521 subscribers
انتقل إلى وضع عدم الاتصال باستخدام تطبيق Player FM !
How Falco Brought Real-Time Observability to Infrastructure
Manage episode 457597235 series 75006
Falco, an open-source runtime observability and security tool, was created by Sysdig founder Loris Degioanni to collect real-time system events directly from the kernel. Leveraging eBPF technology for improved safety and performance, Falco gathers data like pod names and namespaces, correlating them with customizable rules. Unlike static analysis tools, it operates in real-time, monitoring events as they occur. In this episode of The New Stack Makers, TNS Editor-in-Chief, Heather Joslyn spoke with Thomas Labarussias, Senior Developer Advocate at Sysdig, Leonardo Grasso, Open Source Tech Lead Manager at Sysdig and Luca Guerra, Sr. Open Source Engineer at Sysdig to get the latest update on Falco.
Graduating from the Cloud Native Computing Foundation (CNCF) in February 2023 after entering its sandbox six years prior, Falco’s maintainers have focused on technical maturity and broad usability. This includes simplifying installations across diverse environments, thanks in part to advancements from the Linux Foundation.
Looking ahead, the team is enhancing core functionalities, including more customizable rules and alert formats. A key innovation is Falco Talon, introduced in September 2023, which provides a no-code response engine to link alerts with real-time remediation actions. Talon addresses a longstanding gap in automating responses within the Falco ecosystem, advancing its capabilities for runtime security.
Learn more from The New Stack about Falco:
Falco Is a CNCF Graduate. Now What?
Falco Plugins Bring New Data Sources to Real-Time Security
eBPF Tools: An Overview of Falco, Inspektor Gadget, Hubble and Cilium
Join our community of newsletter subscribers to stay on top of the news and at the top of your game.
885 حلقات
Manage episode 457597235 series 75006
Falco, an open-source runtime observability and security tool, was created by Sysdig founder Loris Degioanni to collect real-time system events directly from the kernel. Leveraging eBPF technology for improved safety and performance, Falco gathers data like pod names and namespaces, correlating them with customizable rules. Unlike static analysis tools, it operates in real-time, monitoring events as they occur. In this episode of The New Stack Makers, TNS Editor-in-Chief, Heather Joslyn spoke with Thomas Labarussias, Senior Developer Advocate at Sysdig, Leonardo Grasso, Open Source Tech Lead Manager at Sysdig and Luca Guerra, Sr. Open Source Engineer at Sysdig to get the latest update on Falco.
Graduating from the Cloud Native Computing Foundation (CNCF) in February 2023 after entering its sandbox six years prior, Falco’s maintainers have focused on technical maturity and broad usability. This includes simplifying installations across diverse environments, thanks in part to advancements from the Linux Foundation.
Looking ahead, the team is enhancing core functionalities, including more customizable rules and alert formats. A key innovation is Falco Talon, introduced in September 2023, which provides a no-code response engine to link alerts with real-time remediation actions. Talon addresses a longstanding gap in automating responses within the Falco ecosystem, advancing its capabilities for runtime security.
Learn more from The New Stack about Falco:
Falco Is a CNCF Graduate. Now What?
Falco Plugins Bring New Data Sources to Real-Time Security
eBPF Tools: An Overview of Falco, Inspektor Gadget, Hubble and Cilium
Join our community of newsletter subscribers to stay on top of the news and at the top of your game.
885 حلقات
كل الحلقات
×

1 OAuth Works for AI Agents but Scaling is Another Question 25:36


1 LLMs and AI Agents Evolving Like Programming Languages 28:08


1 Writing Code About Your Infrastructure? That's a Losing Race 31:21


1 OpenTelemetry: What’s New with the 2nd Biggest CNCF Project? 30:14


1 What’s Driving the Rising Cost of Observability? 24:55


1 How Oracle Is Meeting the Infrastructure Needs of AI 27:28


1 Arm: See a Demo About Migrating a x86-Based App to ARM64 21:28


1 Heroku Moved Twelve-Factor Apps to Open Source. What’s Next? 22:54


1 How Falco Brought Real-Time Observability to Infrastructure 19:27


1 How cert-manager Got to 500 Million Downloads a Month 23:18


1 Why Are So Many Developers Out of Work in 2024? 21:10


1 MapLibre: How a Fork Became a Thriving Open Source Project 25:50


1 OpenSearch: How the Project Went from Fork to Foundation 17:16


1 Is Apache Spark Too Costly? An Amazon Engineer Tells His Story 25:26


1 Codiac: Kubernetes Doesn't Need To Be That Complex 28:53
مرحبًا بك في مشغل أف ام!
يقوم برنامج مشغل أف أم بمسح الويب للحصول على بودكاست عالية الجودة لتستمتع بها الآن. إنه أفضل تطبيق بودكاست ويعمل على أجهزة اندرويد والأيفون والويب. قم بالتسجيل لمزامنة الاشتراكات عبر الأجهزة.