So it is possible that network, and other ipc types will show up under the "file_perm" operation. Operation is just a hint for which kernel code paths the permission request came from. Sockets certainly can be used with regular filesystem operations.
With that said, something is very wrong here. There should be request and deny masks.
So it is possible that network, and other ipc types will show up under the "file_perm" operation. Operation is just a hint for which kernel code paths the permission request came from. Sockets certainly can be used with regular filesystem operations.
With that said, something is very wrong here. There should be request and deny masks.