View in browser
echo-newsletter-53

 eCHO news is your bi-weekly wrap up of all things eBPF and Cilium. If you want to keep up on the latest in cloud native networking, observability, and security this is your quelle

9th April 2024

 

I'm in the US for two weeks, first to visit the Isovalent office in SF (before it is gone) and second to speak at Open Source Summit (where I'll also be doing a book signing, come say hi!). Going from Schillerkiez to Silicon Valley, I find it fascinating knowing that I can find Cilium in these two very different places. Both the German government agency across the street from me and the hot startups advertising on the 101 are using Cilium in production to provide networking, observability, and security in their Kubernetes world and beyond.

 

It really helps highlight to me that the growth and adoption of the project is not just the latest buzz at KubeCon (even though the booth and talks were packed), but actually defining how people are building, deploying, and operating cloud native infrastructure around the world. From the German Mittelstand to whatever the latest AI buzz is, Cilium is there and that's pretty cool! I have a few slides to polish up so let's 🐝 gin!

The Technical

eBPF & Tetragon: Tools for detecting XZ Utils CVE 2024-3094 Exploit

Detect the XZ backdoor with Tetragon

 

XDP for Game Programmers

"If you were creating a new MMO or hyper player count game in 2024, I can't think of a better foundational technology than XDP/eBPF"

 

Hello eBPF: Generating C Code (8)

"Using annotation processing allows to reduce the amount of C code we have to write and reduces errors by generating all definitions from the Java code"

 

Cilium Hubble CLI – Using a local configuration file

Get rid of your flags

 

dkorunic/pktstat-bpf

"TC and XDP eBPF based simple Ethernet interface traffic monitor and reporting tool"

 

aojea/nat64

"NAT64 implementation for Kubernetes deployments (mainly)" with eBPF

🐝

 

The Ecosystem

eBPF Research Funding

$25-50k for academic proposals researching eBPF from the foundation

 

Case Study: SmartNews

"After the comparison, we chose Cilium because it’s sidecar free for lower resource consumption, easy to configure global services, and cheaper than AWS LB creating a very elegant solution for us"

 

Recap of the First eBPF Day India

Hear the highlights or check out the playlist on Youtube

 

#023 - Kubernetes for Humans Podcast with Liz Rice (Isovalent)

Quick podcast overview of the Cilium and eBPF ecosystem

 

New State of eBPF Report highlights evolution of eBPF technology

Hear my overview of the report

 

Sortie de la version 0.2 du provider terraform pour cilium

Pourquoi et les nouveautés

 

InfoQ: KubeCon EU Highlights

"described Tetragon as your crystal ball or scout in the kernel"

 

KubeCon Europe: WebAssembly, eBPF Are Huge for Cloud Native

"eBPF and WebAssembly are increasingly becoming foundational components"

 

Industry Voices: Hanging out with Cloud Natives - Insights from KubeCon Europe 2024

"eBPF: the powerhouse under the hood, was omnipresent at the conference"

 

Isovalent's KubeCon Europe 2024 Wrap-Up

"Remember when KubeCon was only 2-days long?" No, I don't Nico 🥲

🐝

 

The How To

Extending a service using Private Link from Azure and securing it with Cilium’s Network Policy

Limit your service's exposure to the public internet

 

La mutualisation de services sur plusieurs clusters avec Cilium et Microsoft AKS

"Cilium se démarque comme un outil innovant et puissant"

 

AKS and Cilium 101

Introduction and deploying on AKS

 

Use Cilium to provide networking services to containers inside Oracle Container Engine for Kubernetes - OKE -

Switch Flannel with Cilium and test a NetworkPolicy and LoadBalancer service

 

Improve your EKS cluster with Istio and Cilium

Learn how they can work together in the same cluster

🐝

 

The Video

What is Tetragon?

"Brings the full powers of eBPF to runtime security"

 

Let’s Learn Networking with Cilium - Part 8: Cilium Sessions @ KubeCon EU

See what happened in the key sessions

 

Let's Learn Networking w/ Cilium - Pt 9: Runtime Security & Tetragon

"We can get into the depths of process executions, syscalls, and file access monitoring"

🐝

 

The Events

Hive Harmony: Kubernetes Networking Essentials

Online workshop series April 11th and 16th

 

Top Kubernetes Use Cases: Tetragon and eBPF for Platform Teams

Webinar on April 18th 

 

Kubernetes Networking and Security with Cilium

In-person meetup with Liz Rice in London on April 23rd 

 

Putting the "Om" in Compliance: Zen and the Art of Cilium Enterprise

In-person meetup in London on April 25th 

 

#155 eBPF: Into the Kernel Space

"un bicho capaz de viajar por el espacio del kernel y no solo para observarlo sino tambien para manipularlo!"

🐝

The Livestreams

eCHO Episode 129:

KubeCon EU preview

eCHO Episode 129: KubeCon EU preview

  

eCHO Episode 130:

Eunomia BPF

eCHO episode 130: Eunomia BPF

Upcoming Stream

eCHO Episode 131: Finding xz using Tetragon

The Tweet of the Week

tweet: Redis but implemented as an eBPF map. We call it kernelpanikey

As always, if you’ve seen a blog post, a tool, or anything else eBPF or Cilium related that you think the rest of the community should hear about, send them my way. You can either hit reply or join the #echo-news channel on Cilium Slack. You can also find all of the past episodes on the website.

🐝

To make sure you keep getting these emails, please add bill@isovalent.com to your address book or otherwise mark me as a permitted sender.

 

Know a friend that needs to be in the know? Forward this to them

Was this forwarded to you? Sign up today!

Written and sent by Bill Mulligan. Any feedback is welcome!

Screenshot 2023-12-12 at 10.49.34

I work at Isovalent which is leading the eBPF-Powered Revolution in Cloud Native Networking, Observability, and Security with Cilium and Tetragon

isovalent
LinkedIn
X

Isovalent, 20830 Stevens Creek Blvd. #1047, Cupertino, CA 95014, United States

Unsubscribe Manage preferences