aquasecurity / aquasecurity/tracee

Filter network events in kernel

Open
#2,965 0 comments 0 reactions 0 assignees View on GitHub
area/network kind/feature
Dominant language
Go
Stars
4.6k
Forks
507
Avg merge
2d 8h
Merged PRs (30d)
9

Description

Allow filtering network events by ingress/egress, source ip/port, destination ip/port and protocol in the kernel

Contributor guide

Open the contributing guide

Research direction

The issue provides no file, test, or entry point to begin from. First map how Tracee currently handles network events and kernel filtering, then define the supported ingress/egress, address, port, and protocol criteria and tests that would demonstrate each filter works.

Written by the indexing model from the issue text.

Assessment

Tech stack
go, linux
Domain
networking, operating-systems, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.