Truxton enumeration get target

From truxwiki.com
Jump to navigation Jump to search

Retrieves the target of the enumeration.

Syntax

uint64_t truxton_enumeration_get_target( uint64_t enumeration_handle );

Parameters

enumeration_handle

The handle returned by calling truxton_enumeration_create().

Return value

The target of the enumeration.

Sample

void print_details( uint64_t enumerator )
{
   char uuid[40];

   uint64_t scope = truxton_enumeration_get_scope( enumerator );
   uint64_t target = truxton_enumeration_get_target( enumerator );

   truxton_enumeration_get_scope_id( enumerator, uuid, sizeof( uuid ) );

   printf( "%" PRIu64 " - %s - %" PRIu64 "\n", scope, scope_id, target );
}

void main( void )
{
    char investigation_name[256];

    truxton_start();

    uint64_t truxton = truxton_create();

    uint64_t enumerator = truxton_enumeration_create( truxton );

    truxton_enumeration_set_target( enumerator, Type_Investigation );

    uint64_t investigation_handle = truxton_enumeration_get_next( enumerator );

    uint64_t count = 0;

    print_details( enumerator );

    while( investigation_handle != 0 )
    {
        count++ 
        investigation_handle = truxton_enumeration_get_next( enumerator );
    }

    printf( "%" PRIu64 " investigations\n", count );

    truxton_enumeration_destroy( enumerator );
    truxton_destroy( truxton );
    truxton_stop();
}


The PRIu64 in the sample code above is a standard way of formatting a 64-bit unsigned integer in C. Over the years, different compilers on different operating systems used different format specifiers for things, these PRI macros, along with some tricky string concatenation the compilers perform for you, allow you to maintain a single code base without a bunch of macro magic.