File: //opt/sentinelone/mount/tracing/events/syscalls/sys_enter_syslog/format
name: sys_enter_syslog
ID: 95
format:
field:unsigned short common_type; offset:0; size:2; signed:0;
field:unsigned char common_flags; offset:2; size:1; signed:0;
field:unsigned char common_preempt_count; offset:3; size:1; signed:0;
field:int common_pid; offset:4; size:4; signed:1;
field:int common_lock_depth; offset:8; size:4; signed:1;
field:int type; offset:16; size:8; signed:0;
field:char * buf; offset:24; size:8; signed:0;
field:int len; offset:32; size:8; signed:0;
print fmt: "type: 0x%08lx, buf: 0x%08lx, len: 0x%08lx", ((unsigned long)(REC->type)), ((unsigned long)(REC->buf)), ((unsigned long)(REC->len))