BPF Tokens in Linux Distributions: A Path to Safe User-Space eBPF
- Track: eBPF
- Room: H.1308 (Rolin)
- Day: Saturday
- Start: 18:30
- End: 19:00
- Video only: h1308
- Chat: Join the conversation!
BPF Tokens are a new Linux kernel mechanism for delegating restricted eBPF privileges to unprivileged processes. This talk explains how distributions can adopt them to provide safer access to tracing, observability, and networking tools—without granting root or CAP_SYS_ADMIN.
We’ll show how token-based delegation could reshape developer workflows, container runtimes, and system services in Fedora or other distros.
The session includes a walkthrough of real token policies and discusses how distributions can help build a secure, less-privileged eBPF ecosystem.
Speakers
| Daniel Mellado |