Lines Matching full:opensnoop
4 # opensnoop Trace open() syscalls.
7 # USAGE: opensnoop [-h] [-T] [-U] [-x] [-p PID] [-t TID]
34 ./opensnoop # trace all open() syscalls
35 ./opensnoop -T # include timestamps
36 ./opensnoop -U # include UID
37 ./opensnoop -x # only show failed opens
38 ./opensnoop -p 181 # only trace PID 181
39 ./opensnoop -t 123 # only trace TID 123
40 ./opensnoop -u 1000 # only trace UID 1000
41 ./opensnoop -d 10 # trace for 10 seconds only
42 ./opensnoop -n main # only print process names containing "main"
43 ./opensnoop -e # show extended fields
44 ./opensnoop -f O_WRONLY -f O_RDWR # only print calls for writing
45 ./opensnoop -F # show full path for an open file with relative path
46 ./opensnoop --cgroupmap mappath # only trace cgroups in this BPF map
47 ./opensnoop --mntnsmap mappath # only trace mount namespaces in the map