Aucune description

Tom.Li 2a53e50840 Feature #TASK_QT-15938 EBPF-euspace容器化部署-Dockerfile & cloudwise-apm-euspace.yaml il y a 1 an
.github 05c838332c GH actions: upload agent binaries to GH releases il y a 2 ans
cgroup 85479c4bae Fixed #TASK_QT-9810 对接日志 il y a 1 an
common f2134ced11 Fixed #TASK_QT-9810 appid优化 il y a 1 an
containers dac106e17c Feature #TASK_QT-15938 EBPF-euspace容器化部署-通过容器rootfs路径读取可执行文件&给java进程拷贝cwlibnet.so il y a 1 an
dist ad52c7e52a Fixed #TASK_QT-9810 [tp/jvm header支持4.18][去除暂时用不到的协议逻辑(4.x指令超限)][支持Jvm Header解析assume,优化Header解法][初始化NativeAgent目录结构][初始化debug so] il y a 1 an
ebpftracer dac106e17c Feature #TASK_QT-15938 EBPF-euspace容器化部署-通过容器rootfs路径读取可执行文件&给java进程拷贝cwlibnet.so il y a 1 an
flags dac106e17c Feature #TASK_QT-15938 EBPF-euspace容器化部署-通过容器rootfs路径读取可执行文件&给java进程拷贝cwlibnet.so il y a 1 an
logs 06607bfd82 Merge branch 'dev-app' into dev il y a 1 an
manifests 92ef04b486 squashing commits before publishing il y a 4 ans
node 305b7d7216 Fixed #TASK_QT-9810 主机注册 il y a 1 an
pinger 85479c4bae Fixed #TASK_QT-9810 对接日志 il y a 1 an
pkg 06607bfd82 Merge branch 'dev-app' into dev il y a 1 an
proc 86d9112f27 Fixed #TASK_QT-9810 对接apm白名单 il y a 1 an
profiling 85479c4bae Fixed #TASK_QT-9810 对接日志 il y a 1 an
prom 85479c4bae Fixed #TASK_QT-9810 对接日志 il y a 1 an
tracing 06607bfd82 Merge branch 'dev-app' into dev il y a 1 an
utils 6329149490 Fixed #TASK_QT-9810 处理容器进程注入问题 il y a 1 an
.dockerignore 12d24bf447 capturing Postgres queries at the eBPF level il y a 3 ans
.gitignore d859e3c095 Fixed #TASK_QT-9810 ignore il y a 1 an
CONTRIBUTING.md 1099fdd351 contributing guide il y a 2 ans
Dockerfile 2a53e50840 Feature #TASK_QT-15938 EBPF-euspace容器化部署-Dockerfile & cloudwise-apm-euspace.yaml il y a 1 an
LICENSE 92ef04b486 squashing commits before publishing il y a 4 ans
Makefile ad52c7e52a Fixed #TASK_QT-9810 [tp/jvm header支持4.18][去除暂时用不到的协议逻辑(4.x指令超限)][支持Jvm Header解析assume,优化Header解法][初始化NativeAgent目录结构][初始化debug so] il y a 1 an
Makefile2 ac82764d27 Fixed #TASK_QT-9810 javaAOT and NetCore 横向串联 il y a 1 an
README.md 1099fdd351 contributing guide il y a 2 ans
build.sh 31efa94374 fixed #TASK_QT-15441 jvm jvm 虚拟机 ebpf stack 堆栈采集 il y a 1 an
cbuild.sh 9eea1c6770 Fixed #TASK_GK-2944 Go 纵向堆栈内核层拼接函数出入库 il y a 1 an
cloudwise-apm-euspace.yaml 2a53e50840 Feature #TASK_QT-15938 EBPF-euspace容器化部署-Dockerfile & cloudwise-apm-euspace.yaml il y a 1 an
cmd 9eea1c6770 Fixed #TASK_GK-2944 Go 纵向堆栈内核层拼接函数出入库 il y a 1 an
go.mod f2134ced11 Fixed #TASK_QT-9810 appid优化 il y a 1 an
go.sum f2134ced11 Fixed #TASK_QT-9810 appid优化 il y a 1 an
install.sh f55e13dca3 Add script to install agent as a Systemd service il y a 2 ans
main.go 305b7d7216 Fixed #TASK_QT-9810 主机注册 il y a 1 an
run.sh 31efa94374 fixed #TASK_QT-15441 jvm jvm 虚拟机 ebpf stack 堆栈采集 il y a 1 an

README.md

Coroot-node-agent

Go Report Card License

The agent gathers metrics related to a node and the containers running on it, and it exposes them in the Prometheus format.

It uses eBPF to track container related events such as TCP connects, so the minimum supported Linux kernel version is 4.16.

Features

TCP connection tracing

To provide visibility into the relationships between services, the agent traces containers TCP events, such as connect() and listen().

Exported metrics are useful for:

  • Obtaining an actual map of inter-service communications. It doesn't require integration of distributed tracing frameworks into your code.
  • Detecting connections errors from one service to another.
  • Measuring network latency between containers, nodes and availability zones.

Related blog posts:

Log management is usually quite expensive. In most cases, you do not need to analyze each event individually. It is enough to extract recurring patterns and the number of the related events.

This approach drastically reduces the amount of data required for express log analysis.

The agent discovers container logs and parses them right on the node.

At the moment the following sources are supported:

  • Direct logging to files in /var/log/
  • Journald
  • Dockerd (JSON file driver)
  • Containerd (CRI logs)

To learn more about automated log clustering, check out the blog post "Mining metrics from unstructured logs".

Delay accounting

Delay accounting allows engineers to accurately identify situations where a container is experiencing a lack of CPU time or waiting for I/O.

The agent gathers per-process counters through Netlink and aggregates them into per-container metrics:

Related blog posts:

Out-of-memory events tracing

The container_oom_kills_total metric shows that a container has been terminated by the OOM killer.

Instance meta information

If a node is a cloud instance, the agent identifies a cloud provider and collects additional information using the related metadata services.

Supported cloud providers: AWS, GCP, Azure, Hetzner

Collected info:

  • AccountID
  • InstanceID
  • Instance/machine type
  • Region
  • AvailabilityZone
  • AvailabilityZoneId (AWS only)
  • LifeCycle: on-demand/spot (AWS and GCP only)
  • Private & Public IP addresses

Related blog posts:

Installation

The documentation is available at coroot.com/docs/metric-exporters/node-agent.

Metrics

The collected metrics are described here.

Coroot

The best way to turn metrics to answers about app issues is to use Coroot - a zero-instrumentation observability tool for microservice architectures.

A live demo of Coroot is available at community-demo.coroot.com

Contributing

To start contributing, check out our Contributing Guide.

License

Coroot-node-agent is licensed under the Apache License, Version 2.0.

The BPF code is licensed under the General Public License, Version 2.0.