4.3BSD-UWisc/man/cat5/acct.5
ACCT(5) UNIX Programmer's Manual ACCT(5)
NAME
acct - execution accounting file
SYNOPSIS
#include <sys/acct.h>
DESCRIPTION
The _a_c_c_t(2) system call arranges for entries to be made in
an accounting file for each process that terminates. The
accounting file is a sequence of entries whose layout, as
defined by the include file is:
/*
* Copyright (c) 1982, 1986 Regents of the University of California.
* All rights reserved. The Berkeley software License Agreement
* specifies the terms and conditions for redistribution.
*
* @(#)acct.h 7.1 (Berkeley) 6/4/86
*/
/*
* RCS Info
* $Header: acct.h,v 3.1 86/10/22 13:22:37 tadl Exp $
* $Locker: $
*/
/*
* Accounting structures;
* these use a comp_t type which is a 3 bits base 8
* exponent, 13 bit fraction ``floating point'' number.
* Units are 1/AHZ seconds.
*/
typedef u_short comp_t;
struct acct
{
char ac_comm[10]; /* Accounting command name */
comp_t ac_utime; /* Accounting user time */
comp_t ac_stime; /* Accounting system time */
comp_t ac_etime; /* Accounting elapsed time */
time_t ac_btime; /* Beginning time */
uid_t ac_uid; /* Accounting user ID */
gid_t ac_gid; /* Accounting group ID */
short ac_mem; /* average memory usage */
comp_t ac_io; /* number of disk IO blocks */
dev_t ac_tty; /* control typewriter */
char ac_flag; /* Accounting flag */
};
#define AFORK 0001 /* has executed fork, but no exec */
#define ASU 0002 /* used super-user privileges */
#define ACOMPAT 0004 /* used compatibility mode */
#define ACORE 0010 /* dumped core */
Printed 12/27/86 May 19, 1986 1
ACCT(5) UNIX Programmer's Manual ACCT(5)
#define AXSIG 0020 /* killed by a signal */
/*
* 1/AHZ is the granularity of the data encoded in the various
* comp_t fields. This is not necessarily equal to hz.
*/
#define AHZ 64
#ifdef KERNEL
struct acct acctbuf;
struct vnode *acctp;
#endif
If the process was created by an _e_x_e_c_v_e(2), the first 10
characters of the filename appear in _a_c__c_o_m_m. The accounting
flag contains bits indicating whether _e_x_e_c_v_e(2) was ever
accomplished, and whether the process ever had super-user
privileges.
SEE ALSO
acct(2), execve(2), sa(8)
Printed 12/27/86 May 19, 1986 2