Cilium v1.5 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsec�ons provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for addi�onal introspec�on, for example, to trace interac�ons of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself a�ached to one or more tracepoints, collec�ng further informa�on in a map or pun�ng such events to a user space collector through0 码力 | 740 页 | 12.52 MB | 1 年前3Cilium v1.6 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 734 页 | 11.45 MB | 1 年前3Zero instrumentation monitoring with your first steps in eBPF
7 Conclusions ● eBPF programs can be attached to different events: ○ Kprobes ○ uprobes ○ Tracepoints ○ network packets… ● Frameworks, Go bindings, options make it easier: ○ First approach: C,0 码力 | 7 页 | 618.37 KB | 1 年前3bpfbox: Simple Precise Process Confinement with eBPF and KRSI
Python3 bcc framework ▶ Kernelspace components are all eBPF ▶ LSM probes (KRSI), kprobes, uprobes, tracepoints ▶ Under 2000 source lines of kernelspace code ▶ Thanks to eBPF, bpfbox is light-weight, flexible0 码力 | 8 页 | 528.12 KB | 1 年前3Debugging Go in production using eBPF
com/pixie-labs/pixie/tree/main/demos/simple-gotracing/trace_example DEMO: Go Argument Tracer ● Utilizing tracepoints for dynamic logging allows for easy instrumentation of production binaries ● The complexities0 码力 | 14 页 | 746.99 KB | 1 年前3Cilium v1.7 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 885 页 | 12.41 MB | 1 年前3Cilium v1.8 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 1124 页 | 21.33 MB | 1 年前3Cilium v1.10 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 1307 页 | 19.26 MB | 1 年前3Cilium v1.9 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 1263 页 | 18.62 MB | 1 年前3Cilium v1.11 Documentation
there are various other kernel subsystems as well which use BPF such as tracing (kprobes, uprobes, tracepoints, etc). The following subsections provide further details on individual aspects of the BPF architecture provides various tracepoints around BPF and XDP which can be used for additional introspection, for example, to trace interactions of user space programs with the bpf system call. Tracepoints for BPF: # perf Both tracepoint classes can also be inspected with a BPF program itself attached to one or more tracepoints, collecting further information in a map or punting such events to a user space collector through0 码力 | 1373 页 | 19.37 MB | 1 年前3
共 10 条
- 1