apache / apache/cloudstack

eBPF-based Network Observability for CloudStack

オープン
#10,416 コメント 0 件 リアクション 4 件 担当者 0 名 GitHub で見る
gsoc gsoc2025
主要言語
Java
スター
3.1k
フォーク
1.4k
平均マージ
6日 19時間
マージ済み PR(30日)
32

説明

# Proposal: eBPF-based Network Observability for CloudStack

## Summary

CloudStack’s network monitoring is mostly based on logs and external agents, making real-time traffic analysis difficult. This project will integrate **eBPF-based network observability** to capture per-VM traffic metrics, detect anomalies, and improve tenant isolation.

## Benefits to CloudStack
- **Enhanced security**: Detect suspicious activity at the kernel level.
- **Real-time traffic monitoring**: Gain deep insights into VM networking.
- **Better tenant isolation**: Identify cross-tenant traffic issues.

## Deliverables
- Develop eBPF probes to capture:
- Per-VM network traffic metrics (packets, bytes, latency)
- Connection tracking for detecting unauthorized access patterns
- Packet drops and retransmission rates
- Expose network metrics via CloudStack’s API.
- Provide visualization through Prometheus/Grafana.
- Document setup, usage, and performance benchmarks.

## Expected Outcome
An eBPF-based solution that improves network observability in CloudStack, providing security and performance insights with minimal resource usage.

コントリビューションガイド

コントリビューションガイドを開く

調査の方向性

この issue ではファイル、テスト、エントリポイントが指定されていません。まず、CloudStack の既存のネットワーク監視および API メトリクスの経路をマッピングし、次に eBPF プローブと Prometheus/Grafana 出力をどのように組み込めるかを評価してください。提案したプローブ、API 公開、可視化、ドキュメント、パフォーマンスベンチマークを提供することが完了の条件です。

索引モデルが issue の本文から書いたものです。

評価

技術スタック
grafana, prometheus
領域
cloud, networking, observability-sre
issue の種類
機能追加
難易度
5/5
見積もり時間
1週間以上
活発さ
停滞
明瞭さ
説明が足りない
初心者へのやさしさ
20/100

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。