Hello,
I searching for the source code of a system call monitoring program.
*My requirement is to externally (outside of the container) monitor system
calls of processes running inside the linux container. Those systems calls
need to be allowed or denied based on the specified policies for
application processes. *
I found "Systrace" as one implementation of the above requirment. But it
does not use LXC like containers. And also it is no longer supported.
*
If you can suggest better implementation of the above requirement, that
would be greatly appreciated*. Further if you can point me to a source code
of such implementation so that I can go through it and have a better
understanding of the technologies behind those implementation, that would
be immensely helpful.
Thank you.
--
Kushan Sharma.
------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and
threat landscape has changed and how IT managers can respond. Discussions
will include endpoint security, mobile security and the latest in malware
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Lxc-devel mailing list
Lxc-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/lxc-devel