aquasecurity / aquasecurity/tracee
Filter network events in kernel
Open
area/network
kind/feature
- Dominant language
- Go
- Stars
- 4.6k
- Forks
- 507
- Avg merge
- 2d 8h
- Merged PRs (30d)
- 9
Description
Allow filtering network events by ingress/egress, source ip/port, destination ip/port and protocol in the kernel
Contributor guide
Research direction
The issue provides no file, test, or entry point to begin from. First map how Tracee currently handles network events and kernel filtering, then define the supported ingress/egress, address, port, and protocol criteria and tests that would demonstrate each filter works.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- go, linux
- Domain
- networking, operating-systems, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100