auparse_flush_feed(3) — Linux manual page

NAME | SYNOPSIS | DESCRIPTION | RETURN VALUE | ERRORS | SEE ALSO | AUTHOR | COLOPHON

AUPARSE_FLUSH_FEED(3)        Linux Audit API        AUPARSE_FLUSH_FEED(3)

NAME         top

       auparse_flush_feed - flush any unconsumed feed data through
       parser.

SYNOPSIS         top

       #include <auparse.h>

       int auparse_flush_feed(auparse_state_t *au);"

DESCRIPTION         top

       auparse_flush_feed should be called to signal the end of feed
       input data and flush any pending parse data through the parsing
       system.  auparse_add_callback() must be called before flushing
       feed data so that complete events have a consumer. Malformed feed
       records are rejected and are not passed to the callback. If
       malformed records are found, parsing continues for the rest of the
       available feed data before auparse_flush_feed returns an error.

RETURN VALUE         top

       Returns -1 if an error occurs; otherwise, 0 for success.  When -1
       is returned, errno is set to indicate the error. The value of
       errno is meaningful only after an error return; callers should not
       assume it is cleared after a successful call.  Applications that
       may run with libauparse from before audit-4.1.5 should set errno
       to 0 before calling auparse_flush_feed.  If auparse_flush_feed
       returns -1 and errno is still 0, the runtime library is using the
       older error behavior and did not set errno.  Clearing errno first
       avoids treating a pre-existing value as if it were set by
       auparse_flush_feed.

ERRORS         top

       EINVAL The parser state is invalid, the parser was not initialized
              with AUSOURCE_FEED, or no callback has been registered.

       ENOMEM Memory allocation failed while parsing feed data.

       EBADMSG
              A malformed feed record was found. The malformed record was
              rejected and was not passed to the callback. Parsing
              continues for the rest of the available feed data before
              this error is returned.

       EIO    An internal parser failure occurred without a more specific
              error code.

SEE ALSO         top

       auparse_feed(3), auparse_feed_age_events(3),
       auparse_feed_has_data(3)

AUTHOR         top

       John Dennis

COLOPHON         top

       This page is part of the audit (Linux Audit) project.  Information
       about the project can be found at 
       ⟨http://people.redhat.com/sgrubb/audit/⟩.  If you have a bug report
       for this manual page, send it to linux-audit@redhat.com.  This
       page was obtained from the project's upstream Git repository
       ⟨https://github.com/linux-audit/audit-userspace.git⟩ on
       2026-08-03.  (At that time, the date of the most recent commit
       that was found in the repository was 2026-07-29.)  If you discover
       any rendering problems in this HTML version of the page, or you
       believe there is a better or more up-to-date source for the page,
       or you have corrections or improvements to the information in this
       COLOPHON (which is not part of the original manual page), send a
       mail to man-pages@man7.org

Red Hat                          Apr 2016           AUPARSE_FLUSH_FEED(3)

Pages that refer to this page: auparse_add_callback(3)auparse_feed(3)auparse_feed_age_events(3)