent.com to your address book or otherwise mark me as a permitted sender.

 

Know a friend that needs to be in the know? Forward this to them

Was this forwarded to you? Sign up today!

Written and sent by Bill Mulligan. Any feedback is welcome!

Bill Mulligan

I work at Isovalent which is leading the eBPF-Powered Revolution in Cloud Native Networking, Observability, and Security with Cilium

isovalent
LinkedIn
Twitter

Isovalent, 444 Castro St. STE 730, Mountain View, CA

Unsubscribe Manage preferences