[Lxc-users] System Call interposition for Processes Running inside LXC-Container

Kushan Sharma mlkushan at gmail.com
Wed Aug 1 07:49:48 UTC 2012


Hello,

I searching for the source code of a system call monitoring program.

*My requirement is to externally (outside of the container) monitor system
calls of processes running inside the linux container. Those systems calls
need to be allowed or denied based on the specified policies for
application processes. *

I found "Systrace" as one implementation of the above requirment. But it
does not use LXC like containers. And also it is no longer supported.
*
If you can suggest better implementation of the above requirement, that
would be greatly appreciated*. Further if you can point me to a source code
of such implementation so that I can go through it and have a better
understanding of the technologies behind those implementation, that would
be immensely helpful.

Thank you.
-- 
Kushan Sharma.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.linuxcontainers.org/pipermail/lxc-users/attachments/20120801/3188d01b/attachment.html>


More information about the lxc-users mailing list