The Technical
Debugging Cilium Envoy Upstream Connection Failures
A fun dive through Cilium, Hubble, Envoy, and tcpdump and the resulting solution
Finally making use of bpftrace
Best opening line of a blog "I am old enough to remember when BPF meant the traditional Berkeley Packet Filter" 😂
Check Out the new Network Observability Support in OpenShift 4.12
I like the airplane view of a city's traffic analog for eBPF-powered observability
Tracing Locks in Postgres using eBPF programs
My new description of what eBPF does "Quite useful information that's otherwise impossible to get"
vadorovsky/aya-btf-map
"BTF map support for Aya"
CloudNativeDataPlane/cndp
"Cloud Native Data Plane (CNDP) is a collection of user space libraries to accelerate packet processing for cloud applications using AF_XDP"
nickolaev/vagrant-parallels-m1-k8s-cilium
"Vagrantfile and Scripts to Automate Kubernetes with Cilium setup using Kubeadm"
Esonhugh/sshd_backdoor
"/root/.ssh/authorized_keys evil file watchdog with ebpf tracepoint hook"
🐝
The Ecosystem
Announcing the Cilium annual report
"The highlight of the report is how it showcases that end users across diverse industries like finance, retail, software, and telecommunications are all realizing the benefits of Cilium and eBPF and have shown that it is production ready at scale" Get the pdf on Github
eBPF on Wikipedia
Cool to see that it finally has its own page!
Performance Testing Cilium Ingress at Hetzner Cloud
"Overall, Cilium provided a massive increase in both RPS and throughput while still reducing CPU usage" not much more I need to say 🤷
WTF is Cilium?
Learn what Cilium is explained in superhero metaphors
Ep. #57, Monitoring K8s Applications with Shahar Azulay of Groundcover
"We see other observability companies moving into eBPF as a sensor because it can open up a lot of unseen parts in production that developers or teams just don't touch that easily or go through that instrumentation journey."
What You Need to Know About eBPF Security Observability
"The new eBPF program mentioned above provides a unified API strategy for signals and mitigations, optimizes the kernel LSM framework, and solves the problem that in existing mechanisms, system calls are easy to be lost"
Groundcover: Simplifying Observability with eBPF
"groundcover offers an opinionated take on what to store, based on experience" (and eBPF)
Six eBPF trends for 2023
#4 and #5 are the most interesting to me
The Benefits of eBPF for API Security
"The biggest advantage of eBPF comes from its ability to pull deep data from the application environment"
Exploring Service Mesh through Istio, eBPF, and RSocket Broker: An In-depth Study
More than one way to fry a fish
What is eBPF and Do You Really Need it?
A quick video walk through of a bunch of resources around the community
The Advantages of eBPF for CWPP Applications
Great to see more security vendors switching away from kernel modules and towards eBPF 👏
eBPF enhances cloud-native security through a kernel approach
theCUBE interviews Liz Rice
Turbocharging Host Workloads with Calico eBPF and XDP
Great to see more CNIs using eBPF
Patches Updated For Hooking eBPF Programs Into The Linux Kernel Scheduler
One of the more unique use case for eBPF, rewriting the scheduler gets a v2
🐝
The How To
How I moved from MetalLB to Cilium
I think we will be seeing a lot more of this with the new BGP integration
Cilium Integration with F5 BIG-IP
A video walking through how to set up Cilium with F5 BIG-IP with an accompanying Github repo
Cilium Policy Verdicts
Not quite a blog post, but cool to see how you can visualize network policy enforcement in Grafana now!
eBPF for Cybersecurity - Part 2
Learn about how to write an eBPF program
Establish Cilium ClusterMesh with Helm Chart
Walk through with use cases for multi cluster network policy and encryption
🐝
The Events
Civo Navigate
Tracy Holmes will talk about home lab observability in Tampa February 7th
What’s New with Cilium & eBPF South Bay Meetup
Join the first ever Cilium Meetup, be the OG on February 9th
ContainerDay Security
Cilium workshop and Tetragon talk in always sunny Hamburg February 8th
Kubernetes & Cloud Native Berlin Meetup February Edition
Get an introduction to eBPF from Ayesha Kaleem on February 8th in Berlin
Software Circus Valentine's Day Edition
Hear Ray talk about Cilium & Grafana - A match made in heaven in Amsterdam on February 15th
Découverte de Cilium et intégration dans AKS
Intro to Cilium on February 28th in Lyon
CiliumCon
The first ever CiliumCon is happening on April 18th at KubeCon + CloudNativeCon. CfP is open until 12th of February.
🐝