Dropping eBPF CPU Cost by About 90% with Memoization (Not AI Gen)
发生了什么
My brother and I spent a lot of time designing our eBPF security agent to be really fast from the ground up, but recently we discovered we could make it much faster using memoization! A couple of weeks ago, I profiled the eBPF code and found that the most expensive part of the protection isn’t actually enforcing a policy (allow/deny), but figuring out which policy applies to a given file open.
摘要按规则整理自下方来源原文
为什么在扩散
时间线
- Hacker News 最先出现Hacker News
- Lobsters 出现讨论Lobsters