Cilium v1.7 DocumentationGlossary Introduction to Cilium What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. Why Cilium? The development of modern datacenter applications shifted to a service-oriented architecture often referred to as microservices, wherein a large application is split into small independent services that communicate with each other via APIs using lightweight0 码力 | 885 页 | 12.41 MB | 1 年前3
Cilium v1.6 DocumentationGlossary Introduction to Cilium What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. Why Cilium? The development of modern datacenter applications shifted to a service-oriented architecture often referred to as microservices, wherein a large application is split into small independent services that communicate with each other via APIs using lightweight0 码力 | 734 页 | 11.45 MB | 1 年前3
Cilium v1.8 DocumentationIntroduction to Cilium & Hubble What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. What is Hubble? Hubble is a fully distributed networking and alerting Is any network communication failing? Why is communication failing? Is it DNS? Is it an application or network problem? Is the communication broken on layer 4 (TCP) or layer 7 (HTTP)? Which services0 码力 | 1124 页 | 21.33 MB | 1 年前3
Cilium v1.9 DocumentationIntroduction to Cilium & Hubble What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. What is Hubble? Hubble is a fully distributed networking and alerting Is any network communication failing? Why is communication failing? Is it DNS? Is it an application or network problem? Is the communication broken on layer 4 (TCP) or layer 7 (HTTP)? Which services0 码力 | 1263 页 | 18.62 MB | 1 年前3
Cilium v1.10 DocumentationIntroduction to Cilium & Hubble What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. What is Hubble? Hubble is a fully distributed networking and alerting Is any network communication failing? Why is communication failing? Is it DNS? Is it an application or network problem? Is the communication broken on layer 4 (TCP) or layer 7 (HTTP)? Which services0 码力 | 1307 页 | 19.26 MB | 1 年前3
Cilium v1.11 DocumentationIntroduction to Cilium & Hubble What is Cilium? Cilium is open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms the Linux kernel, Cilium security policies can be applied and updated without any changes to the application code or container configuration. What is Hubble? Hubble is a fully distributed networking and alerting Is any network communication failing? Why is communication failing? Is it DNS? Is it an application or network problem? Is the communication broken on layer 4 (TCP) or layer 7 (HTTP)? Which services0 码力 | 1373 页 | 19.37 MB | 1 年前3
Cilium v1.5 DocumentationPresenta�ons Podcasts Community blog posts Glossary Introduction to Cilium What is Cilium? Cilium is open source so�ware for transparently securing the network connec�vity between applica�on services deployed 5/examples/kubernet wget https://raw.githubusercontent.com/cilium/cilium/v1.5/examples/kubernet Open cilium-external-etcd.yaml and find the cilium-config ConfigMap and edit the endpoints: to include $ cd contrib/terraform/aws $ cp contrib/terraform/aws/terraform.tfvars.example terraform.tfvars` Open the file and change any defaults par�cularly, the number of master, etcd, and worker nodes. You can0 码力 | 740 页 | 12.52 MB | 1 年前3
Buzzing Across Spacesystem. eBPF is an event-driven architecture that runs specific programs when the kernel or an application passes a certain hook point. For example, kernel probes (kprobe) or user probes (uprobe) can be having to export samples. Attaching eBPF programs to trace points as well as kernel and user application probe points gives powerful introspection abilities for the kernel and user space applications Once at the space garage, Captain Tux found spare pieces, But they lacked instructions, and the model had changed. How would the bees make them fit into the engines? And then what about the quantic guidance0 码力 | 32 页 | 32.98 MB | 1 年前3
Debugging Go in
production using eBPFCo-Founder/CEO Pixie (@pixie_run) & Adjunct Professor of CS @ Stanford DEVELOPER PROBLEM You’re an application developer, and your program is misbehaving. ● No problem. You have logs! Right? ● Uh-oh, not fact *= float64(i) res += 1 / fact } return res } Let’s look at test application Use Case GET /e?iters={iterations} // computeE computes the approximation of e by running a program, re-compile and re-deploy. ○ This can be simple log statements, or ○ More comprehensive like Open tracing. Option 2: Debugger ○ GDB ○ Delve Option 3: Linux tracing utility ○ strace/ftrace ○0 码力 | 14 页 | 746.99 KB | 1 年前3
Steering connections to sockets with BPF socket lookup hookusers:(("nc",pid=1289,fd=3)) $ nc -4 127.0.0.1 7777 hello⏎ hello ^D Netcat + /bin/cat Test it! Check open ports on VM external IP vm $ ip -4 addr show eth0 2: eth0:mtu $ nmap -sT -p 1-1000 192.168.122.221 … Not shown: 999 closed ports PORT STATE SERVICE 22/tcp open ssh Nmap done: 1 IP address (1 host up) scanned in 0.07 seconds scan first 1000 ports 7, 77, 777 conntrack routing decision mangle PREROUTING nat PREROUTING socket lookup socket receive buffer Application Protocol Network Driver XDP TC ingress alloc_skb Ring Buffer forward Wikipedia - Packet 0 码力 | 23 页 | 441.22 KB | 1 年前3
共 16 条
- 1
- 2













