LINUX.ORG.RU

Use SystemTap

# stap -e 'probe netfilter.ip.local_out {
  if (dport == 53)
      printf("%s %s[%d]: %s ->%s:%d\n", ctime(), pexecname(), ppid(), cmdline_str(), daddr, dport)
}'
 
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: /bin/ping -c 1 -s 8 MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: /bin/ping -c 1 -s 8 MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.10:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.11:53
Fri Jul 12 17:19:42 2019 FNDLIBR[1763]: tnsping FNDSM_MYHOSTNAME ->10.10.10.11:53
bigbit ★★★★★ ()