summaryrefslogtreecommitdiff
path: root/internal
diff options
context:
space:
mode:
Diffstat (limited to 'internal')
-rw-r--r--internal/tracepoints/syscalls.go21
1 files changed, 21 insertions, 0 deletions
diff --git a/internal/tracepoints/syscalls.go b/internal/tracepoints/syscalls.go
new file mode 100644
index 0000000..ebc46af
--- /dev/null
+++ b/internal/tracepoints/syscalls.go
@@ -0,0 +1,21 @@
+package tracepoints
+
+import (
+ "fmt"
+
+ bpf "github.com/aquasecurity/libbpfgo"
+)
+
+func AttachSyscalls(bpfModule *bpf.Module, names ...string) error {
+ for _, name := range names {
+ // Attach to tracepoint
+ prog, err := bpfModule.GetProgram(fmt.Sprintf("handle_%s", name))
+ if err != nil {
+ return fmt.Errorf("Failed to get BPF program handle_%s: %v", name, err)
+ }
+ if _, err = prog.AttachTracepoint("syscalls", fmt.Sprintf("sys_%s", name)); err != nil {
+ return fmt.Errorf("Failed to attach to sys_%s tracepoint: %v", name, err)
+ }
+ }
+ return nil
+}