Difference between revisions of "Truxton event set description"
Jump to navigation
Jump to search
| (One intermediate revision by the same user not shown) | |||
| Line 16: | Line 16: | ||
=Sample= | =Sample= | ||
<source lang="C" highlight="6"> | <source lang="C" highlight="6"> | ||
| − | void initialize_investigation(uint64_t truxton, char const * media_id, char const * file_id) | + | void initialize_investigation( uint64_t truxton, char const * media_id, char const * file_id ) |
{ | { | ||
| − | uint64_t event_handle = truxton_event_create(truxton); | + | uint64_t event_handle = truxton_event_create( truxton ); |
truxton_event_set_title( event_handle, "Phase 1" ); | truxton_event_set_title( event_handle, "Phase 1" ); | ||
| Line 36: | Line 36: | ||
printf( "Event ID is %s\n", id ); | printf( "Event ID is %s\n", id ); | ||
| − | truxton_event_destroy( | + | truxton_event_destroy( event_handle ); |
} | } | ||
</source> | </source> | ||
Latest revision as of 09:05, 10 February 2021
This sets the more detailed description of the event.
Syntax
void truxton_event_set_description( uint64_t event_handle, char const * description );
Parameters
event_handle
The handle to an event created by the truxton_event_create call.
description
Details about the event.
It corresponds to the [Description] column of the [Event] table.
Sample
void initialize_investigation( uint64_t truxton, char const * media_id, char const * file_id )
{
uint64_t event_handle = truxton_event_create( truxton );
truxton_event_set_title( event_handle, "Phase 1" );
truxton_event_set_description( event_handle, "As described by SA Barnett" );
truxton_event_set_start( event_handle, get_ticks( "2016-07-31T12:00:00-05:00" ) );
truxton_event_set_end( event_handle, get_ticks( "2017-01-04T12:00:00-05:00" ) );
truxton_event_set_type( event_handle, EVENT_TYPE_ADDED_BY_ANALYST );
truxton_event_set_media_id( event_handle, media_id );
truxton_event_set_file_id( event_handle, file_id );
truxton_event_save( event_handle );
char id[ 65 ];
truxton_event_get_id( event_handle, id, sizeof( id ) );
printf( "Event ID is %s\n", id );
truxton_event_destroy( event_handle );
}