HNHacker News
TopNewBestAskShowJobs

qeole

59 karma · joined March 4, 2016

submissionscomments
qeole··on BPF, EBPF, XDP and Bpfilter
“NFP” is for “Network Flow Processors”, the micro-engines and related architecture that we use at Netronome on the SmartNICs, and on which we run offloaded eBPF programs. By extension, it often relates to the cards themselves.
qeole··on BPF comes to firewalls
Offloading eBPF programs attached to TC (traffic control interface) or XDP (at the driver level) is possible since kernel 4.9, and keeps getting better (more complete, and easier). [Disclaimer: I work for the company working on this.]

Tools in iproute2 package are being updated too, so typically you would attach and offload programs to hardware with `tc`- or `ip`-based command lines.

qeole··on A thorough introduction to eBPF
This list is under progress. Didn't think about adding licensing information for the helpers, but that's an excellent idea!
qeole··on NetBricks: A new network function framework based on Rust
Thanks for the slides!

I agree the lack of documentation is not really encouraging to test. My guess (I am not related to the project) is that it's pretty experimental work for now, and authors may have focused more on optimizing for performance than on stabilizing things / documenting. But better guidance would help reach more users and get more feedback.

For my part I like the concept of using Rust features to provide packet isolation without having too much performance downgrade. Also, this is the first time I hear of Rust running on top of DPDK.