1 #!/usr/local/bin/ktap -q
3 # opensnoop.kp trace open syscalls with pathnames and basic info
5 # 23-Nov-2013 Brendan Gregg Created this
9 printf("%5s %6s %-12s %3s %3s %s\n", "UID", "PID", "COMM", "FD", "ERR", "PATH");
11 trace syscalls:sys_enter_open {
12 path[tid()] = user_string(arg2)
15 trace syscalls:sys_exit_open {
27 printf("%5d %6d %-12s %3d %3d %s\n", uid(), pid(), execname(), fd,