To help avoid this, systemd-networkd now loads an eBPF program into the kernel to report any changes to sysctls on devices that it is managing.
-
To help avoid this, systemd-networkd now loads an eBPF program into the kernel to report any changes to sysctls on devices that it is managing. It does not prevent or revert those changes, but running “networkctl status” will display a log of any conflicts to help users and administrators troubleshoot conflicts.
systemd does what now? I both love and hate this
-
but mostly I love it because sysctls are the utter bane of my existence
-
@erincandescent oh god
-
@erincandescent how and why, there are many operators who just disable eBPF entirely, for example to prevent spray attacks
-
@alina systemd-networkd loads it at startup i assume, so it can tell you when somethings fucked with your sysctls.
-
Copyright © 2025 NodeBB | Contributors