diff options
Diffstat (limited to 'src/godo.go')
-rw-r--r-- | src/godo.go | 11 |
1 files changed, 6 insertions, 5 deletions
diff --git a/src/godo.go b/src/godo.go index 2a00dad..0edcc9f 100644 --- a/src/godo.go +++ b/src/godo.go | |||
@@ -44,12 +44,13 @@ func main() { | |||
44 | auditCmd.Run() | 44 | auditCmd.Run() |
45 | } | 45 | } |
46 | 46 | ||
47 | // // 监听文件的消息 | 47 | // 监听文件的消息 |
48 | fileSyscall := []string{"open", "write", "close"} | ||
48 | // fileSyscall := []string{"open", "write", "creat", "unlink", "opendir", "mkdir", "rmdir", "chmod", "fchmod", "chown", "fchown", "lchown", "flock"} | 49 | // fileSyscall := []string{"open", "write", "creat", "unlink", "opendir", "mkdir", "rmdir", "chmod", "fchmod", "chown", "fchown", "lchown", "flock"} |
49 | // for i := 0; i < len(fileSyscall); i++ { | 50 | for i := 0; i < len(fileSyscall); i++ { |
50 | // auditCmd = exec.Command("auditctl", "-a", "exit,always", "-F", "arch=b64", "-S", pidSyscall[i]) | 51 | auditCmd = exec.Command("auditctl", "-a", "exit,always", "-F", "arch=b64", "-S", fileSyscall[i]) |
51 | // auditCmd.Run() | 52 | auditCmd.Run() |
52 | // } | 53 | } |
53 | 54 | ||
54 | // 查找pid | 55 | // 查找pid |
55 | containerdPid, err = getPid() | 56 | containerdPid, err = getPid() |