Class: EndpointSecurity::Event

Inherits:
Object
  • Object
show all
Defined in:
lib/endpoint_security/object_model.rb

Overview

Lazy view of an event-specific Endpoint Security structure.

Instance Method Summary collapse

Instance Method Details

#args ⇒ ExecArgs

Returns exec arguments.

Returns:



151
# File 'lib/endpoint_security/object_model.rb', line 151

def args = (@args ||= ExecArgs.new { __exec_values(:args) })

#env ⇒ ExecArgs

Returns exec environment.

Returns:



154
# File 'lib/endpoint_security/object_model.rb', line 154

def env = (@env ||= ExecArgs.new { __exec_values(:env) })

#fds ⇒ FieldArray

Returns exec file descriptors.

Returns:



157
# File 'lib/endpoint_security/object_model.rb', line 157

def fds = (@fds ||= FieldArray.new { __exec_values(:fds) })

#to_h ⇒ Hash

Returns deep copy of the event fields.

Returns:

  • (Hash) —

    deep copy of the event fields



160
161
162
163
164
165
166
167
168
# File 'lib/endpoint_security/object_model.rb', line 160

def to_h
  super.tap do |hash|
    next unless __schema_name == "es_event_exec_t"

    hash[:args] = args.to_a
    hash[:env] = env.to_a
    hash[:fds] = fds.map(&:to_h)
  end
end