• Open Daily: 10am - 10pm
    Alley-side Pickup: 10am - 7pm

    3038 Hennepin Ave Minneapolis, MN
    612-822-4611

Open Daily: 10am - 10pm | Alley-side Pickup: 10am - 7pm
3038 Hennepin Ave Minneapolis, MN
612-822-4611
The Cilium Handbook: Building Modern Kubernetes Networking with eBPF

The Cilium Handbook: Building Modern Kubernetes Networking with eBPF

Paperback

General Computers

Currently unavailable to order

ISBN13: 9798272449795
Publisher: Independently Published
Published: Oct 31 2025
Pages: 320
Weight: 0.95
Height: 0.67 Width: 6.00 Depth: 9.00
Language: English
Cilium turns eBPF into a production-grade networking, security, and observability fabric for Kubernetes. This book is written for platform engineers, SREs, and network architects who must own traffic, policy, and performance from the kernel to the service mesh. If you're building multi-tenant clusters, replacing kube-proxy, or pushing p99 latency down while raising scale limits up, this handbook delivers deep, practical guidance rooted in the realities of modern Linux and cloud-native operations.

You will master Cilium's control and data planes, from CRDs and identity to Envoy-driven L7 enforcement. The text builds from eBPF fundamentals-program types, maps, verifier constraints, CO-RE-through Linux primitives like namespaces, conntrack, and MTU, then maps them to Kubernetes Services, EndpointSlices, and CNI lifecycles. Dive into the eBPF datapath for policy, NAT, DSR, and encryption; enable kube-proxy replacement; integrate Gateway API and service mesh; run high-performance L4 load balancing with XDP; manage service addresses with LB-IPAM; advertise reachability via BGP; and secure east-west with advanced policies, egress gateways, and multi-cluster with Cluster Mesh. Hubble-driven observability, systematic troubleshooting, and rigorous performance tuning complete a full production toolkit.

Readers should be comfortable with Kubernetes internals, Linux networking, and Helm/YAML. The book favors operational truth over abstractions: kernel prerequisites and BTF pitfalls, upgrade and rollback playbooks, verifier-friendly patterns, failure-domain-aware capacity planning, and tunables that actually move the needle. Structured for expert learning, it combines precise mental models with field-tested configurations to help you design, operate, and evolve dependable, high-throughput Kubernetes networks.

Also in

General Computers