Can We Really Parse DNS in eBPF? Improving Cilium ToFQDN With In-kernel Policy Upda... Hemanth Malla

Presenters Hemanth Malla Source CiliumCon NA 2025 Unleashing the Power of eBPF: Cilium’s DNS Parsing Revolution 🚀 Hey tech enthusiasts! Ever found yourself frustrated by network policies that feel a bit… clunky? Especially when dealing with those ever-changing IP addresses tied to domain names? Well, get ready for some exciting news! Hemanth, a rockstar Cilium CNCF maintainer and principal engineer at Microsoft on the Azure container networking team, has just dropped a bombshell: Cilium can now parse DNS directly within eBPF! This isn’t just an incremental update; it’s a leap forward that promises to transform how we handle FQDN (Fully Qualified Domain Name) network policies. ...

November 24, 2025 · 5 min

What Doesn’t Kill You Makes You Stronger: The Vulnerabilities Th... Dor Serero & Michael Katchinskiy

Presenters Dor Serero Michael Katchinskiy Source OpenSource SecurityCon NA 2025 Kubernetes Security: Beyond the CVEs, Mastering the Boundaries 🛡️ Kubernetes. It’s the engine powering so much of our modern cloud-native world. But with great power comes great responsibility, and let’s be honest, security can feel like a labyrinth. This presentation dives deep into the heart of Kubernetes vulnerabilities, not to get lost in the weeds of every single exploit, but to extract the real lessons and equip us with the proactive controls to build truly resilient environments. The core message is clear: we’re seeing a recurring pattern of vulnerabilities, and by understanding these patterns and fortifying our boundaries, we can get ahead of the game. ...

November 24, 2025 · 6 min

Containing Wildfires in a Sprawling Multi-Cluster Network... Anmol Krishan Sachdeva & Paras Mamgain

Presenters Anmol Krishan Sachdeva Paras Mamgain Source CiliumCon NA 2025 Building a Digital Fortress: Your Network’s Immune System for Multi-Cluster Meshes 🛡️ In today’s hyper-connected digital world, especially within complex multi-cluster mesh environments, a single compromised pod can quickly escalate from a minor hiccup to a full-blown crisis. Traditional security approaches, often playing catch-up with human intervention, are simply no match for the lightning-fast execution of modern cyberattacks. But what if our networks could defend themselves, proactively and autonomously? That’s the exciting vision Anmol Krishan Sachdeva painted, advocating for the creation of a network immune system. ...

November 24, 2025 · 4 min

Lightning Talk: Taming the BPF LRU: Eliminating TCP Resets in Cilium - Gyu Tae Bae, NAVER Corp.

Presenters Gyu Tae Bae Source CiliumCon NA 2025 Taming the BPF ARU: A Journey to Eliminate TCP Resets in Kubernetes 🚀 Ever experienced the dreaded TCP resets in your Kubernetes cluster, especially after adopting eBPF for network performance? You’re not alone! In this post, we’ll dive deep into a real-world scenario where a seemingly small issue with eBPF’s Address Resolution Unit (ARU) maps led to significant network instability. But fear not, because we’ll also uncover how to diagnose, fix, and even enhance your eBPF network solutions. ...

November 24, 2025 · 5 min

Beyond Production: End-to-End CI/CD Observability With OpenTelemetry - Ekansh Gupta, SigNoz

Presenters Ekansh Gupta Source ArgoCon NA 2025 Unlocking CI/CD Secrets: Deep Dive into Observability with OpenTelemetry and Argo 🚀 Ever feel like your CI/CD pipelines are operating in a black box? You push code, a workflow spins up, and then… poof… it’s either deployed successfully or it fails, leaving you scratching your head about why. If this sounds familiar, then get ready, because we’re about to pull back the curtain! This session dives deep into how to achieve end-to-end observability for your CI/CD processes, specifically focusing on the powerful duo of Argo CD and Argo Workflows, all powered by the magic of OpenTelemetry. ✨ ...

November 24, 2025 · 7 min