mirror of
https://github.com/falcosecurity/falco.git
synced 2025-07-02 01:22:16 +00:00
Use /captures and allow to be mounted as a volume for placing files on host
This commit is contained in:
parent
ef9c4ee6ab
commit
43126362c3
@ -21,4 +21,6 @@ ENV CAPTURE_DURATION 120
|
|||||||
|
|
||||||
COPY ./docker-entrypoint.sh /
|
COPY ./docker-entrypoint.sh /
|
||||||
|
|
||||||
|
RUN mkdir -p /captures
|
||||||
|
|
||||||
ENTRYPOINT ["/docker-entrypoint.sh"]
|
ENTRYPOINT ["/docker-entrypoint.sh"]
|
||||||
|
@ -11,5 +11,8 @@ done
|
|||||||
|
|
||||||
/usr/bin/sysdig-probe-loader
|
/usr/bin/sysdig-probe-loader
|
||||||
|
|
||||||
sysdig -S -M $CAPTURE_DURATION -pk -z -w $CAPTURE_FILE_NAME.scap.gz
|
sysdig -S -M $CAPTURE_DURATION -pk -z -w /captures/$CAPTURE_FILE_NAME.scap.gz
|
||||||
s3cmd --access_key=$AWS_ACCESS_KEY_ID --secret_key=$AWS_SECRET_ACCESS_KEY put $CAPTURE_FILE_NAME.scap.gz $AWS_S3_BUCKET
|
|
||||||
|
s3cmd --access_key=$AWS_ACCESS_KEY_ID \
|
||||||
|
--secret_key=$AWS_SECRET_ACCESS_KEY \
|
||||||
|
put /captures/$CAPTURE_FILE_NAME.scap.gz $AWS_S3_BUCKET
|
||||||
|
Loading…
Reference in New Issue
Block a user