View in browser
echo-newsletter-60

 eCHO news is your bi-weekly wrap up of all things eBPF and Cilium. If you want to keep up on the latest in cloud native networking, observability, and security this is your quelle

16th July 2024

 

In a previous life, I was a biochemist researching developmental biology. I was excited when the eBPF Foundation announced funding for academic research because I love the idea of pushing out the bounds of human knowledge and expanding what it possible. I was really blown away when we received 25 different proposals from researchers looking to advance the state of the art for eBPF. The BSC now has their work cut out for them to choose who gets funding for this year. With this much interest, I can't wait to see what we will learn about eBPF in the next 12 months!

 

Talking about new and interesting ideas, the deadline for the eBPF Summit CfP has been extended for a week until July 24th. Now is your chance to tell the world about what you are doing with eBPF. Let’s 🐝 -gin.

The Technical

Memory Management on Kubernetes with Golang and eBPF: Deep Dive

"A digest article on workload memory use, the memory control group, the OOM killer, and their relation with applications"

 

eBPF Network Vershitifier

Learn to drop outgoing packets for targeted processes using the eBPF TC filters

 

Tracing Linux: A file integrity monitoring use case

Utilizing eBPF or tk-btf depending on the age of your kernel

 

Writing eBPF Tracepoint Program with Rust Aya: Tips and Example

with a few references too

 

Exploring Cilium Network Integration with AWS EKS

Installation with the add-on module

 

Instrumenting Python GIL with eBPF

Find out if the Global Interpreter Lock is impacting your application

 

ebpf map as communication channel

"see what other non-obvious advantages can be obtained from such heretical crossbreeding"

 

eBPF on WSL2 [kernel version 6.x] [Ubuntu] [x64] [Arm64] [2024]

Start developing eBPF on a Windows machine

 

fukuda-lab/FIDe

"FIDe is an fully in-kernel anomaly detection/mitigation framework based on eBPF"

 

coranlabs/hexaebpf

"An Open Source eBPF defined cloud native telecom solution" intro video

 

elastic/tk-btf

"Go package to fabricate the string representation of Linux tracing kprobes based on BTF files"

 

chayuto/tetragon-playground

Ready to play examples in Docker compose

🐝

 

The Ecosystem

Cilium netkit: The Final Frontier in Container Networking Performance

Replace veth to make container networking as fast as the host

 

bpfconf 2024

The slides and discussion notes are all online now

 

Cilium Gateway API: Bridging Networks Beyond Envoy Proxies

Get your gateway class

 

National Science Foundation’s Formal Methods in the Field Track II Award

"project's key impact is the development of a provably sound eBPF verifier"

 

Aflevering 59: Unpacking eBPF and Sustainability

De Nederlandse Kubernetes Podcast goes eBPF

 

Go Weekly: Mastering Go Performance - eBPF and PGO Optimization Techniques

Short overview

 

App-Level eBPF Applications - User vs. Kernel Probes

See the performance tradeoffs

 

The coming eBPF revolution and why Kubernetes monitoring will never be the same

"DevOps teams don’t need to instrument code, restart services, or use sidecars, which minimizes overhead and simplifies deployment"

 

Roche Improves Medical Device Management at the Edge with Isovalent and Cilium

Cilium Service Mesh to the rescue for edge networking challenges

🐝

 

The How To

Cilium: Installing Cilium in GKE with no Kube-Proxy

unleash GKE from iptables

 

Cilium, Gateway API, Cert-Manager and Let’s Encrypt — Updates

RKE2 homelab setup

 

Automating Talos Installation on Proxmox with Packer and Terraform, Integrating Cilium and Longhorn

"serving as a future reference for myself and potentially helping others" love it!

 

Cilium no EKS [Lab Session]

(português brasileiro)\

 

Cilium BGP Lab, locally!

then go earn the badge after 😉

🐝

 

The Video

A Closer Look: Processes Running in the Kernel

Tetragon can see it all

 

Cilium Gateway API - GAMMA

Adding east-west service mesh functionality

 

Let’s Learn Networking Part 11: Network Routing and BGP with Cilium Pt 2!

"learn about some advanced ways to use BGP"

 

Talking eBPF and Cilium with Liz Rice

Quick overview of eBPF, Cilium, and Isovalent

 

Port Range Support in Network Policies

No more one port per rule

 

BGP Support for ClusterIP ll Swift Start Guide

Learn how to advertise them

🐝

 

The Events

Unlocking the Power of Cilium for Platform Operators

Virtual Workshop on July 18 

 

Getting Started with Networking Security - Virtual Workshop series

Session 1: Intro to Networking Security & SecOps - July 30

Session 2: Networking Security: Zero Trust Visibility - August 6 

 

Simplify Kubernetes operations with Cilium Ingress: Hands-On Workshop for Platform Operators

Virtual Workshop on August 22

 

eBPF Summit

September 11th! CfP closes on 24th July

 

Cilium + eBPF Day

See you in Salt Lake!

🐝 

The Livestreams

eCHO Episode 143: Sailing The Seas With Tetragon

eCHO episode 143: Sailing The Seas With Tetragon

  

eCHO Episode 144: API Gateways on Cilium

eCHO Episode 144: API Gateways on Cilium

Upcoming Stream

eCHO Episode 145: Implementing Zero Trust Security with Cilium at WS02

The Tweet of the Week

i've been bitten by eBPF for the 6th time today (yes I keep a count). Can I just have an option to disable the verifier?

As always, if you’ve seen a blog post, a tool, or anything else eBPF or Cilium related that you think the rest of the community should hear about, send them my way. You can either hit reply or join the #echo-news channel on Cilium Slack. You can also find all of the past episodes on the website.

🐝

To make sure you keep getting these emails, please add bill@isovalent.com to your address book or otherwise mark me as a permitted sender.

 

Know a friend that needs to be in the know? Forward this to them

Was this forwarded to you? Sign up today!

Written and sent by Bill Mulligan. Any feedback is welcome!

Screenshot 2023-12-12 at 10.49.34

I work for Isovalent at Cisco which is leading the eBPF-Powered Revolution in Cloud Native Networking, Observability, and Security with Cilium and Tetragon

logo-wordmark-isovalent-vertical-dark@2x
LinkedIn
X

Isovalent, 20830 Stevens Creek Blvd. #1047, Cupertino, CA 95014, United States

Unsubscribe Manage preferences