suse man page for audit_syscall_exit

Query: audit_syscall_exit

OS: suse

Section: 9

Format: Original Unix Latex Style Formatted with HTML and a Horizontal Scroll Bar

AUDIT_SYSCALL_EXIT(9)						 Audit Interfaces					     AUDIT_SYSCALL_EXIT(9)

NAME
audit_syscall_exit - deallocate audit context after a system call
SYNOPSIS
void audit_syscall_exit(int valid, long return_code);
ARGUMENTS
valid success/failure flag return_code syscall return value
DESCRIPTION
Tear down after system call. If the audit context has been marked as auditable (either because of the AUDIT_RECORD_CONTEXT state from filtering, or because some other part of the kernel write an audit message), then write out the syscall information. In call cases, free the names stored from getname.
COPYRIGHT
Kernel Hackers Manual 2.6. July 2010 AUDIT_SYSCALL_EXIT(9)
Related Man Pages
audit_add_rule_data(3) - debian
audit_add_rule_data(3) - suse
s390_sthyi(2) - plan9
s390_sthyi(2) - php
s390_sthyi(2) - minix
Similar Topics in the Unix Linux Community
How to restrict user to a specific directory in solaris 10
Getting command output to putty window title.
SOCKS proxy & PAM configuration exposure
A (ksh) Library For and From UNIX.com
Shopt -s histappend