Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[8.13](backport #39361) [Auditbeat/FIM/kprobes]: allow extra syscalls by auditbeat required in FIM with kprobes #39365

Merged
merged 1 commit into from
May 2, 2024

Commits on May 2, 2024

  1. [Auditbeat/FIM/kprobes]: allow extra syscalls by auditbeat required i…

    …n FIM with kprobes (#39361)
    
    * fix(auditbeat/fim/kprobes): allow appropriate syscalls for seccomp/apparmor policies
    
    * fix(auditbeat/fim/kprobes): check correctly the "fsnotify_nameremove" symbol
    
    * fix(auditbeat/fim/tests): remove check on absent key of the event for ebpf
    
    * doc: update CHANGELOG.next.asciidoc
    
    (cherry picked from commit ab54de6)
    pkoutsovasilis authored and mergify[bot] committed May 2, 2024
    Configuration menu
    Copy the full SHA
    695ddee View commit details
    Browse the repository at this point in the history