Check out my first novel, midnight's simulacra!

EBPF

From dankwiki
Revision as of 03:06, 23 September 2019 by Dank (talk | contribs)

eBPF (Enhanced Berkeley Packet Filter) is a powerful technique capable of compiling high-level languages into a BPF bytecode, which is JITted into local machine code, and can be inserted into a running kernel. It builds atop kprobes, and is in the same family of tools as SystemTap and DTrace.

Compiling eBPF

JIT

  • JIT requires the net.core.bpf_jit_enable sysctl to be set

See Also