暫無描述

Tom 0e6df2ac04 Feature #TASK_QT-19234 EBPF-euspace增加心跳 1 年之前
.github 05c838332c GH actions: upload agent binaries to GH releases 2 年之前
cgroup cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
common cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
containers 0e6df2ac04 Feature #TASK_QT-19234 EBPF-euspace增加心跳 1 年之前
dist 2191685c55 Fixed #TASK_QT-9810 对接应用注册白名单 1 年之前
ebpftracer 38379d33fa Feature #TASK_QT-18250 EBPF-euspace接入熔断/恢复机制(1) 1 年之前
flags fe3d82ab84 Feature #TASK_QT-18250 EBPF-euspace接入熔断/恢复机制(3) 1 年之前
kube 3aac371910 Feature #TASK_QT-15938 容器化workload属性采集 1 年之前
logs cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
manifests 92ef04b486 squashing commits before publishing 4 年之前
node fe3d82ab84 Feature #TASK_QT-18250 EBPF-euspace接入熔断/恢复机制(3) 1 年之前
pinger cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
pkg b2e347b2f0 Fixed #TASK_QT-9810 增加jvm版本号限制1.8.x 1 年之前
proc cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
profiling cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
prom cfcf7c689b Merge remote-tracking branch 'origin/main' into dev-newcoroot 1 年之前
tracing e21790e6df Merge branch 'dev' of ssh://git.cloudwise.com:36000/TSB/euspace into dev 1 年之前
utils c959033501 Feature #TASK_QT-18250 EBPF-euspace接入熔断/恢复机制(2) 1 年之前
.dockerignore 12d24bf447 capturing Postgres queries at the eBPF level 3 年之前
.gitignore d859e3c095 Fixed #TASK_QT-9810 ignore 1 年之前
CONTRIBUTING.md 1099fdd351 contributing guide 2 年之前
Dockerfile 3aac371910 Feature #TASK_QT-15938 容器化workload属性采集 1 年之前
LICENSE 92ef04b486 squashing commits before publishing 4 年之前
Makefile 3615f450b6 Fixed #TASK_QT-9810 流水线 1 年之前
Makefile2 e6636e797d Merge branch 'dev-newcoroot' into dev-newnet 1 年之前
README.md 1099fdd351 contributing guide 2 年之前
build.sh 181d87c6ab Fixed #TASK_QT-9810 Network 调试 1 年之前
cbuild.sh 9eea1c6770 Fixed #TASK_GK-2944 Go 纵向堆栈内核层拼接函数出入库 1 年之前
cloudwise-apm-euspace.yaml 7550b2b805 Fixed #TASK_QT-9810 解决so被删除后,重新监控的问题 1 年之前
cmd 9eea1c6770 Fixed #TASK_GK-2944 Go 纵向堆栈内核层拼接函数出入库 1 年之前
go.mod e6636e797d Merge branch 'dev-newcoroot' into dev-newnet 1 年之前
go.sum e6636e797d Merge branch 'dev-newcoroot' into dev-newnet 1 年之前
install.sh f55e13dca3 Add script to install agent as a Systemd service 2 年之前
main.go 0e6df2ac04 Feature #TASK_QT-19234 EBPF-euspace增加心跳 1 年之前
run.sh 31efa94374 fixed #TASK_QT-15441 jvm jvm 虚拟机 ebpf stack 堆栈采集 1 年之前

README.md

Coroot-node-agent

Go Report Card License

The agent gathers metrics related to a node and the containers running on it, and it exposes them in the Prometheus format.

It uses eBPF to track container related events such as TCP connects, so the minimum supported Linux kernel version is 4.16.

Features

TCP connection tracing

To provide visibility into the relationships between services, the agent traces containers TCP events, such as connect() and listen().

Exported metrics are useful for:

  • Obtaining an actual map of inter-service communications. It doesn't require integration of distributed tracing frameworks into your code.
  • Detecting connections errors from one service to another.
  • Measuring network latency between containers, nodes and availability zones.

Related blog posts:

Log management is usually quite expensive. In most cases, you do not need to analyze each event individually. It is enough to extract recurring patterns and the number of the related events.

This approach drastically reduces the amount of data required for express log analysis.

The agent discovers container logs and parses them right on the node.

At the moment the following sources are supported:

  • Direct logging to files in /var/log/
  • Journald
  • Dockerd (JSON file driver)
  • Containerd (CRI logs)

To learn more about automated log clustering, check out the blog post "Mining metrics from unstructured logs".

Delay accounting

Delay accounting allows engineers to accurately identify situations where a container is experiencing a lack of CPU time or waiting for I/O.

The agent gathers per-process counters through Netlink and aggregates them into per-container metrics:

Related blog posts:

Out-of-memory events tracing

The container_oom_kills_total metric shows that a container has been terminated by the OOM killer.

Instance meta information

If a node is a cloud instance, the agent identifies a cloud provider and collects additional information using the related metadata services.

Supported cloud providers: AWS, GCP, Azure, Hetzner

Collected info:

  • AccountID
  • InstanceID
  • Instance/machine type
  • Region
  • AvailabilityZone
  • AvailabilityZoneId (AWS only)
  • LifeCycle: on-demand/spot (AWS and GCP only)
  • Private & Public IP addresses

Related blog posts:

Installation

The documentation is available at coroot.com/docs/metric-exporters/node-agent.

Metrics

The collected metrics are described here.

Coroot

The best way to turn metrics to answers about app issues is to use Coroot - a zero-instrumentation observability tool for microservice architectures.

A live demo of Coroot is available at community-demo.coroot.com

Contributing

To start contributing, check out our Contributing Guide.

License

Coroot-node-agent is licensed under the Apache License, Version 2.0.

The BPF code is licensed under the General Public License, Version 2.0.