Frederico Araujo

Results 10 issues of Frederico Araujo

**Describe the bug** In our tests of several versions of the libs between 0.31.1 and 0.32.1 (inclusive), we ~observed that the execveat system call exit is propagating to libsinsp as...

kind/bug

**Indicate project** Processor **Overview** We want to enable Kafka transport in the SysFlow Processor, using our encoder/transport architecture as the base framework. **Tasks** - [x] Encoder - [ ] Add...

enhancement
sf-processor

## Scheduled to happen: 2024-01-31 ## Release PRs - [ ] [Collector: s390x support, libs0.13](https://github.com/sysflow-telemetry/sf-collector/pull/63) ## Action Items - [x] Pre-release: Prebuilt images - [x] Pre-release: [Milestones](https://github.com/orgs/sysflow-telemetry/projects/4) - [x] Pre-release:...

enhancement
release

**Description** Update libSysFlow to track Falco libs 0.14.

enhancement
sf-collector
libsysflow

**Indicate project** collector, exporter, processor **Describe the feature you'd like** Modify the CI and builds to support multi-arch builds (amd64, arm64, s390x) via QEMU.

enhancement
sf-exporter
sf-collector
sf-processor

**Indicate project** processor **Describe the feature you'd like** Document processor's multi-language/source rules engine.

enhancement
sf-processor

**Indicate project** Processor **Overview** We want to enable Sigma rules evaluation in the SysFlow Processor, using our policy engine architecture as the base framework. **Tasks** - [x] Refactoring to enable...

enhancement
sf-processor

Test refactored rules engine: - [ ] falco - [ ] sigma

sf-processor

**Indicate project** collector **Describe the feature you'd like** Include the current working directory (proc.cwd) in the SysFlow Process object. **Additional context** This would enable consumers of SysFlow to disambiguate programs...

enhancement
libsysflow

**Indicate project** collector **Describe the feature you'd like** The Falco libs have recently added support for _open\_by\_handle\_at_. It needs to be mapped to the family of _open_ operations in libSysFlow....

enhancement
sf-collector
libsysflow