The Technical
Kube-Proxy and CNI: The Hidden Components of Kubernetes Networking
A deep dive into both and how Cilium makes them better
Deep Dive โ Inspect Deployment Network Traffic in Kubernetes
"Ciliumโs Hubble, tapping into the power of eBPF, offers an impressive real-time observability platform"
Pitfalls of relying on eBPF for security monitoring (and some solutions)
"With care and creativity, eBPF can still be used to build next-generation security tools. But it requires acknowledging and working around eBPFโs constraints, not ignoring them"
Building an Efficient Network Flow Monitoring Tool with eBPF - Part 2
"we wrote the kernel space code of our program, saw how to handle both IPv4, IPv6 as well as TCP and UDP segments"
camptocamp/tetragon-policy-builder
"Generate TracingPolicies based on Tetragon events" Love the logo!
hardenedvault/ved-ebpf
"Kernel Exploit and Rootkit Detection using eBPF"
alegrey91/harpoon
"Trace syscalls of user-defined functions, using eBPF"
hardos-ebpf-fuzzing/ekcfi
kcfi with eBPF
kmesh-net/kmesh
"High Performance ServiceMesh Data Plane Based on Programmable Kernel" aka eBPF
eeriedusk/nysm
"An eBPF stealth container meant to make offensive tools fly under the radar of System Administrators"
๐
The Ecosystem
eBPF Documentary
Yep, we are getting a documentary! You can catch the trailer on Youtube here and catch the world premier at KubeCon in Chicago on November 8th
Not Your Grandpaโs Packet Filter: eBPF in Cloud-Native Networking
Find out all the places eBPF is being used beyond just networking
Learn Cilium the Easy Way with the Cilium Learning Paths
Which eBee are you?
Datadog Project Highlight: Cilium
Learn why Datadog started contributing to Cilium and where they see the project going in the future
Cilium โ A Fascinating Comprehensive Guide
"Cilium is a forward-thinking project that has redefined the way organizations approach networking and security"
Using eBPF for Network Observability
Seems similar to a Tetragon project I know
Senser raises $9.5M to transform IT observability with packet filter technology and AI
"Zero-instrumentation using eBPF is a major change in the observability paradigm that will allow Senser to take on bigger players"
Learning eBPF Review
"It moves beyond theObservability and performance lens towards Security and modification behaviour inside the Linux kernel"
๐
The How To
Architecting for Resilience: Crafting Opinionated EKS Clusters with Karpenter & Cilium Cluster Mesh โ Part 1
"Cilium is our networking superhero, ensuring our clusters talk to each other smoothly"
Cilium: Installing Cilium on AKS- Mariner in BYOCNI mode
For anyone on AKS wanting to move to Cilium
๐
The Video
eBPF Documentary Trailer
It's great, go watch it!
Can I Use Tetragon Without Cilium?
Yes. Watch the video to find out how and why
๐
The Events
eBPF Superpowers for SRE
Hear Liz Rice at SRECon in Dublin on October 10th
Cilium Workshop with Isovalent and Redpill Linpro - Oslo
October 17th
KCD UK
Talks about mutual auth and Tetragon for observability on October 17th
Elevating Kubernetes Observability with Cilium & Hubble: Hidden Insights Training
Online training October 19th both EMEA and America's time zones
Cilium Workshop with Isovalent and Redpill Linpro - Stockholm
October 19th
Cilium Workshop with Isovalent and Kloia - London
November 1st
CiliumCon
Now as a full day event at KubeCon Chicago November 6th!
๐