Embedded and distributed systems are getting increasingly complex and generate large number of high frequency events - both at userspace and kernel levels. Analysis of such huge trace data means that there would be a considerable amount of time spent in finding out what really interests users.
This talk discusses internals of LTTng's trace filtering and an experiment to see how eBPF as a runtime trace filtering system performs.
Venue : TracingSummit 2015, LinuxCon Seattle