mirror of
https://github.com/linuxkit/linuxkit.git
synced 2025-07-21 10:09:07 +00:00
Use apk audit to check system binaries
Signed-off-by: Riyaz Faizullabhoy <riyaz.faizullabhoy@docker.com>
This commit is contained in:
parent
0ede7d930b
commit
2cdefa184e
@ -29,6 +29,7 @@ var (
|
||||
{"/bin/uname", []string{"-a"}, defaultCommandTimeout},
|
||||
{"/bin/ps", []string{"uax"}, defaultCommandTimeout},
|
||||
{"/bin/netstat", []string{"-tulpn"}, defaultCommandTimeout},
|
||||
{"/sbin/apk", []string{"audit", "--system"}, defaultCommandTimeout}, // check if system binaries were modified
|
||||
{"/sbin/iptables-save", nil, defaultCommandTimeout},
|
||||
{"/sbin/ifconfig", nil, defaultCommandTimeout},
|
||||
{"/sbin/route", nil, defaultCommandTimeout},
|
||||
|
Loading…
Reference in New Issue
Block a user