Overview

2 min

What is Isovalent Enterprise Platform?

The Isovalent Enterprise Platform consists of three core components built on eBPF (Extended Berkeley Packet Filter) technology:

Cilium

Cloud Native CNI and Network Security

Hubble

Network Observability

Tetragon

Runtime Security and Observability

Architecture

graph TB subgraph AWS["Amazon Web Services"] subgraph EKS["EKS Cluster"] subgraph Node["Worker Node"] CA["Cilium Agent:9962"] CE["Cilium Envoy:9964"] HA["Hubble:9965"] TE["Tetragon:2112"] OC["OTel Collector"] end CO["Cilium Operator:9963"] HR["Hubble Relay"] end end subgraph Splunk["Splunk Observability Cloud"] IM["Infrastructure Monitoring"] DB["Dashboards"] end CA -.->|"Scrape"| OC CE -.->|"Scrape"| OC HA -.->|"Scrape"| OC TE -.->|"Scrape"| OC CO -.->|"Scrape"| OC OC ==>|"OTLP/HTTP"| IM IM --> DB

Key Components

ComponentService NamePortPurpose
Cilium Agentcilium-agent9962CNI, network policies, eBPF programs
Cilium Envoycilium-envoy9964L7 proxy for HTTP, gRPC
Cilium Operatorcilium-operator9963Cluster-wide operations
Hubblehubble-metrics9965Network flow metrics
Tetragontetragon2112Runtime security metrics

Benefits of eBPF

Note

This integration provides visibility into Kubernetes networking at a level not possible with traditional CNI plugins.