Two tools are pre-installed on the cluster's worker node:
Using the tool of your choice (including any non pre-installed tool), analyze the container's behavior for at least 30 seconds, using filters that detect newly spawning and executing processes.
Store an incident file at /opt/KSRS00101/alerts/details, containing the detected incidents, one per line, in the following format:

The following example shows a properly formatted incident file:



Lenna
8 months agoMyrtie
8 months agoHerman
9 months agoHubert
9 months agoFlorinda
9 months agoCarma
9 months agoIvette
9 months agoValene
10 months agoMyra
10 months agoGarry
10 months agoDonette
10 months agoRessie
10 months agoDaniela
10 months agoArlene
10 months agoLaine
10 months agoLottie
10 months agoGail
2 years agoAmmie
2 years agoLenora
2 years agoIraida
2 years agoTayna
2 years agoCasie
2 years agoYoulanda
2 years agoMalinda
2 years agoLajuana
2 years agoBeth
2 years agoTracey
2 years agoPortia
2 years agoPamella
2 years agoGlen
2 years agoIrene
2 years agoCelestine
2 years agoMarsha
2 years agoKarma
2 years agoBilly
2 years agoTamar
2 years agoTamie
2 years agoCelestine
2 years agoTamie
2 years ago