smw 1 day ago

kubeshark [0] is using ebpf to catch calls to openssl/go's tls lib and thus no need to juggle certs. Has pros and cons compared to your method, but an interesting comparison.


ddelnano 1 day ago

The approach you describe above is common for similar projects:

- Pixie ( -- which I contribute to

- Beyla (

- Coroot (

If you are interested in the details and how the strategy for this tracing has evolved, you can learn more in this blog (