Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[8.14](backport #39361) [Auditbeat/FIM/kprobes]: allow extra syscalls by auditbeat required in FIM with kprobes #39366

Merged
merged 2 commits into from
May 2, 2024

Commits on May 2, 2024

  1. [Auditbeat/FIM/kprobes]: allow extra syscalls by auditbeat required i…

    …n FIM with kprobes (#39361)
    
    * fix(auditbeat/fim/kprobes): allow appropriate syscalls for seccomp/apparmor policies
    
    * fix(auditbeat/fim/kprobes): check correctly the "fsnotify_nameremove" symbol
    
    * fix(auditbeat/fim/tests): remove check on absent key of the event for ebpf
    
    * doc: update CHANGELOG.next.asciidoc
    
    (cherry picked from commit ab54de6)
    pkoutsovasilis authored and mergify[bot] committed May 2, 2024
    Configuration menu
    Copy the full SHA
    58d0b56 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    d7c87ae View commit details
    Browse the repository at this point in the history