Documentation
¶
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
This section is empty.
Types ¶
type ProcessEvent ¶
type ProcessEvent struct {
Type ProcessEventType
Timestamp time.Time
// Process identity
PID uint32
PPID uint32
Comm string
Pcomm string
Cmdline string
Uid *uint32
Gid *uint32
Cwd string
Path string
StartTimeNs uint64 // Process start time in nanoseconds for unique identification
// Container context
ContainerID string
ContainerMntNs uint64
ContainerNetNs uint64
// Host context
HostPID int
HostPPID int
}
func ConvertEvent ¶
type ProcessEventType ¶
type ProcessEventType int
const ( ForkEvent ProcessEventType = iota ExecEvent ExitEvent ProcfsEvent )
Click to show internal directories.
Click to hide internal directories.