Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Zw registry overrides #77

Merged
merged 3 commits into from
Aug 9, 2023
Merged

Add Zw registry overrides #77

merged 3 commits into from
Aug 9, 2023

Conversation

dthaler
Copy link
Contributor

@dthaler dthaler commented Aug 9, 2023

Override calls to HKLM to use HKCU for now. This is because kernel code has write access to HKLM, so to accurately simulate such calls from a normal test app, we redirect them to HKCU if HKLM access fails.

Also add a couple more Wdf functions needed by ebpf-for-windows

Override calls to HKLM to use HKCU for now

Also add a couple more Wdf functions needed by ebpf-for-windows

Signed-off-by: Dave Thaler <[email protected]>
src/zw.cpp Show resolved Hide resolved
Signed-off-by: Dave Thaler <[email protected]>
src/zw.cpp Outdated Show resolved Hide resolved
Signed-off-by: Dave Thaler <[email protected]>
@dthaler dthaler merged commit b8f6883 into main Aug 9, 2023
5 checks passed
@dthaler dthaler deleted the zw branch August 9, 2023 16:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants