Open wangxi761 opened 6 months ago
bpftime needs to access /sys/kernel/tracing/events/syscalls
to get syscall tracepoint ids. This directory was not accessible by non-root users
I think maybe we can find a way to solve this? It seems not necessary for bpftime to access /sys/kernel/tracing/events/syscalls
since it's not actually work in the kernel?
First of all, thank you for developing this exciting project. I've been experimenting with bpftime for intercepting system calls, particularly in the context of non-privileged containers. However, I've encountered some issues and seem unable to successfully perform interceptions in this environment.
Here are the scrpit I've attempted:
I'm not sure if it's an issue with my approach or if bpftime currently does not support this operation in non-privileged containers. Any guidance or information you could provide would be greatly appreciated.