Closed hillu closed 9 months ago
Example: Filter out events that invlove the glibc nscd socket (/var/run/nscd/socket):
filter-raw = [ "^type=SOCKADDR (?:node=\\$*? )?msg=audit\\(\\S*?\\): saddr=01002F7661722F72756E2F6E7363642F736F636B657400" ]
Close: #190
Example: Filter out events that invlove the glibc nscd socket (/var/run/nscd/socket):
Close: #190