I took off last week to celebrate Thanksgiving with my family (and recover from KubeCon) so no big announcements this week, but there are two quotes from the community that I think are very interesting to dive into a little bit more. The first from this blog "Cilium has evolved from “just another CNI” to “the CNI that ate all other CNIs” (in a good way). It’s setting its sights on being “the only stack” for Kubernetes networking. Over the years, it has evolved to address key areas that would typically require multiple tools."
View in browser
echo-newsletter-70

 eCHO news is your bi-weekly wrap up of all things eBPF and Cilium. If you want to keep up on the latest in cloud native networking, observability, and security this is your quelle

3rd December 2024

 

I took off last week to celebrate Thanksgiving with my family (and recover from KubeCon) so no big announcements this week, but there are two quotes from the community that I think are very interesting to dive into a little bit more.

 

The first from this blog "Cilium has evolved from “just another CNI” to “the CNI that ate all other CNIs” (in a good way). It’s setting its sights on being “the only stack” for Kubernetes networking. Over the years, it has evolved to address key areas that would typically require multiple tools."

 

The growing platform engineering movement emphasizes reducing tools and complexity and nowhere is this trend more impactful than in networking, where the long-term cost of maintaining a fragmented stack is unsustainably high. We’ve also seen this pattern across iterations of networking—each generation consolidates around a dominant stack. Cloud native is no different, with Cilium well-positioned to take the lead in unifying the Kubernetes networking stack.

 

On the eBPF side, The New Stack recently highlighted "The eBPF Foundation’s proactive approach to addressing security concerns should be commended. It demonstrates a commitment to fostering a secure ecosystem for this powerful technology" for their audit and threat model. Continuously verifying the safety and security of eBPF will only help accelerate the ecosystem and its great to see this work being done.

 

CiliumCon CfPs are due Wednesday and I have a few to review so let’s 🐝 -gin.

The Technical

Protect from DDoS attacks with eBPF XDP

Drop packets from IPs exceeding a threshold with Github repo

 

hello-ebpf: Control task scheduling with a custom scheduler written in Java (16)

Implementing a simple FIFO scheduler

 

Building your own service mesh

in eBPF - "how hard could it be to write one from scratch?"

 

Azure Kubernetes Service supports a powerful Tetragon feature

Learn the difference between Sigkill and Override

 

Performance Schema vs eBPF based query profiling

"eBPF based prometheus Exporter for mysql/mariadb query latencies" Github

 

amiremohamadi/aoc

Advent of Code with eBPF

 

RinHizakura/kmemsnoop

"Install a hardware breakpoint in Linux kernel for tracing/debugging"

 

hack3ric/mimic

"eBPF UDP -> TCP obfuscator"

🐝

 

The Ecosystem

Top 5 Runtime Security Risks for Financial Services (And How to Solve Them on Kubernetes)

Like using Cilium and Tetragon to tie network and process activity together

 

eBPF Foundation Releases Security Threat Model and Audit Reports

"The eBPF Foundation’s proactive approach to addressing security concerns should be commended. It demonstrates a commitment to fostering a secure ecosystem for this powerful technology"

 

How to Build a Secure Financial Services Platform

(with Cilium and Tetragon)

 

A Season of Cilium

You'll love what is behind door #24

 

Challenge Your Cilium Knowledge

"quiz to start your Cilium certification journey"

 

Step into World of CILIUM: A Day 0 Kickoff Guide

"I attended a Kubernetes meetup and discovered an intriguing tool called Cilium"

🐝

 

The How To

Cilium & Argo CD on a Single-Node Kubernetes Cluster on Your Laptop — A Love Story of eBPF and GitOps

"Cilium has evolved from “just another CNI” to “the CNI that ate all other CNIs” (in a good way). It’s setting its sights on being “the only stack” for Kubernetes networking"

🐝

 

The Video

Cilium + eBPF Day NA 2024

All the video are now up, find out how Confluent, Reddit, SamsungAds, Sony and more are using Cilium

 

AKS Loves OpenSource Series: Chase Wilson on CNI Overlay & Cilium Project

Great to see how Microsoft is investing in Cilium

🐝

 

The Events

What’s new with Cilium and Isovalent Enterprise for Cilium 1.16!

Release webinar on December 10

 

Kubernetes Traffic Engineering with Cilium: Scenarios, Diagrams, and Best Practices

Webinar on December 12

 

eBPF Dev Room at FOSDEM

February 1st in Brussels

 

CiliumCon EU

April 1st in London, this is not a joke!

🐝 

The Livestreams

eCHO Episode 160:

Pre KubeCon Show + KCD UK Talk

 

eCHO Episode 160: Pre KubeCon Show + KCD UK Talk

  

eCHO Episode 161: We watched all the Cilium KubeCon Sessions so you don't have to

eCHO Episode 161: We watched all the Cilium KubeCon Sessions so you don't have to

Upcoming Stream

eCHO Episode 162: TBD

The Post of the Week

Petition for all  #ebpf  code to be written like this, except in the shape of a 🐝

As always, if you’ve seen a blog post, a tool, or anything else eBPF or Cilium related that you think the rest of the community should hear about, send them my way. You can either hit reply or join the #echo-news channel on Cilium Slack. You can also find all of the past episodes on the website.

🐝

To make sure you keep getting these emails, please add bill@isovalent.com to your address book or otherwise mark me as a permitted sender.

 

Know a friend that needs to be in the know? Forward this to them

Was this forwarded to you? Sign up today!

Written and sent by Bill Mulligan. Any feedback is welcome!

KC+CNC_NA_Headshot_241114_William_Mulligan_8154 (1)

I work for Isovalent at Cisco which is leading the eBPF-Powered Revolution in Cloud Native Networking, Observability, and Security with Cilium and Tetragon

logo-wordmark-isovalent-vertical-dark@2x
LinkedIn
X

Cisco/Isovalent, LLC, 755 Sycamore Drive, Milipitas, CA 95035, United States

Unsubscribe Manage preferences