process

package
v0.0.0-...-24e3e83 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jun 16, 2020 License: Apache-2.0 Imports: 13 Imported by: 0

Documentation

Overview

Copyright © 2020 GUILLAUME FOURNIER

Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at

http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.

Index

Constants

This section is empty.

Variables

View Source
var Monitor = base.Monitor{
	Name:         model.ProcessMonitor,
	SnapshotFunc: listRunningProcesses,
	Probes: []*base.Probe{
		&base.Probe{
			Name:        "ProcessFork",
			Enabled:     true,
			Type:        ebpf.Kprobe,
			SectionName: "kprobe/_do_fork",
		},
		&base.Probe{
			Name:        "SchedProcessFork",
			Enabled:     true,
			Type:        ebpf.TracePoint,
			SectionName: "tracepoint/sched/sched_process_fork",
			PerfMaps: []*base.PerfMap{
				&base.PerfMap{
					PerfOutputMapName: "fork_events",
					DataHandler:       traceForkEvents,
				},
			},
		},
		&base.Probe{
			Name:        "SchedProcessExec",
			Enabled:     true,
			Type:        ebpf.TracePoint,
			SectionName: "tracepoint/sched/sched_process_exec",
			PerfMaps: []*base.PerfMap{
				&base.PerfMap{
					PerfOutputMapName: "exec_events",
					DataHandler:       traceExecEvents,
				},
			},
		},
		&base.Probe{
			Name:        "SchedProcessExit",
			Enabled:     true,
			Type:        ebpf.TracePoint,
			SectionName: "tracepoint/sched/sched_process_exit",
		},
	},
}

Monitor - Network device monitor

Functions

This section is empty.

Types

This section is empty.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL