diff options
Diffstat (limited to 'internal')
| -rw-r--r-- | internal/tracepoints/syscalls.go | 21 |
1 files changed, 21 insertions, 0 deletions
diff --git a/internal/tracepoints/syscalls.go b/internal/tracepoints/syscalls.go new file mode 100644 index 0000000..ebc46af --- /dev/null +++ b/internal/tracepoints/syscalls.go @@ -0,0 +1,21 @@ +package tracepoints + +import ( + "fmt" + + bpf "github.com/aquasecurity/libbpfgo" +) + +func AttachSyscalls(bpfModule *bpf.Module, names ...string) error { + for _, name := range names { + // Attach to tracepoint + prog, err := bpfModule.GetProgram(fmt.Sprintf("handle_%s", name)) + if err != nil { + return fmt.Errorf("Failed to get BPF program handle_%s: %v", name, err) + } + if _, err = prog.AttachTracepoint("syscalls", fmt.Sprintf("sys_%s", name)); err != nil { + return fmt.Errorf("Failed to attach to sys_%s tracepoint: %v", name, err) + } + } + return nil +} |
