Extend Falco with Plugins - Trigger Alerts with Any Stream of Events
CNCF [Cloud Native Computing Foundation] via YouTube
Overview
Syllabus
Intro
What is Falco: Reminder
What is Falco: Now
Falco Architecture
libscap aka library for System Capture
libsinsp aka library for System INSPection
Falco: the Evolution
Plugins: Technical Details
Plugins: 2 Flavors
Source plugins: Sequence Diagram
Extractor plugins: Sequence Diagram
Plugins: Settings
Plugins: Technical Caveats
Plugin SDK Go: Why
Plugin SDK Go: Getting started
Plugins: The Registry
AWS Cloudtrail Plugin
JSON Plugin
Demo Time
WIP: Shared libs/modules for plugins
Falco with Real World: Pet Surveillance
Useful links
Contribute to Falco
Taught by
CNCF [Cloud Native Computing Foundation]