bytedance / Elkeid

Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It is derived from ByteDance's internal best practices.
https://elkeid.bytedance.com
2.23k stars 432 forks source link

agent采集不到执行的命令 #602

Open yumianxiaofeilongya opened 5 months ago

yumianxiaofeilongya commented 5 months ago

agent采集不到执行的命令,反弹shell没有告警,hids_driver是正常加载的,操作系统是ubuntu和centos,通过hub输出日志,有59的日志,但是没有我执行的命令,这种情况怎么处理