View in browser
echo-newsletter-42

 

 eCHO news is your bi-weekly wrap up of all things eBPF and Cilium. If you want to keep up on the latest in cloud native networking, observability, and security this is your quelle

31st October 2023

 

CiliumCon and KubeCon are just around the corner next week 😱 Across the two events, there are going to be 25 talks about Cilium. And I thought it was already crazy just last May when we had 10 talks. You can find all of the talks in the blog here. I would especially recommend the maintainer's track and contribfest if you want to learn where the project is heading or how to start contributing.

 

If you are like me and only hang out in the hallway track, there is still a lot of Cilium for you too. You can usually find me and ask questions at the Cilium booth and I heard Dan is cooking up some cool demos too. Isovalent is hosting a Cilium OSS Experience Center where you can learn what eBee you are and try out some hands on labs.

 

On the eBPF side, I would definitely recommend the eBPF Documentary. It's really a masterpiece with a great narrative arc and captures "the room where it happened." I'll also be signing copies of "Buzzing Across Space: The Illustrated Children's Guide to eBPF" (I haven't announced this anywhere yet so this is an eCHO News subscriber exclusive 😉). Also keep your ears open for another launch coming tomorrow. Lots still left to do before KubeCon hits so let's 🐝 gin!

The Technical

Userspace eBPF Runtimes: Overview and Applications

"userspace eBPF runtimes are cementing their position as an indispensable part of the cloud-native technology stack, offering an unparalleled combination of safety, efficiency and innovation"

 

eBPF application development: Beyond the basics

"A 201-level guide for eBPF" diving into things like choosing your application stack and CO-RE

 

Getting acquainted with BPF as a security tool

"I’ve been very impressed with BPF and the ecosystem of tools around it"

 

Kubernetes network learning with Cilium and eBPF

Dive into the networking code behind Cilium

 

Migration du routage de cilium de iptables vers eBPF... à chaud !

"Le passage au mode eBPF a permet de retrouver des niveaux totalement indolores (1% de CPU par node, 1-2% de RAM) par rapport aux configurations de mes machines"

 

Migrating Cilium from Legacy iptables Routing to Native eBPF Routing in Production

"While we were expecting significant improvements in resource consumption, we certainly weren’t hoping for 10 times less"

 

eBPF: A practical intro with examples on Observability, Security & Networking

Learn how to kill processes and count packets

 

eunomia-bpf/bpftime

"Userspace eBPF runtime for fast Uprobe & Syscall hook & Plugins"

 

edgebitio/edgebit-agent

eBPF for software supply chain security

🐝

 

The Ecosystem

Cilium User Survey - September 2023

We want to hear from you! Let us know what you love and what we need to work on

 

Cilium Talks at KubeCon NA 2023

Find all 25 talks here and make sure to say hi if you see me there next week!

 

CNCF firms up Cilium cell structure

"Cilium’s rise as a universal connectivity layer for cloud-native infrastructure is a massive disruptor to the entire old-world, software-defined, proprietary networking stack – poised to make the same impact on the networking stack, as Linux did on x86 server infrastructure in the ’00s"

 

Isovalent Enterprise for Cilium 1.14: introducing Cilium Multi-Networking

Say goodbye to Multus

 

eBPF Offers a New Way to Secure Cloud Native Systems

Not just for networking anymore

 

Can eBPF Keep Your Kubernetes Cluster from Getting Hacked?

"one day, organizations should be able to automate their security scans and protection for Kubernetes and other environments so they don’t even have to know that eBPF is running everywhere and can just rely on it to keep their organization out of trouble"

 

What is Kube-Proxy and Why Move From iptables to eBPF?

"This transition from iptables to eBPF is a journey over the last decade that marks a significant shift in how we handle packet forwarding, load balancing, and service abstraction within Kubernetes clusters"

 

Why eBPF Isn’t Enough for Container Monitoring

Making the case for higher level tooling that leverages eBPF

 

When Not to Use eBPF for Observability and Security

First point is that is (currently) lacks Windows support 😅

 

Unlocking Speed: eBPF-Based Auto-Instrumentation Over 20x Faster Than Traditional Instrumentation

TL;DR: the faster bit is using uprobes. powered by cilium/ebpf

 

Kubernetes Community Days UK: Keynote Cilium and eBPF

"It now only requires adding two lines of code to the YAML in the Cilium Network Policy to authenticate communication between two workloads"

 

Linuxカーネル内部をフックするeBPFを用いてコンテナ間通信を実現する「Cilium」、十分成熟したソフトウェアに到達したとして、CNCFの卒業プロジェクトに

Cilium Graduation coverage in Japanese!

 

Aflevering 29: Cilium als CNI & Programmeren is kunst

Dutch Kubernetes Podcast on Cilium

🐝

 

The How To

Get started with eBPF log analytics in your Kubernetes cluster

Learn how to use Tetragon to for auditing and alerting sensitive file access in Kubernetes

 

Auditing of eBPF Programs with Tetragon

A hands on lab introduction to Tetragon

 

Mastering Kubernetes with Cilium: Empowering L7 Traffic Control

"In this tutorial, we’ll be securing an API endpoint to allow access only to specific routes by our client" auch auf Deutsche

 

The Future of Kubernetes: Rancher RKE2 and Cilium CNI

Medium paywall though 😔

 

Kubernetes multi-cluster implementation in under 10 minutes

"Build a mesh of Kubernetes clusters with Cilium ClusterMesh and KIND"

🐝

 

The Video

Datadog On Maintaining eBPF at Scale

"eBPF plays a core role in different domains application and infrastructure observability, runtime security, and developer tools. Hear how we keep eBPF portable, performant, and secure for both customers and Datadog alike"

 

🔴 Cilium Graduates at the CNCF

Discussion on DevOps Paradox

🐝

 

The Events

Cilium Workshop with Isovalent and Kloia - London

November 1st

 

CiliumCon

See you there next week! Full schedule for KubeCon here

 

Cilium Workshop with Isovalent and copebit - Zürich

November 22nd

 

Cilium Workshop with Isovalent, Microsoft & Sopra Steria - Oslo

November 28th

 

Cilium Workshop with Isovalent, Microsoft & Sopra Steria - Trondheim

November 29th

 

What's new in Cilium 1.14!

Webinar on November 30th

 

Cilium + eBPF Day

Coming back to KubeCon Paris and the CfP is already open 😅

🐝

The Livestreams

eCHO Episode 112:

ebeenix - eBPF and Nix

 

eCHO Episode 112: ebeenix - eBPF and Nix

  

eCHO Episode 113: Come join us at Kubecon/CloudNativeCon 2023 in Chicago

eCHO Episode 113: Come join us at Kubecon/CloudNativeCon 2023 in Chicago

Upcoming Stream

eCHO Episode 114: Running Cilium in home labs

Add to your calendar

The Tweet of the Week

Tweet: Is  @ciliumproject  everyone’s favorite CNI these days? #Kubernetes

As always, if you’ve seen a blog post, a tool, or anything else eBPF or Cilium related that you think the rest of the community should hear about, send them my way. You can either hit reply or join the #echo-news channel on Cilium Slack. You can also find all of the past episodes on the website.

🐝

To make sure you keep getting these emails, please add bill@isovalent.com to your address book or otherwise mark me as a permitted sender.

 

Know a friend that needs to be in the know? Forward this to them

Was this forwarded to you? Sign up today!

Written and sent by Bill Mulligan. Any feedback is welcome!

circle headshot

I work at Isovalent which is leading the eBPF-Powered Revolution in Cloud Native Networking, Observability, and Security with Cilium

isovalent
LinkedIn
Twitter

Isovalent, 20830 Stevens Creek Blvd. #1047, Cupertino, CA 95014, United States

Unsubscribe Manage preferences