64
64
Output is completely unformatted. This is useful for extracting records that can still be interpretted by audit tools.
67
67
Search for an event matching the given \fIsyscall\fP. You may either give the numeric syscall value or the syscall name. If you give the syscall name, it will use the syscall table for the machine that you are using.
69
69
.BR \-se ,\ \-\-context \ \fISE-Linux-context-string\fP