awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektÜber unsRanking-MethodikPresseMCP-Server
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
cilium avatar

cilium/cilium

0
View on GitHub↗
23,806 Stars·3,614 Forks·Go·apache-2.0·12 Aufrufecilium.io↗

Cilium

Cilium is a networking, security, and observability platform for containerized environments that leverages kernel-level data paths to process traffic. By executing programs directly within the Linux kernel, it provides high-performance packet filtering, routing, and load balancing without the need for traditional user-space proxies or context switching.

The platform distinguishes itself through identity-based security enforcement, which filters traffic based on service labels rather than volatile IP addresses. It integrates containerized workloads with external physical or virtual infrastructure using standard routing protocols and supports multi-cluster connectivity by linking independent environments into a unified network fabric.

Beyond its core networking capabilities, the project provides comprehensive observability into connectivity patterns and security events across distributed systems. It includes features for transparent network encryption, egress traffic control, and automated IP address management to maintain consistent communication and security policies across large-scale deployments.

Features

  • Kubernetes Traffic Controllers - Provides high-performance traffic routing, load balancing, and network policy enforcement for containerized environments.
  • Kernel Networking Hooks - Executes custom programs directly within the kernel to process network packets without context switching.
  • Network Policy Enforcement - Enforces identity-based network security policies to restrict traffic between services and prevent unauthorized access within the cluster.
  • Identity-Based Access Control - Filters traffic based on cryptographic service identities rather than volatile IP addresses.
  • Kubernetes Security - Enforces identity-based access control and traffic filtering policies between containerized services.
  • Network Security Tools - Monitors, filters, and encrypts traffic between services using kernel-level data paths.
  • Multicluster Service Meshes - Connects independent environments to enable seamless service discovery and secure communication across locations.
  • Load Balancing - Distributes incoming service requests across backend pods using high-performance kernel-level data paths to ensure efficient service availability.
  • Multi-Cluster Connectivity Fabrics - Provides a unified network fabric that links independent container clusters for seamless cross-cluster service discovery and communication.
  • Transparent Network Proxies - Distributes traffic across service endpoints using kernel-level maps to eliminate proxy latency.
  • Network Traffic Controllers - Directs outbound traffic through dedicated gateways and enforces security policies for external connectivity without requiring application-level changes.
  • Network Routing and Traffic Management - Directs network packets across endpoints using kernel-level data paths to optimize system efficiency and reliability.
  • Network Routing Protocols - Exchanges network reachability information with physical infrastructure using standard routing protocols to integrate containerized workloads.
  • Packet Processing Frameworks - Intercepts incoming network traffic at the driver layer for high-performance packet filtering.
  • Network Encryption - Secures data in transit between nodes by automatically encrypting packets to prevent unauthorized interception.
  • Monitoring and Observability - Provides deep visibility into connectivity patterns and security events across distributed systems.
  • API Gateways - Networking and security layer using BPF for API-aware traffic.
  • DevOps and Infrastructure - eBPF-based networking and security.
  • Networking - eBPF-based networking, observability, and security platform.
  • Networking and Security - Networking and security policy enforcement for containers.
  • Networking & Connectivity - API-aware networking and security using eBPF.
  • Security and Compliance - eBPF-based networking, observability, and security.
  • Containerized Service Integrations - Advertises containerized service prefixes to external routers to bridge workloads with physical infrastructure.
  • Network Gateways - Integrates containerized workloads with external infrastructure by advertising network prefixes via standard routing protocols.
  • Load Balancer IP Address Management - Assigns and tracks unique identifiers for services to ensure scalable communication across containerized workloads.
  • Distributed Key-Value Stores - Synchronizes network configuration and security policies across nodes to maintain a consistent cluster topology.

Star-Verlauf

Star-Verlauf für cilium/ciliumStar-Verlauf für cilium/cilium

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Start searching with AI

Häufig gestellte Fragen

Was macht cilium/cilium?

Cilium is a networking, security, and observability platform for containerized environments that leverages kernel-level data paths to process traffic. By executing programs directly within the Linux kernel, it provides high-performance packet filtering, routing, and load balancing without the need for traditional user-space proxies or context switching.

Was sind die Hauptfunktionen von cilium/cilium?

Die Hauptfunktionen von cilium/cilium sind: Kubernetes Traffic Controllers, Kernel Networking Hooks, Network Policy Enforcement, Identity-Based Access Control, Kubernetes Security, Network Security Tools, Multicluster Service Meshes, Load Balancing.

Welche Open-Source-Alternativen gibt es zu cilium/cilium?

Open-Source-Alternativen zu cilium/cilium sind unter anderem: projectcalico/calico — Calico is a cloud-native networking and security solution designed to connect containerized workloads across virtual… linkerd/linkerd2 — This project is a service mesh platform designed to manage, secure, and observe service-to-service communication… firezone/firezone — Firezone is a zero trust network access platform that uses WireGuard to provide identity-based connectivity to… armosec/kubescape — Kubescape is a security platform for Kubernetes that provides tools for scanning clusters, configurations, and… istio/istio — Istio is a service mesh infrastructure that provides a centralized control plane to manage, secure, and observe… apache/apisix — This project is a high-performance, distributed API gateway designed to manage, secure, and observe traffic for…

Open-Source-Alternativen zu Cilium

Ähnliche Open-Source-Projekte, sortiert nach der Anzahl der gemeinsamen Funktionen mit Cilium.
  • projectcalico/calicoAvatar von projectcalico

    projectcalico/calico

    7,252Auf GitHub ansehen↗

    Calico is a cloud-native networking and security solution designed to connect containerized workloads across virtual machines, bare metal, and multi-cloud environments. It provides a routing solution based on the Border Gateway Protocol to manage cluster traffic and implement the Container Network Interface for pod connectivity and IP address management. The project distinguishes itself through a security layer that enforces network policies based on identities and labels rather than static addresses. It includes a policy engine for controlling traffic flow, a cluster network encryptor for se

    Go
    Auf GitHub ansehen↗7,252
  • linkerd/linkerd2Avatar von linkerd

    linkerd/linkerd2

    11,424Auf GitHub ansehen↗

    This project is a service mesh platform designed to manage, secure, and observe service-to-service communication within Kubernetes clusters. It functions as a control plane that orchestrates transparent sidecar proxies, which intercept and manage network traffic to provide reliable connectivity for microservices. By automating the injection of these proxies, the platform ensures that infrastructure-level policies are applied consistently across all workloads without requiring manual configuration changes. The platform distinguishes itself through its focus on zero-trust security and cross-clu

    Gocloud-nativegolangkubernetes
    Auf GitHub ansehen↗11,424
  • firezone/firezoneAvatar von firezone

    firezone/firezone

    8,701Auf GitHub ansehen↗

    Firezone is a zero trust network access platform that uses WireGuard to provide identity-based connectivity to internal network resources. It functions as a virtual private network that synchronizes authentication and user groups via OpenID Connect providers. The system implements a group-based access control engine to enforce least privilege by restricting network resources to specific user groups. It utilizes holepunching and relay protocols for NAT traversal to establish encrypted tunnels through firewalls without requiring inbound ports. The platform includes a control plane for managing

    Elixirclouddevsecopselixir
    Auf GitHub ansehen↗8,701
  • armosec/kubescapeAvatar von armosec

    armosec/kubescape

    11,482Auf GitHub ansehen↗

    Kubescape is a security platform for Kubernetes that provides tools for scanning clusters, configurations, and container images against industry compliance and security benchmarks. It functions as a suite of security utilities, including a compliance auditor, a misconfiguration scanner, and a container vulnerability scanner. The project differentiates itself through automated remediation and active enforcement. It can automatically patch operating system vulnerabilities in images and fix security errors within manifest files. It also utilizes an admission controller to block the deployment of

    Go
    Auf GitHub ansehen↗11,482
Alle 30 Alternativen zu Cilium anzeigen→