cilium
kilo
Our great sponsors
cilium | kilo | |
---|---|---|
24 | 10 | |
18,510 | 1,947 | |
2.9% | - | |
10.0 | 3.7 | |
4 days ago | about 2 months ago | |
Go | Go | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
cilium
-
Cisco to Acquire Cloud Native Networking and Security Leader Isovalent
They would have had to add a few externals to get to Graduated but it's definitely a minority:
https://github.com/cilium/cilium/blob/main/MAINTAINERS.md
-
An opinionated template for deploying a single k3s cluster with Ansible backed by Flux, SOPS, GitHub Actions, Renovate, Cilium, Cloudflare and more!
Next-gen networking thanks to Cilium
-
Route Pod-Traffic Through WireGuard w/ Cilium
Hello there, I recently have the need to proxy my pod traffic through WireGuard. I initially have my eyes on https://github.com/angelnu/pod-gateway but I just couldn't get it working. It turns out that Cilium made a CVE patch couple years ago that basically nuked ability to do inter-pod encapsulated traffic (https://github.com/cilium/cilium/issues/15991). I wonder if there is any other way that can let me do this without switching out of Cilium? Thank you guys in advance :)
-
Creating Kubernetes Cluster With CRI-O
I have used Cilium as CNI and installing it with helm.
-
Need advice on K3s cluster setup
I'm using the default RaspiOS Lite 64bits and as highlighted in this issue, the RaspiOS kernel does not support CONFIG_ARM64_VA_BITS_48, which makes cilium-envoy to fail building. As solution, I was told to use either Ubuntu as base OS or Traefik Ingress Controller, which is not configured in K3s.
- MetalLB or Cilium?
-
Ask r/kubernetes: What are you working on this week?
Working on integrating cilium and loxilb as a hobby k8s project. Both are eBPF based and will be interesting to see what will be the final outcome.
-
Saying Goodbye to Ingress: Embracing the Future of Kubernetes Traffic Management with Gateway API and Cilium
Particularly in Cilium, Gateway API is very proof-of-concept. So much so that you can't even change the type of the underlying service (or anything else about the generated object) yet.
-
Isn't Istio Ambient mesh a fantastic step to simplify operating istio? Here's a video explaining the architecture!
Authentication using mTLS was later merged into cilium (https://github.com/cilium/cilium/pull/24263). It uses mTLS between cilium agents to authorize flows, but do note that the mTLS auth is de-coupled from the datapath transport (i.e. you need to configure cilium to use ipsec or wireguard, as otherwise traffic won't be encrypted). As a consequence, there are some gaps in the implementation right now, like packet drops. see https://github.com/cilium/cilium/issues/23808
-
libvirt-k8s-provisioner - Ansible and terraform to build a cluster from scratch in less than 10 minutes ok KVM - Updated for 1.26
network plugin to be used, based on the documentation. (Project Calico ,Flannel, Cilium )
kilo
-
NetMaker: Connect Everything with a WireGuard VPN
For the particular case of creating a wireguard mesh network in kubernetes, I've been quite happy with Kilo[0]. Does anyone with experience in both kilo and netmaker know how they compare?
[0]: https://kilo.squat.ai/
-
Why do NGFW's / Web Security apps talk so much about URL/Application filtering when 99% of companies don't SSL Decrypt?
Then using something like this: https://docs.tigera.io/calico-enterprise/latest/compliance/encrypt-cluster-pod-traffic#value or: https://github.com/squat/kilo
- Can I run a wireguard VPN as a sidecar or a service available to my containers?
- Kilo
-
Exposing a web service with Cloudflare Tunnel
Another one for the alternatives list is Kilo[1]
It's a wireguard based kubernetes network overlay. I use it to access private services in my homelab cluster from my laptop, phone, etc.
[1] https://kilo.squat.ai
- Building a bare-metal Kubernetes cluster on Raspberry Pi
-
K3s networking with Wireguard, VPS and Raspberry
Sorry, big typo, I meant "Kilo" and not "Silo"...
-
Any K3s / RPi combo user here ?
Networking: Manually configured wireguard VPN between all nodes. I consider checking out kilo when I find some time though. VPS handles all incoming traffic (with ingress-nginx) but outbound traffic from containers uses regular network, no VPN.
-
Configuring and Managing Routes Between Multiple Networks with Wireguard
Kilo — Wireguard-based multi-cloud overlay
What are some alternatives?
antrea - Kubernetes networking based on Open vSwitch
multus-cni - A CNI meta-plugin for multi-homed pods in Kubernetes
kine - Run Kubernetes on MySQL, Postgres, sqlite, dqlite, not etcd.
aws-load-balancer-controller - A Kubernetes controller for Elastic Load Balancers
inlets-pro - Secure HTTP and TCP tunnels that just work
pixie - Instant Kubernetes-Native Application Observability
zero-ui - ZeroUI - ZeroTier Controller Web UI - is a web user interface for a self-hosted ZeroTier network controller.
sriov-network-device-plugin - SRIOV network device plugin for Kubernetes
wesher - wireguard overlay mesh network manager
kube-router - Kube-router, a turnkey solution for Kubernetes networking.
ingress-nginx - Ingress-NGINX Controller for Kubernetes