mirror of
https://github.com/fleetdm/fleet
synced 2026-05-17 14:08:25 +00:00
* create schema/tables, add yaml schema tables
* Update osquery-table-details.ejs
* Generate schema from schema/tables/ folder
* Create generate-yaml-tables-from-json.js
* update created table files
* update fleet override validation
* update error messages, add fleetRepoUrl
* Delete generate-yaml-tables-from-json.js
* Update osquery-table-details.ejs
* Update whitespace in table examples
* Revert "Update osquery-table-details.ejs"
This reverts commit 2e9d63208f.
* add YAML tables generated from updated Fleet schema
* lint fixes
* update arp_cache and docker_containers tables
34 lines
744 B
YAML
34 lines
744 B
YAML
name: docker_containers
|
|
examples: >-
|
|
Identify containers that are running with high privileges.
|
|
|
|
```
|
|
|
|
SELECT state, status, image, image_id FROM docker_containers WHERE privileged='1';
|
|
|
|
```
|
|
columns:
|
|
- name: cgroup_namespace
|
|
platforms:
|
|
- linux
|
|
- name: ipc_namespace
|
|
platforms:
|
|
- linux
|
|
- name: mnt_namespace
|
|
platforms:
|
|
- linux
|
|
- name: net_namespace
|
|
platforms:
|
|
- linux
|
|
- name: pid_namespace
|
|
platforms:
|
|
- linux
|
|
- name: privileged
|
|
description: Is the container
|
|
[privileged](https://docs.docker.com/engine/reference/run/#runtime-privilege-and-linux-capabilities)
|
|
- name: user_namespace
|
|
platforms:
|
|
- linux
|
|
- name: uts_namespace
|
|
platforms:
|
|
- linux
|