Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- root@6d17d7f7b496:/tomcat# strace su tomcat -c "touch logs/test.log"
- execve("/bin/su", ["su", "tomcat", "-c", "touch logs/test.log"], [/* 8 vars */]) = 0
- brk(0) = 0x55b48bc97000
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0c000
- access("/etc/ld.so.preload", R_OK) = -1 ENOENT (No such file or directory)
- open("/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=13818, ...}) = 0
- mmap(NULL, 13818, PROT_READ, MAP_PRIVATE, 3, 0) = 0x7f50d4e08000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libpam.so.0", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300&\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=64024, ...}) = 0
- mmap(NULL, 2159200, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d49de000
- mprotect(0x7f50d49eb000, 2097152, PROT_NONE) = 0
- mmap(0x7f50d4beb000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0xd000) = 0x7f50d4beb000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libpam_misc.so.0", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\340\20\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=14456, ...}) = 0
- mmap(NULL, 2109760, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d47da000
- mprotect(0x7f50d47dd000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d49dc000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7f50d49dc000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libc.so.6", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0P\34\2\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0755, st_size=1738176, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e07000
- mmap(NULL, 3844640, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d442f000
- mprotect(0x7f50d45d0000, 2097152, PROT_NONE) = 0
- mmap(0x7f50d47d0000, 24576, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x1a1000) = 0x7f50d47d0000
- mmap(0x7f50d47d6000, 14880, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d47d6000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libaudit.so.1", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\20*\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=113024, ...}) = 0
- mmap(NULL, 2249344, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d4209000
- mprotect(0x7f50d4223000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d4422000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x19000) = 0x7f50d4422000
- mmap(0x7f50d4425000, 37504, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d4425000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libdl.so.2", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\320\16\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=14664, ...}) = 0
- mmap(NULL, 2109712, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d4005000
- mprotect(0x7f50d4008000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d4207000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7f50d4207000
- close(3) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e06000
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e05000
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e04000
- arch_prctl(ARCH_SET_FS, 0x7f50d4e05700) = 0
- mprotect(0x7f50d47d0000, 16384, PROT_READ) = 0
- mprotect(0x7f50d4207000, 4096, PROT_READ) = 0
- mprotect(0x7f50d4422000, 8192, PROT_READ) = 0
- mprotect(0x7f50d4beb000, 8192, PROT_READ) = 0
- mprotect(0x7f50d49dc000, 4096, PROT_READ) = 0
- mprotect(0x55b48a44d000, 4096, PROT_READ) = 0
- mprotect(0x7f50d4e0e000, 4096, PROT_READ) = 0
- munmap(0x7f50d4e08000, 13818) = 0
- brk(0) = 0x55b48bc97000
- brk(0x55b48bcb8000) = 0x55b48bcb8000
- getuid() = 0
- ioctl(0, SNDCTL_TMR_TIMEBASE or SNDRV_TIMER_IOCTL_NEXT_DEVICE or TCGETS, {B38400 opost isig icanon echo ...}) = 0
- fstat(0, {st_mode=S_IFCHR|0600, st_rdev=makedev(136, 4), ...}) = 0
- readlink("/proc/self/fd/0", "/4", 4095) = 2
- stat("/4", 0x7ffdb8e477b0) = -1 ENOENT (No such file or directory)
- stat("/dev/pts", {st_mode=S_IFDIR|0755, st_size=0, ...}) = 0
- openat(AT_FDCWD, "/dev/pts", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 3 entries */, 32768) = 72
- getdents(3, /* 0 entries */, 32768) = 0
- close(3) = 0
- openat(AT_FDCWD, "/dev", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 187 entries */, 32768) = 5608
- stat("/dev/random", {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 8), ...}) = 0
- getdents(3, /* 0 entries */, 32768) = 0
- close(3) = 0
- openat(AT_FDCWD, "/dev", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 187 entries */, 32768) = 5608
- stat("/dev/.", {st_mode=S_IFDIR|0755, st_size=3740, ...}) = 0
- stat("/dev/..", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- stat("/dev/core", {st_mode=S_IFREG|0400, st_size=140737477881856, ...}) = 0
- stat("/dev/fd", {st_mode=S_IFDIR|0500, st_size=0, ...}) = 0
- stat("/dev/console", {st_mode=S_IFCHR|0600, st_rdev=makedev(136, 4), ...}) = 0
- close(3) = 0
- ioctl(0, SNDCTL_TMR_TIMEBASE or SNDRV_TIMER_IOCTL_NEXT_DEVICE or TCGETS, {B38400 opost isig icanon echo ...}) = 0
- open("/proc/self/loginuid", O_RDONLY) = 3
- read(3, "4294967295", 12) = 10
- close(3) = 0
- socket(PF_LOCAL, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/var/run/nscd/socket"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- socket(PF_LOCAL, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/var/run/nscd/socket"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- open("/etc/nsswitch.conf", O_RDONLY|O_CLOEXEC) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=497, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "# /etc/nsswitch.conf\n#\n# Example"..., 4096) = 497
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=13818, ...}) = 0
- mmap(NULL, 13818, PROT_READ, MAP_PRIVATE, 3, 0) = 0x7f50d4e08000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libnss_compat.so.2", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\260\23\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=31632, ...}) = 0
- mmap(NULL, 2126976, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d3dfd000
- mprotect(0x7f50d3e04000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d4003000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x6000) = 0x7f50d4003000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libnsl.so.1", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0`A\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=89104, ...}) = 0
- mmap(NULL, 2194072, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d3be5000
- mprotect(0x7f50d3bfa000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d3df9000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x14000) = 0x7f50d3df9000
- mmap(0x7f50d3dfb000, 6808, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d3dfb000
- close(3) = 0
- mprotect(0x7f50d3df9000, 4096, PROT_READ) = 0
- mprotect(0x7f50d4003000, 4096, PROT_READ) = 0
- munmap(0x7f50d4e08000, 13818) = 0
- open("/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=13818, ...}) = 0
- mmap(NULL, 13818, PROT_READ, MAP_PRIVATE, 3, 0) = 0x7f50d4e08000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libnss_nis.so.2", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240!\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=43592, ...}) = 0
- mmap(NULL, 2139560, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d39da000
- mprotect(0x7f50d39e4000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d3be3000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x9000) = 0x7f50d3be3000
- close(3) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libnss_files.so.2", O_RDONLY|O_CLOEXEC) = 3
- read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240\"\0\0\0\0\0\0"..., 832) = 832
- fstat(3, {st_mode=S_IFREG|0644, st_size=47712, ...}) = 0
- mmap(NULL, 2144392, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7f50d37ce000
- mprotect(0x7f50d37d9000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d39d8000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0xa000) = 0x7f50d39d8000
- close(3) = 0
- mprotect(0x7f50d39d8000, 4096, PROT_READ) = 0
- mprotect(0x7f50d3be3000, 4096, PROT_READ) = 0
- munmap(0x7f50d4e08000, 13818) = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- ioctl(0, SNDCTL_TMR_TIMEBASE or SNDRV_TIMER_IOCTL_NEXT_DEVICE or TCGETS, {B38400 opost isig icanon echo ...}) = 0
- fstat(0, {st_mode=S_IFCHR|0600, st_rdev=makedev(136, 4), ...}) = 0
- readlink("/proc/self/fd/0", "/4", 511) = 2
- stat("/4", 0x7ffdb8e47250) = -1 ENOENT (No such file or directory)
- stat("/dev/pts/", {st_mode=S_IFDIR|0755, st_size=0, ...}) = 0
- openat(AT_FDCWD, "/dev/pts/", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 3 entries */, 32768) = 72
- getdents(3, /* 0 entries */, 32768) = 0
- close(3) = 0
- openat(AT_FDCWD, "/dev/", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 187 entries */, 32768) = 5608
- stat("/dev/random", {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 8), ...}) = 0
- getdents(3, /* 0 entries */, 32768) = 0
- close(3) = 0
- openat(AT_FDCWD, "/dev/", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 187 entries */, 32768) = 5608
- stat("/dev/.", {st_mode=S_IFDIR|0755, st_size=3740, ...}) = 0
- stat("/dev/..", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- stat("/dev/core", {st_mode=S_IFREG|0400, st_size=140737477881856, ...}) = 0
- stat("/dev/fd", {st_mode=S_IFDIR|0500, st_size=0, ...}) = 0
- stat("/dev/console", {st_mode=S_IFCHR|0600, st_rdev=makedev(136, 4), ...}) = 0
- close(3) = 0
- access("/var/run/utmpx", F_OK) = -1 ENOENT (No such file or directory)
- open("/var/run/utmp", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_SET) = 0
- alarm(0) = 0
- rt_sigaction(SIGALRM, {0x7f50d454a7c0, [], SA_RESTORER, 0x7f50d44640e0}, {SIG_DFL, [], 0}, 8) = 0
- alarm(10) = 0
- fcntl(3, F_SETLKW, {type=F_RDLCK, whence=SEEK_SET, start=0, len=0}) = 0
- read(3, "", 384) = 0
- fcntl(3, F_SETLKW, {type=F_UNLCK, whence=SEEK_SET, start=0, len=0}) = 0
- alarm(0) = 10
- rt_sigaction(SIGALRM, {SIG_DFL, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- close(3) = 0
- getuid() = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/su", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=2257, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# The PAM configuration file f"..., 4096) = 2257
- open("/lib/x86_64-linux-gnu/security/pam_rootok.so", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0000\v\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=10192, ...}) = 0
- mmap(NULL, 2105528, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d35cb000
- mprotect(0x7f50d35cd000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d37cc000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x1000) = 0x7f50d37cc000
- close(4) = 0
- open("/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=13818, ...}) = 0
- mmap(NULL, 13818, PROT_READ, MAP_PRIVATE, 4, 0) = 0x7f50d4e00000
- close(4) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libselinux.so.1", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\20c\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=142728, ...}) = 0
- mmap(NULL, 2246896, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d33a6000
- mprotect(0x7f50d33c7000, 2097152, PROT_NONE) = 0
- mmap(0x7f50d35c7000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x21000) = 0x7f50d35c7000
- mmap(0x7f50d35c9000, 6384, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d35c9000
- close(4) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libpcre.so.3", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\20\27\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=448440, ...}) = 0
- mmap(NULL, 2543976, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d3138000
- mprotect(0x7f50d31a4000, 2097152, PROT_NONE) = 0
- mmap(0x7f50d33a4000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x6c000) = 0x7f50d33a4000
- close(4) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libpthread.so.0", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\320n\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0755, st_size=137384, ...}) = 0
- mmap(NULL, 2213008, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d2f1b000
- mprotect(0x7f50d2f33000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d3132000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x17000) = 0x7f50d3132000
- mmap(0x7f50d3134000, 13456, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d3134000
- close(4) = 0
- mprotect(0x7f50d3132000, 4096, PROT_READ) = 0
- mprotect(0x7f50d33a4000, 4096, PROT_READ) = 0
- mprotect(0x7f50d35c7000, 4096, PROT_READ) = 0
- mprotect(0x7f50d37cc000, 4096, PROT_READ) = 0
- set_tid_address(0x7f50d4e059d0) = 36
- set_robust_list(0x7f50d4e059e0, 24) = 0
- rt_sigaction(SIGRTMIN, {0x7f50d2f219b0, [], SA_RESTORER|SA_SIGINFO, 0x7f50d2f2a890}, NULL, 8) = 0
- rt_sigaction(SIGRT_1, {0x7f50d2f21a40, [], SA_RESTORER|SA_RESTART|SA_SIGINFO, 0x7f50d2f2a890}, NULL, 8) = 0
- rt_sigprocmask(SIG_UNBLOCK, [RTMIN RT_1], NULL, 8) = 0
- getrlimit(RLIMIT_STACK, {rlim_cur=8192*1024, rlim_max=RLIM64_INFINITY}) = 0
- statfs("/sys/fs/selinux", 0x7ffdb8e46af0) = -1 ENOENT (No such file or directory)
- statfs("/selinux", 0x7ffdb8e46af0) = -1 ENOENT (No such file or directory)
- open("/proc/filesystems", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0444, st_size=0, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "nodev\tsysfs\nnodev\trootfs\nnodev\tr"..., 1024) = 388
- read(4, "", 1024) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- munmap(0x7f50d4e00000, 13818) = 0
- open("/lib/x86_64-linux-gnu/security/pam_env.so", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240\r\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=14336, ...}) = 0
- mmap(NULL, 2109672, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d2d17000
- mprotect(0x7f50d2d1a000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d2f19000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x2000) = 0x7f50d2f19000
- close(4) = 0
- mprotect(0x7f50d2f19000, 4096, PROT_READ) = 0
- open("/lib/x86_64-linux-gnu/security/pam_mail.so", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\340\v\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=10200, ...}) = 0
- mmap(NULL, 2105536, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d2b14000
- mprotect(0x7f50d2b16000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d2d15000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x1000) = 0x7f50d2d15000
- close(4) = 0
- mprotect(0x7f50d2d15000, 4096, PROT_READ) = 0
- open("/lib/x86_64-linux-gnu/security/pam_limits.so", O_RDONLY|O_CLOEXEC) = 4
- read(4, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\320\24\0\0\0\0\0\0"..., 832) = 832
- fstat(4, {st_mode=S_IFREG|0644, st_size=26856, ...}) = 0
- mmap(NULL, 2122120, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 4, 0) = 0x7f50d290d000
- mprotect(0x7f50d2912000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d2b11000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 4, 0x4000) = 0x7f50d2b11000
- close(4) = 0
- mprotect(0x7f50d2b11000, 8192, PROT_READ) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-auth", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1221, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-auth - aut"..., 4096) = 1221
- open("/lib/x86_64-linux-gnu/security/pam_unix.so", O_RDONLY|O_CLOEXEC) = 5
- read(5, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300)\0\0\0\0\0\0"..., 832) = 832
- fstat(5, {st_mode=S_IFREG|0644, st_size=60160, ...}) = 0
- mmap(NULL, 2204800, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 5, 0) = 0x7f50d26f2000
- mprotect(0x7f50d2700000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d28ff000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 5, 0xd000) = 0x7f50d28ff000
- mmap(0x7f50d2901000, 46208, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d2901000
- close(5) = 0
- open("/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 5
- fstat(5, {st_mode=S_IFREG|0644, st_size=13818, ...}) = 0
- mmap(NULL, 13818, PROT_READ, MAP_PRIVATE, 5, 0) = 0x7f50d4e00000
- close(5) = 0
- access("/etc/ld.so.nohwcap", F_OK) = -1 ENOENT (No such file or directory)
- open("/lib/x86_64-linux-gnu/libcrypt.so.1", O_RDONLY|O_CLOEXEC) = 5
- read(5, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300\f\0\0\0\0\0\0"..., 832) = 832
- fstat(5, {st_mode=S_IFREG|0644, st_size=35176, ...}) = 0
- mmap(NULL, 2318848, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 5, 0) = 0x7f50d24bb000
- mprotect(0x7f50d24c3000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d26c2000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 5, 0x7000) = 0x7f50d26c2000
- mmap(0x7f50d26c4000, 184832, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7f50d26c4000
- close(5) = 0
- mprotect(0x7f50d26c2000, 4096, PROT_READ) = 0
- mprotect(0x7f50d28ff000, 4096, PROT_READ) = 0
- munmap(0x7f50d4e00000, 13818) = 0
- open("/lib/x86_64-linux-gnu/security/pam_deny.so", O_RDONLY|O_CLOEXEC) = 5
- read(5, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0\6\0\0\0\0\0\0"..., 832) = 832
- fstat(5, {st_mode=S_IFREG|0644, st_size=5896, ...}) = 0
- mmap(NULL, 2101304, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 5, 0) = 0x7f50d22b9000
- mprotect(0x7f50d22ba000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d24b9000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 5, 0) = 0x7f50d24b9000
- close(5) = 0
- mprotect(0x7f50d24b9000, 4096, PROT_READ) = 0
- open("/lib/x86_64-linux-gnu/security/pam_permit.so", O_RDONLY|O_CLOEXEC) = 5
- read(5, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0000\7\0\0\0\0\0\0"..., 832) = 832
- fstat(5, {st_mode=S_IFREG|0644, st_size=5992, ...}) = 0
- mmap(NULL, 2101328, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 5, 0) = 0x7f50d20b7000
- mprotect(0x7f50d20b8000, 2093056, PROT_NONE) = 0
- mmap(0x7f50d22b7000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 5, 0) = 0x7f50d22b7000
- close(5) = 0
- mprotect(0x7f50d22b7000, 4096, PROT_READ) = 0
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-account", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1208, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-account - "..., 4096) = 1208
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-session", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1156, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-session - "..., 4096) = 1156
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/pam.d/other", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=520, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# /etc/pam.d/other - specify t"..., 4096) = 520
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-auth", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1221, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-auth - aut"..., 4096) = 1221
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-account", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1208, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-account - "..., 4096) = 1208
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-password", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1440, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-password -"..., 4096) = 1440
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- stat("/etc/pam.d", {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
- open("/etc/pam.d/common-session", O_RDONLY) = 4
- fstat(4, {st_mode=S_IFREG|0644, st_size=1156, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0a000
- read(4, "#\n# /etc/pam.d/common-session - "..., 4096) = 1156
- read(4, "", 4096) = 0
- close(4) = 0
- munmap(0x7f50d4e0a000, 4096) = 0
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- rt_sigaction(SIGINT, {SIG_IGN, [INT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, {SIG_DFL, [], 0}, 8) = 0
- rt_sigaction(SIGQUIT, {SIG_IGN, [QUIT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, {SIG_DFL, [], 0}, 8) = 0
- getuid() = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- readlink("/proc/self/exe", "/bin/su", 4096) = 7
- sendto(3, "x\0\0\0L\4\5\0\1\0\0\0\0\0\0\0op=PAM:authentic"..., 120, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 120
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\1\0\0\0$\0\0\0\0\0\0\0x\0\0\0L\4\5\0\1\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\1\0\0\0$\0\0\0\0\0\0\0x\0\0\0L\4\5\0\1\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- getuid() = 0
- open("/etc/login.defs", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=10478, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# /etc/login.defs - Configurat"..., 4096) = 4096
- read(3, " issuing \n# the \"mesg y\" command"..., 4096) = 4096
- read(3, "It supports passwords of unlimit"..., 4096) = 2286
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- open("/etc/shadow", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0640, st_size=783, ...}) = 0
- mmap(NULL, 783, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 783, SEEK_SET) = 783
- munmap(0x7f50d4e0b000, 783) = 0
- close(3) = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- sendto(3, "t\0\0\0M\4\5\0\2\0\0\0\0\0\0\0op=PAM:accountin"..., 116, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 116
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\2\0\0\0$\0\0\0\0\0\0\0t\0\0\0M\4\5\0\2\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\2\0\0\0$\0\0\0\0\0\0\0t\0\0\0M\4\5\0\2\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- rt_sigaction(SIGINT, {SIG_DFL, [INT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, {SIG_IGN, [INT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, 8) = 0
- rt_sigaction(SIGQUIT, {SIG_DFL, [QUIT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, {SIG_IGN, [QUIT], SA_RESTORER|SA_RESTART, 0x7f50d44640e0}, 8) = 0
- open("/etc/localtime", O_RDONLY|O_CLOEXEC) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=118, ...}) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=118, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\0\0\1\0\0\0\0"..., 4096) = 118
- lseek(3, -62, SEEK_CUR) = 56
- read(3, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\1\0\0\0\1\0\0\0\0"..., 4096) = 62
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- socket(PF_LOCAL, SOCK_DGRAM|SOCK_CLOEXEC, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/dev/log"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- open("/etc/login.defs", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=10478, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# /etc/login.defs - Configurat"..., 4096) = 4096
- read(3, " issuing \n# the \"mesg y\" command"..., 4096) = 4096
- read(3, "It supports passwords of unlimit"..., 4096) = 2286
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- socket(PF_LOCAL, SOCK_DGRAM|SOCK_CLOEXEC, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/dev/log"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- setgid(108) = 0
- open("/proc/sys/kernel/ngroups_max", O_RDONLY) = 3
- read(3, "65536\n", 31) = 6
- close(3) = 0
- socket(PF_LOCAL, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/var/run/nscd/socket"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- socket(PF_LOCAL, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/var/run/nscd/socket"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- open("/etc/group", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=609, ...}) = 0
- mmap(NULL, 609, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 609, SEEK_SET) = 609
- fstat(3, {st_mode=S_IFREG|0644, st_size=609, ...}) = 0
- munmap(0x7f50d4e0b000, 609) = 0
- close(3) = 0
- setgroups(1, [108]) = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- sendto(3, "p\0\0\0O\4\5\0\3\0\0\0\0\0\0\0op=PAM:setcred a"..., 112, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 112
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\3\0\0\0$\0\0\0\0\0\0\0p\0\0\0O\4\5\0\3\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\3\0\0\0$\0\0\0\0\0\0\0p\0\0\0O\4\5\0\3\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- open("/etc/security/pam_env.conf", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=2972, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# This is the configuration fi"..., 4096) = 2972
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/environment", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=0, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/security/pam_env.conf", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=2972, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# This is the configuration fi"..., 4096) = 2972
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- open("/etc/default/locale", O_RDONLY) = -1 ENOENT (No such file or directory)
- socket(PF_LOCAL, SOCK_DGRAM|SOCK_CLOEXEC, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/dev/log"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- getrlimit(RLIMIT_CPU, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_FSIZE, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_DATA, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_STACK, {rlim_cur=8192*1024, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_CORE, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_RSS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_NPROC, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_NOFILE, {rlim_cur=1024*1024, rlim_max=1024*1024}) = 0
- getrlimit(RLIMIT_MEMLOCK, {rlim_cur=64*1024, rlim_max=64*1024}) = 0
- getrlimit(RLIMIT_AS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_LOCKS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- getrlimit(RLIMIT_SIGPENDING, {rlim_cur=64124, rlim_max=64124}) = 0
- getrlimit(RLIMIT_MSGQUEUE, {rlim_cur=800*1024, rlim_max=800*1024}) = 0
- getrlimit(RLIMIT_NICE, {rlim_cur=0, rlim_max=0}) = 0
- getrlimit(RLIMIT_RTPRIO, {rlim_cur=0, rlim_max=0}) = 0
- getrlimit(RLIMIT_RTTIME, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- open("/proc/1/limits", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0444, st_size=0, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "Limit Soft L"..., 1024) = 1024
- read(3, " \nMax msgqueue size 819"..., 1024) = 299
- read(3, "", 1024) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- getpriority(PRIO_PROCESS, 0) = 20
- open("/etc/security/limits.conf", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=2150, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "# /etc/security/limits.conf\n#\n#E"..., 4096) = 2150
- read(3, "", 4096) = 0
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- openat(AT_FDCWD, "/etc/security/limits.d", O_RDONLY|O_NONBLOCK|O_DIRECTORY|O_CLOEXEC) = 3
- getdents(3, /* 2 entries */, 32768) = 48
- getdents(3, /* 0 entries */, 32768) = 0
- close(3) = 0
- setrlimit(RLIMIT_CPU, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_FSIZE, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_DATA, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_STACK, {rlim_cur=8192*1024, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_CORE, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_RSS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_NPROC, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_NOFILE, {rlim_cur=1024*1024, rlim_max=1024*1024}) = 0
- setrlimit(RLIMIT_MEMLOCK, {rlim_cur=64*1024, rlim_max=64*1024}) = 0
- setrlimit(RLIMIT_AS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_LOCKS, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setrlimit(RLIMIT_SIGPENDING, {rlim_cur=64124, rlim_max=64124}) = 0
- setrlimit(RLIMIT_MSGQUEUE, {rlim_cur=800*1024, rlim_max=800*1024}) = 0
- setrlimit(RLIMIT_NICE, {rlim_cur=0, rlim_max=0}) = 0
- setrlimit(RLIMIT_RTPRIO, {rlim_cur=0, rlim_max=0}) = 0
- setrlimit(RLIMIT_RTTIME, {rlim_cur=RLIM64_INFINITY, rlim_max=RLIM64_INFINITY}) = 0
- setpriority(PRIO_PROCESS, 0, 0) = 0
- getuid() = 0
- open("/etc/login.defs", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=10478, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# /etc/login.defs - Configurat"..., 4096) = 4096
- read(3, " issuing \n# the \"mesg y\" command"..., 4096) = 4096
- read(3, "It supports passwords of unlimit"..., 4096) = 2286
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- access("/var/run/utmpx", F_OK) = -1 ENOENT (No such file or directory)
- open("/var/run/utmp", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_SET) = 0
- alarm(0) = 0
- rt_sigaction(SIGALRM, {0x7f50d454a7c0, [], SA_RESTORER, 0x7f50d44640e0}, {SIG_DFL, [], SA_RESTORER, 0x7f50d44640e0}, 8) = 0
- alarm(10) = 0
- fcntl(3, F_SETLKW, {type=F_RDLCK, whence=SEEK_SET, start=0, len=0}) = 0
- read(3, "", 384) = 0
- fcntl(3, F_SETLKW, {type=F_UNLCK, whence=SEEK_SET, start=0, len=0}) = 0
- alarm(0) = 10
- rt_sigaction(SIGALRM, {SIG_DFL, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- close(3) = 0
- getuid() = 0
- socket(PF_LOCAL, SOCK_DGRAM|SOCK_CLOEXEC, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/dev/log"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- sendto(3, "t\0\0\0Q\4\5\0\4\0\0\0\0\0\0\0op=PAM:session_o"..., 116, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 116
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\4\0\0\0$\0\0\0\0\0\0\0t\0\0\0Q\4\5\0\4\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\4\0\0\0$\0\0\0\0\0\0\0t\0\0\0Q\4\5\0\4\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- clone(child_stack=0, flags=CLONE_CHILD_CLEARTID|CLONE_CHILD_SETTID|SIGCHLD, child_tidptr=0x7f50d4e059d0) = 37
- rt_sigprocmask(SIG_BLOCK, ~[RTMIN RT_1], NULL, 8) = 0
- rt_sigaction(SIGTERM, {0x55b48a248f30, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- rt_sigaction(SIGINT, {0x55b48a248f30, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- rt_sigaction(SIGQUIT, {0x55b48a248f30, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- rt_sigaction(SIGTSTP, {0x55b48a248f30, [], SA_RESTORER, 0x7f50d44640e0}, NULL, 8) = 0
- rt_sigprocmask(SIG_UNBLOCK, [INT QUIT ALRM TERM TSTP], NULL, 8) = 0
- wait4(-1, touch: cannot touch 'logs/test.log': Permission denied
- [{WIFEXITED(s) && WEXITSTATUS(s) == 1}], WSTOPPED, NULL) = 37
- open("/etc/passwd", O_RDONLY|O_CLOEXEC) = 3
- lseek(3, 0, SEEK_CUR) = 0
- fstat(3, {st_mode=S_IFREG|0644, st_size=1322, ...}) = 0
- mmap(NULL, 1322, PROT_READ, MAP_SHARED, 3, 0) = 0x7f50d4e0b000
- lseek(3, 1322, SEEK_SET) = 1322
- munmap(0x7f50d4e0b000, 1322) = 0
- close(3) = 0
- getuid() = 0
- open("/etc/login.defs", O_RDONLY) = 3
- fstat(3, {st_mode=S_IFREG|0644, st_size=10478, ...}) = 0
- mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f50d4e0b000
- read(3, "#\n# /etc/login.defs - Configurat"..., 4096) = 4096
- read(3, " issuing \n# the \"mesg y\" command"..., 4096) = 4096
- read(3, "It supports passwords of unlimit"..., 4096) = 2286
- close(3) = 0
- munmap(0x7f50d4e0b000, 4096) = 0
- socket(PF_LOCAL, SOCK_DGRAM|SOCK_CLOEXEC, 0) = 3
- connect(3, {sa_family=AF_LOCAL, sun_path="/dev/log"}, 110) = -1 ENOENT (No such file or directory)
- close(3) = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- sendto(3, "x\0\0\0R\4\5\0\5\0\0\0\0\0\0\0op=PAM:session_c"..., 120, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 120
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\5\0\0\0$\0\0\0\0\0\0\0x\0\0\0R\4\5\0\5\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\5\0\0\0$\0\0\0\0\0\0\0x\0\0\0R\4\5\0\5\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- socket(PF_NETLINK, SOCK_RAW, NETLINK_AUDIT) = 3
- fcntl(3, F_SETFD, FD_CLOEXEC) = 0
- sendto(3, "p\0\0\0P\4\5\0\6\0\0\0\0\0\0\0op=PAM:setcred a"..., 112, 0, {sa_family=AF_NETLINK, pid=0, groups=00000000}, 12) = 112
- poll([{fd=3, events=POLLIN}], 1, 500) = 1 ([{fd=3, revents=POLLIN}])
- recvfrom(3, "$\0\0\0\2\0\0\0\6\0\0\0$\0\0\0\0\0\0\0p\0\0\0P\4\5\0\6\0\0\0"..., 8988, MSG_PEEK|MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- recvfrom(3, "$\0\0\0\2\0\0\0\6\0\0\0$\0\0\0\0\0\0\0p\0\0\0P\4\5\0\6\0\0\0"..., 8988, MSG_DONTWAIT, {sa_family=AF_NETLINK, pid=0, groups=00000000}, [12]) = 36
- close(3) = 0
- munmap(0x7f50d35cb000, 2105528) = 0
- munmap(0x7f50d2d17000, 2109672) = 0
- munmap(0x7f50d2b14000, 2105536) = 0
- munmap(0x7f50d290d000, 2122120) = 0
- munmap(0x7f50d26f2000, 2204800) = 0
- munmap(0x7f50d33a6000, 2246896) = 0
- munmap(0x7f50d3138000, 2543976) = 0
- munmap(0x7f50d24bb000, 2318848) = 0
- munmap(0x7f50d22b9000, 2101304) = 0
- munmap(0x7f50d20b7000, 2101328) = 0
- exit_group(1) = ?
- +++ exited with 1 +++
- root@6d17d7f7b496:/tomcat#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement