Dan 🐝
@thebsdbox
Conjurer of cheap tricks 🧙🏼@ciliumproject/@isovalent http://github.com/thebsdbox && @kube_vip Past: @Heptio, @Docker, @EquinixMetal, @HPE
你可能會喜歡
Two pods with their traffic transparently proxied (thx eBPF 🐝), one using in kernel TLS and the other user-land. Next step is to handle AI workloads. 🤖
Amazing time at #KubeCon last week, fantastic people, amazing projects and an all round wonderful time.
Big yes from me 😀
We finally decided to write out how we use XDP in our network plane for live network migrations and more specifically to process outgoing packets! This is the first in a series of promised deep dives into how Loophole's live migration tech works! loopholelabs.io/blog/xdp-for-e…
An eBPF Loophole: Using XDP for Egress Traffic XDP is Linux's fastest packet processor but only handles incoming traffic. We found a loophole in how the kernel determines packet direction to make it work for outgoing traffic too! Blog post with details 👇
Capturing input from other sessions through eBPF 🐝, though my initial idea is enabling hot-keys for various use-cases 😀
kube-gateway.io or github.com/kube-vip/kube-… the kTLS implementation isn't particularly exciting just punting the traffic into the kernel basically (needs the kernel module loading)
Power cut two weeks ago resulted in my main @Synology NAS dying, luckily I had a back NAS that mirrors the main… sadly that died as well due to the power cut. 🫠
We've just announced the next Cloud Native and Kubernetes Edinburgh event, back after a bit of a break over summer with an absolute banger of a meetup that includes the one and only @thebsdbox meetup.com/cloud-native-k…
thebsdbox.co.uk/2025/07/17/egr… Excited to finally get the new egress in kube-vip.io out the door. As we slowly reach a v1.0 release 😱
What I’m now calling egressV2 is pretty much done in @kube_vip, native kernel calls and simple nftables rules should make for a much nicer experience. github.com/kube-vip/kube-…
Wow ephemeral containers allow for some funky stuff! I can easily apply a ephemeral container that intercepts traffic (with eBPF 🐝) and transparently encrypts it between pods. Doesn't show up as a container, so does that mean it isn't a sidecar 🤔
With a fix to ephemeral containers in v1.33 in @kubernetesio it’s now possible to add mTLS to an existing pod, no admission controller/webhook needed anymore. 🤩
might be biased, but i think the work we are doing at @LoopholeLabs with eBPF is among some of the most interesting use-cases in the entire space youtube.com/watch?v=Y_C4Ti…
youtube.com
YouTube
eCHO Episode 171: Migrating and Managing VMs using eBPF
We have a blog post coming out soon where we show how outbound XDP can improve application throughput by 2x - with no changes to the host or the application.
Though veth would seem like a perfect fit for container networking, but practitioners soon discovered it had a number bottlenecks that slowed communication rates across containers. thenewstack.io/bytedance-to-n… #NetKit @thenewstack #Linux #eBPF
United States 趨勢
- 1. World Cup 223K posts
- 2. Paraguay 23.2K posts
- 3. FINALLY DID IT 426K posts
- 4. The Jupiter 96.8K posts
- 5. Morocco 63.6K posts
- 6. Croatia 18K posts
- 7. Argentina 198K posts
- 8. Portugal 83.5K posts
- 9. Infantino 58.5K posts
- 10. #USMNT 1,278 posts
- 11. Matt Campbell 9,849 posts
- 12. Group L 12.8K posts
- 13. Ghana 68.6K posts
- 14. Norway 29.2K posts
- 15. Wayne Gretzky 3,654 posts
- 16. Senegal 39.7K posts
- 17. Lauryn Hill 10.4K posts
- 18. Iowa State 8,426 posts
- 19. Warner Bros 216K posts
- 20. #Mundial2026 31.3K posts
你可能會喜歡
-
Darren Shepherd
@ibuildthecloud -
Taylor Dolezal
@onlydole -
Cloud Native Rejekts
@rejektsio -
Nikhita Raghunath
@TheNikhita -
Alex Ellis
@alexellisuk -
Duffie Cooley
@mauilion -
puerco
@puerco -
David Flanagan
@rawkode -
Bob Killen @mrbobbytabl.es
@MrBobbyTables -
Jeffrey Sica
@jeefy -
Stefan Schimanski
@the_sttts -
Matt Moore ⛓🚀
@mattomata -
Ross_Kukulinski.yaml
@rosskukulinski -
Davanum Srinivas
@dims -
ihor dvoretskyi 🇺🇦
@idvoretskyi
Something went wrong.
Something went wrong.