strang1ato / nhi

:tv: Automatically capture all potentially useful information about each executed command (as well as its output) and get powerful querying mechanism
GNU General Public License v3.0
295 stars 11 forks source link

[bpf] Move as much functions as possible to tracepoints from fentry #9

Open strang1ato opened 2 years ago

strang1ato commented 2 years ago

tracepoints are faster and are not prone to internal kernel changes