Oct 2 19:05:38.782874 kernel: Booting Linux on physical CPU 0x0000000000 [0x413fd0c1] Oct 2 19:05:38.782894 kernel: Linux version 5.15.132-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Mon Oct 2 17:55:37 -00 2023 Oct 2 19:05:38.782901 kernel: efi: EFI v2.70 by EDK II Oct 2 19:05:38.782907 kernel: efi: SMBIOS 3.0=0xd9260000 ACPI 2.0=0xd9240000 MEMATTR=0xda32b018 RNG=0xd9220018 MEMRESERVE=0xd9521c18 Oct 2 19:05:38.782912 kernel: random: crng init done Oct 2 19:05:38.782918 kernel: ACPI: Early table checksum verification disabled Oct 2 19:05:38.782924 kernel: ACPI: RSDP 0x00000000D9240000 000024 (v02 BOCHS ) Oct 2 19:05:38.782931 kernel: ACPI: XSDT 0x00000000D9230000 000064 (v01 BOCHS BXPC 00000001 01000013) Oct 2 19:05:38.782936 kernel: ACPI: FACP 0x00000000D91E0000 000114 (v06 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782942 kernel: ACPI: DSDT 0x00000000D91F0000 0014A2 (v02 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782947 kernel: ACPI: APIC 0x00000000D91D0000 0001A8 (v04 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782952 kernel: ACPI: PPTT 0x00000000D91C0000 00009C (v02 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782958 kernel: ACPI: GTDT 0x00000000D91B0000 000060 (v02 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782963 kernel: ACPI: MCFG 0x00000000D91A0000 00003C (v01 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782971 kernel: ACPI: SPCR 0x00000000D9190000 000050 (v02 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782977 kernel: ACPI: DBG2 0x00000000D9180000 000057 (v00 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782983 kernel: ACPI: IORT 0x00000000D9170000 000080 (v03 BOCHS BXPC 00000001 BXPC 00000001) Oct 2 19:05:38.782988 kernel: ACPI: SPCR: console: pl011,mmio,0x9000000,9600 Oct 2 19:05:38.782994 kernel: NUMA: Failed to initialise from firmware Oct 2 19:05:38.783000 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000000dcffffff] Oct 2 19:05:38.783006 kernel: NUMA: NODE_DATA [mem 0xdcb0b900-0xdcb10fff] Oct 2 19:05:38.783011 kernel: Zone ranges: Oct 2 19:05:38.783017 kernel: DMA [mem 0x0000000040000000-0x00000000dcffffff] Oct 2 19:05:38.783024 kernel: DMA32 empty Oct 2 19:05:38.783029 kernel: Normal empty Oct 2 19:05:38.783035 kernel: Movable zone start for each node Oct 2 19:05:38.783040 kernel: Early memory node ranges Oct 2 19:05:38.783046 kernel: node 0: [mem 0x0000000040000000-0x00000000d924ffff] Oct 2 19:05:38.783051 kernel: node 0: [mem 0x00000000d9250000-0x00000000d951ffff] Oct 2 19:05:38.783057 kernel: node 0: [mem 0x00000000d9520000-0x00000000dc7fffff] Oct 2 19:05:38.783063 kernel: node 0: [mem 0x00000000dc800000-0x00000000dc88ffff] Oct 2 19:05:38.783068 kernel: node 0: [mem 0x00000000dc890000-0x00000000dc89ffff] Oct 2 19:05:38.783074 kernel: node 0: [mem 0x00000000dc8a0000-0x00000000dc9bffff] Oct 2 19:05:38.783079 kernel: node 0: [mem 0x00000000dc9c0000-0x00000000dcffffff] Oct 2 19:05:38.783085 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000000dcffffff] Oct 2 19:05:38.783092 kernel: On node 0, zone DMA: 12288 pages in unavailable ranges Oct 2 19:05:38.783106 kernel: psci: probing for conduit method from ACPI. Oct 2 19:05:38.783309 kernel: psci: PSCIv1.1 detected in firmware. Oct 2 19:05:38.783320 kernel: psci: Using standard PSCI v0.2 function IDs Oct 2 19:05:38.783326 kernel: psci: Trusted OS migration not required Oct 2 19:05:38.783336 kernel: psci: SMC Calling Convention v1.1 Oct 2 19:05:38.783343 kernel: smccc: KVM: hypervisor services detected (0x00000000 0x00000000 0x00000000 0x00000003) Oct 2 19:05:38.783350 kernel: ACPI: SRAT not present Oct 2 19:05:38.783356 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Oct 2 19:05:38.783362 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Oct 2 19:05:38.783369 kernel: pcpu-alloc: [0] 0 [0] 1 [0] 2 [0] 3 Oct 2 19:05:38.783375 kernel: Detected PIPT I-cache on CPU0 Oct 2 19:05:38.783381 kernel: CPU features: detected: GIC system register CPU interface Oct 2 19:05:38.783387 kernel: CPU features: detected: Hardware dirty bit management Oct 2 19:05:38.783393 kernel: CPU features: detected: Spectre-v4 Oct 2 19:05:38.783399 kernel: CPU features: detected: Spectre-BHB Oct 2 19:05:38.783406 kernel: CPU features: kernel page table isolation forced ON by KASLR Oct 2 19:05:38.783412 kernel: CPU features: detected: Kernel page table isolation (KPTI) Oct 2 19:05:38.783418 kernel: CPU features: detected: ARM erratum 1418040 Oct 2 19:05:38.783424 kernel: Built 1 zonelists, mobility grouping on. Total pages: 633024 Oct 2 19:05:38.783430 kernel: Policy zone: DMA Oct 2 19:05:38.783438 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected acpi=force verity.usrhash=684fe6a2259d7fb96810743ab87aaaa03d9f185b113bd6990a64d1079e5672ca Oct 2 19:05:38.783444 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Oct 2 19:05:38.783450 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Oct 2 19:05:38.783457 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Oct 2 19:05:38.783463 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Oct 2 19:05:38.783469 kernel: Memory: 2459280K/2572288K available (9792K kernel code, 2092K rwdata, 7548K rodata, 34560K init, 779K bss, 113008K reserved, 0K cma-reserved) Oct 2 19:05:38.783477 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1 Oct 2 19:05:38.783483 kernel: trace event string verifier disabled Oct 2 19:05:38.783489 kernel: rcu: Preemptible hierarchical RCU implementation. Oct 2 19:05:38.783495 kernel: rcu: RCU event tracing is enabled. Oct 2 19:05:38.783502 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=4. Oct 2 19:05:38.783508 kernel: Trampoline variant of Tasks RCU enabled. Oct 2 19:05:38.783514 kernel: Tracing variant of Tasks RCU enabled. Oct 2 19:05:38.783520 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Oct 2 19:05:38.783526 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=4 Oct 2 19:05:38.783532 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Oct 2 19:05:38.783546 kernel: GICv3: 256 SPIs implemented Oct 2 19:05:38.783554 kernel: GICv3: 0 Extended SPIs implemented Oct 2 19:05:38.783561 kernel: GICv3: Distributor has no Range Selector support Oct 2 19:05:38.783566 kernel: Root IRQ handler: gic_handle_irq Oct 2 19:05:38.783573 kernel: GICv3: 16 PPIs implemented Oct 2 19:05:38.783579 kernel: GICv3: CPU0: found redistributor 0 region 0:0x00000000080a0000 Oct 2 19:05:38.783585 kernel: ACPI: SRAT not present Oct 2 19:05:38.783591 kernel: ITS [mem 0x08080000-0x0809ffff] Oct 2 19:05:38.783597 kernel: ITS@0x0000000008080000: allocated 8192 Devices @400b0000 (indirect, esz 8, psz 64K, shr 1) Oct 2 19:05:38.783603 kernel: ITS@0x0000000008080000: allocated 8192 Interrupt Collections @400c0000 (flat, esz 8, psz 64K, shr 1) Oct 2 19:05:38.783609 kernel: GICv3: using LPI property table @0x00000000400d0000 Oct 2 19:05:38.783615 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000000400e0000 Oct 2 19:05:38.783621 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Oct 2 19:05:38.783629 kernel: arch_timer: cp15 timer(s) running at 25.00MHz (virt). Oct 2 19:05:38.783635 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x5c40939b5, max_idle_ns: 440795202646 ns Oct 2 19:05:38.783642 kernel: sched_clock: 56 bits at 25MHz, resolution 40ns, wraps every 4398046511100ns Oct 2 19:05:38.783648 kernel: arm-pv: using stolen time PV Oct 2 19:05:38.783655 kernel: Console: colour dummy device 80x25 Oct 2 19:05:38.783662 kernel: ACPI: Core revision 20210730 Oct 2 19:05:38.783668 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 50.00 BogoMIPS (lpj=25000) Oct 2 19:05:38.783675 kernel: pid_max: default: 32768 minimum: 301 Oct 2 19:05:38.783681 kernel: LSM: Security Framework initializing Oct 2 19:05:38.783688 kernel: SELinux: Initializing. Oct 2 19:05:38.783695 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Oct 2 19:05:38.783702 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Oct 2 19:05:38.783708 kernel: rcu: Hierarchical SRCU implementation. Oct 2 19:05:38.783714 kernel: Platform MSI: ITS@0x8080000 domain created Oct 2 19:05:38.783721 kernel: PCI/MSI: ITS@0x8080000 domain created Oct 2 19:05:38.783727 kernel: Remapping and enabling EFI services. Oct 2 19:05:38.783733 kernel: smp: Bringing up secondary CPUs ... Oct 2 19:05:38.783739 kernel: Detected PIPT I-cache on CPU1 Oct 2 19:05:38.783745 kernel: GICv3: CPU1: found redistributor 1 region 0:0x00000000080c0000 Oct 2 19:05:38.783753 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000000400f0000 Oct 2 19:05:38.783759 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Oct 2 19:05:38.783765 kernel: CPU1: Booted secondary processor 0x0000000001 [0x413fd0c1] Oct 2 19:05:38.783772 kernel: Detected PIPT I-cache on CPU2 Oct 2 19:05:38.783778 kernel: GICv3: CPU2: found redistributor 2 region 0:0x00000000080e0000 Oct 2 19:05:38.783785 kernel: GICv3: CPU2: using allocated LPI pending table @0x0000000040100000 Oct 2 19:05:38.783791 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Oct 2 19:05:38.783798 kernel: CPU2: Booted secondary processor 0x0000000002 [0x413fd0c1] Oct 2 19:05:38.783804 kernel: Detected PIPT I-cache on CPU3 Oct 2 19:05:38.783810 kernel: GICv3: CPU3: found redistributor 3 region 0:0x0000000008100000 Oct 2 19:05:38.783818 kernel: GICv3: CPU3: using allocated LPI pending table @0x0000000040110000 Oct 2 19:05:38.783824 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Oct 2 19:05:38.783830 kernel: CPU3: Booted secondary processor 0x0000000003 [0x413fd0c1] Oct 2 19:05:38.783836 kernel: smp: Brought up 1 node, 4 CPUs Oct 2 19:05:38.783847 kernel: SMP: Total of 4 processors activated. Oct 2 19:05:38.783854 kernel: CPU features: detected: 32-bit EL0 Support Oct 2 19:05:38.783861 kernel: CPU features: detected: Data cache clean to the PoU not required for I/D coherence Oct 2 19:05:38.783868 kernel: CPU features: detected: Common not Private translations Oct 2 19:05:38.783875 kernel: CPU features: detected: CRC32 instructions Oct 2 19:05:38.783881 kernel: CPU features: detected: RCpc load-acquire (LDAPR) Oct 2 19:05:38.783888 kernel: CPU features: detected: LSE atomic instructions Oct 2 19:05:38.783894 kernel: CPU features: detected: Privileged Access Never Oct 2 19:05:38.783902 kernel: CPU features: detected: RAS Extension Support Oct 2 19:05:38.783909 kernel: CPU features: detected: Speculative Store Bypassing Safe (SSBS) Oct 2 19:05:38.783915 kernel: CPU: All CPU(s) started at EL1 Oct 2 19:05:38.783922 kernel: alternatives: patching kernel code Oct 2 19:05:38.783930 kernel: devtmpfs: initialized Oct 2 19:05:38.783937 kernel: KASLR enabled Oct 2 19:05:38.783943 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Oct 2 19:05:38.783950 kernel: futex hash table entries: 1024 (order: 4, 65536 bytes, linear) Oct 2 19:05:38.783957 kernel: pinctrl core: initialized pinctrl subsystem Oct 2 19:05:38.783964 kernel: SMBIOS 3.0.0 present. Oct 2 19:05:38.783970 kernel: DMI: QEMU KVM Virtual Machine, BIOS 0.0.0 02/06/2015 Oct 2 19:05:38.783977 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Oct 2 19:05:38.783984 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Oct 2 19:05:38.783991 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Oct 2 19:05:38.783999 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Oct 2 19:05:38.784005 kernel: audit: initializing netlink subsys (disabled) Oct 2 19:05:38.784012 kernel: audit: type=2000 audit(0.034:1): state=initialized audit_enabled=0 res=1 Oct 2 19:05:38.784020 kernel: thermal_sys: Registered thermal governor 'step_wise' Oct 2 19:05:38.784026 kernel: cpuidle: using governor menu Oct 2 19:05:38.784033 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Oct 2 19:05:38.784040 kernel: ASID allocator initialised with 32768 entries Oct 2 19:05:38.784047 kernel: ACPI: bus type PCI registered Oct 2 19:05:38.784054 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Oct 2 19:05:38.784062 kernel: Serial: AMBA PL011 UART driver Oct 2 19:05:38.784068 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Oct 2 19:05:38.784075 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Oct 2 19:05:38.784082 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Oct 2 19:05:38.784088 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Oct 2 19:05:38.784095 kernel: cryptd: max_cpu_qlen set to 1000 Oct 2 19:05:38.784119 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Oct 2 19:05:38.784126 kernel: ACPI: Added _OSI(Module Device) Oct 2 19:05:38.784132 kernel: ACPI: Added _OSI(Processor Device) Oct 2 19:05:38.784140 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Oct 2 19:05:38.784147 kernel: ACPI: Added _OSI(Processor Aggregator Device) Oct 2 19:05:38.784154 kernel: ACPI: Added _OSI(Linux-Dell-Video) Oct 2 19:05:38.784160 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Oct 2 19:05:38.784167 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Oct 2 19:05:38.784174 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Oct 2 19:05:38.784180 kernel: ACPI: Interpreter enabled Oct 2 19:05:38.784186 kernel: ACPI: Using GIC for interrupt routing Oct 2 19:05:38.784193 kernel: ACPI: MCFG table detected, 1 entries Oct 2 19:05:38.784201 kernel: ARMH0011:00: ttyAMA0 at MMIO 0x9000000 (irq = 12, base_baud = 0) is a SBSA Oct 2 19:05:38.784207 kernel: printk: console [ttyAMA0] enabled Oct 2 19:05:38.784214 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Oct 2 19:05:38.784351 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Oct 2 19:05:38.784417 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Oct 2 19:05:38.784477 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Oct 2 19:05:38.784542 kernel: acpi PNP0A08:00: ECAM area [mem 0x4010000000-0x401fffffff] reserved by PNP0C02:00 Oct 2 19:05:38.784614 kernel: acpi PNP0A08:00: ECAM at [mem 0x4010000000-0x401fffffff] for [bus 00-ff] Oct 2 19:05:38.784623 kernel: ACPI: Remapped I/O 0x000000003eff0000 to [io 0x0000-0xffff window] Oct 2 19:05:38.784630 kernel: PCI host bridge to bus 0000:00 Oct 2 19:05:38.784699 kernel: pci_bus 0000:00: root bus resource [mem 0x10000000-0x3efeffff window] Oct 2 19:05:38.784754 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Oct 2 19:05:38.784809 kernel: pci_bus 0000:00: root bus resource [mem 0x8000000000-0xffffffffff window] Oct 2 19:05:38.784861 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Oct 2 19:05:38.784938 kernel: pci 0000:00:00.0: [1b36:0008] type 00 class 0x060000 Oct 2 19:05:38.785023 kernel: pci 0000:00:01.0: [1af4:1005] type 00 class 0x00ff00 Oct 2 19:05:38.785087 kernel: pci 0000:00:01.0: reg 0x10: [io 0x0000-0x001f] Oct 2 19:05:38.785183 kernel: pci 0000:00:01.0: reg 0x14: [mem 0x10000000-0x10000fff] Oct 2 19:05:38.785250 kernel: pci 0000:00:01.0: reg 0x20: [mem 0x8000000000-0x8000003fff 64bit pref] Oct 2 19:05:38.785313 kernel: pci 0000:00:01.0: BAR 4: assigned [mem 0x8000000000-0x8000003fff 64bit pref] Oct 2 19:05:38.785373 kernel: pci 0000:00:01.0: BAR 1: assigned [mem 0x10000000-0x10000fff] Oct 2 19:05:38.785436 kernel: pci 0000:00:01.0: BAR 0: assigned [io 0x1000-0x101f] Oct 2 19:05:38.785491 kernel: pci_bus 0000:00: resource 4 [mem 0x10000000-0x3efeffff window] Oct 2 19:05:38.785554 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Oct 2 19:05:38.785611 kernel: pci_bus 0000:00: resource 6 [mem 0x8000000000-0xffffffffff window] Oct 2 19:05:38.785620 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Oct 2 19:05:38.785627 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Oct 2 19:05:38.785633 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Oct 2 19:05:38.785644 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Oct 2 19:05:38.785651 kernel: iommu: Default domain type: Translated Oct 2 19:05:38.785657 kernel: iommu: DMA domain TLB invalidation policy: strict mode Oct 2 19:05:38.785664 kernel: vgaarb: loaded Oct 2 19:05:38.785671 kernel: pps_core: LinuxPPS API ver. 1 registered Oct 2 19:05:38.785678 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Oct 2 19:05:38.785684 kernel: PTP clock support registered Oct 2 19:05:38.786234 kernel: Registered efivars operations Oct 2 19:05:38.786250 kernel: clocksource: Switched to clocksource arch_sys_counter Oct 2 19:05:38.786257 kernel: VFS: Disk quotas dquot_6.6.0 Oct 2 19:05:38.786269 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Oct 2 19:05:38.786275 kernel: pnp: PnP ACPI init Oct 2 19:05:38.786375 kernel: system 00:00: [mem 0x4010000000-0x401fffffff window] could not be reserved Oct 2 19:05:38.786386 kernel: pnp: PnP ACPI: found 1 devices Oct 2 19:05:38.786393 kernel: NET: Registered PF_INET protocol family Oct 2 19:05:38.786399 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Oct 2 19:05:38.786406 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Oct 2 19:05:38.786413 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Oct 2 19:05:38.786421 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Oct 2 19:05:38.786428 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Oct 2 19:05:38.786435 kernel: TCP: Hash tables configured (established 32768 bind 32768) Oct 2 19:05:38.786442 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Oct 2 19:05:38.786448 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Oct 2 19:05:38.786455 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Oct 2 19:05:38.786462 kernel: PCI: CLS 0 bytes, default 64 Oct 2 19:05:38.786468 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 7 counters available Oct 2 19:05:38.786476 kernel: kvm [1]: HYP mode not available Oct 2 19:05:38.786483 kernel: Initialise system trusted keyrings Oct 2 19:05:38.786490 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Oct 2 19:05:38.786497 kernel: Key type asymmetric registered Oct 2 19:05:38.786503 kernel: Asymmetric key parser 'x509' registered Oct 2 19:05:38.786510 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Oct 2 19:05:38.786516 kernel: io scheduler mq-deadline registered Oct 2 19:05:38.786523 kernel: io scheduler kyber registered Oct 2 19:05:38.786530 kernel: io scheduler bfq registered Oct 2 19:05:38.786545 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Oct 2 19:05:38.786556 kernel: ACPI: button: Power Button [PWRB] Oct 2 19:05:38.786563 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Oct 2 19:05:38.786638 kernel: virtio-pci 0000:00:01.0: enabling device (0005 -> 0007) Oct 2 19:05:38.786648 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Oct 2 19:05:38.786654 kernel: thunder_xcv, ver 1.0 Oct 2 19:05:38.786661 kernel: thunder_bgx, ver 1.0 Oct 2 19:05:38.786667 kernel: nicpf, ver 1.0 Oct 2 19:05:38.786674 kernel: nicvf, ver 1.0 Oct 2 19:05:38.786744 kernel: rtc-efi rtc-efi.0: registered as rtc0 Oct 2 19:05:38.786801 kernel: rtc-efi rtc-efi.0: setting system clock to 2023-10-02T19:05:38 UTC (1696273538) Oct 2 19:05:38.786810 kernel: hid: raw HID events driver (C) Jiri Kosina Oct 2 19:05:38.786817 kernel: NET: Registered PF_INET6 protocol family Oct 2 19:05:38.786824 kernel: Segment Routing with IPv6 Oct 2 19:05:38.786830 kernel: In-situ OAM (IOAM) with IPv6 Oct 2 19:05:38.786837 kernel: NET: Registered PF_PACKET protocol family Oct 2 19:05:38.786843 kernel: Key type dns_resolver registered Oct 2 19:05:38.786850 kernel: registered taskstats version 1 Oct 2 19:05:38.786858 kernel: Loading compiled-in X.509 certificates Oct 2 19:05:38.786865 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.132-flatcar: 3a2a38edc68cb70dc60ec0223a6460557b3bb28d' Oct 2 19:05:38.786871 kernel: Key type .fscrypt registered Oct 2 19:05:38.786878 kernel: Key type fscrypt-provisioning registered Oct 2 19:05:38.786884 kernel: ima: No TPM chip found, activating TPM-bypass! Oct 2 19:05:38.786891 kernel: ima: Allocated hash algorithm: sha1 Oct 2 19:05:38.786897 kernel: ima: No architecture policies found Oct 2 19:05:38.786904 kernel: Freeing unused kernel memory: 34560K Oct 2 19:05:38.786910 kernel: Run /init as init process Oct 2 19:05:38.786918 kernel: with arguments: Oct 2 19:05:38.786924 kernel: /init Oct 2 19:05:38.786931 kernel: with environment: Oct 2 19:05:38.786937 kernel: HOME=/ Oct 2 19:05:38.786944 kernel: TERM=linux Oct 2 19:05:38.786950 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Oct 2 19:05:38.786959 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Oct 2 19:05:38.786968 systemd[1]: Detected virtualization kvm. Oct 2 19:05:38.786977 systemd[1]: Detected architecture arm64. Oct 2 19:05:38.786984 systemd[1]: Running in initrd. Oct 2 19:05:38.786991 systemd[1]: No hostname configured, using default hostname. Oct 2 19:05:38.786998 systemd[1]: Hostname set to . Oct 2 19:05:38.787006 systemd[1]: Initializing machine ID from VM UUID. Oct 2 19:05:38.787013 systemd[1]: Queued start job for default target initrd.target. Oct 2 19:05:38.787020 systemd[1]: Started systemd-ask-password-console.path. Oct 2 19:05:38.787027 systemd[1]: Reached target cryptsetup.target. Oct 2 19:05:38.787043 systemd[1]: Reached target paths.target. Oct 2 19:05:38.787051 systemd[1]: Reached target slices.target. Oct 2 19:05:38.787058 systemd[1]: Reached target swap.target. Oct 2 19:05:38.787065 systemd[1]: Reached target timers.target. Oct 2 19:05:38.787073 systemd[1]: Listening on iscsid.socket. Oct 2 19:05:38.787080 systemd[1]: Listening on iscsiuio.socket. Oct 2 19:05:38.787088 systemd[1]: Listening on systemd-journald-audit.socket. Oct 2 19:05:38.787108 systemd[1]: Listening on systemd-journald-dev-log.socket. Oct 2 19:05:38.787127 systemd[1]: Listening on systemd-journald.socket. Oct 2 19:05:38.787134 systemd[1]: Listening on systemd-networkd.socket. Oct 2 19:05:38.787142 systemd[1]: Listening on systemd-udevd-control.socket. Oct 2 19:05:38.787149 systemd[1]: Listening on systemd-udevd-kernel.socket. Oct 2 19:05:38.787156 systemd[1]: Reached target sockets.target. Oct 2 19:05:38.787163 systemd[1]: Starting kmod-static-nodes.service... Oct 2 19:05:38.787170 systemd[1]: Finished network-cleanup.service. Oct 2 19:05:38.787178 systemd[1]: Starting systemd-fsck-usr.service... Oct 2 19:05:38.787187 systemd[1]: Starting systemd-journald.service... Oct 2 19:05:38.787195 systemd[1]: Starting systemd-modules-load.service... Oct 2 19:05:38.787202 systemd[1]: Starting systemd-resolved.service... Oct 2 19:05:38.787209 systemd[1]: Starting systemd-vconsole-setup.service... Oct 2 19:05:38.787216 systemd[1]: Finished kmod-static-nodes.service. Oct 2 19:05:38.787223 systemd[1]: Finished systemd-fsck-usr.service. Oct 2 19:05:38.787230 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Oct 2 19:05:38.787238 systemd[1]: Finished systemd-vconsole-setup.service. Oct 2 19:05:38.787245 systemd[1]: Starting dracut-cmdline-ask.service... Oct 2 19:05:38.787259 systemd-journald[289]: Journal started Oct 2 19:05:38.787307 systemd-journald[289]: Runtime Journal (/run/log/journal/d8393cff662f4b5dbb9a52137c67e9a0) is 6.0M, max 48.7M, 42.6M free. Oct 2 19:05:38.772862 systemd-modules-load[290]: Inserted module 'overlay' Oct 2 19:05:38.790269 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Oct 2 19:05:38.793408 systemd[1]: Started systemd-journald.service. Oct 2 19:05:38.793440 kernel: Bridge firewalling registered Oct 2 19:05:38.793451 kernel: audit: type=1130 audit(1696273538.792:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.792000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.792707 systemd-modules-load[290]: Inserted module 'br_netfilter' Oct 2 19:05:38.793024 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Oct 2 19:05:38.795000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.801119 kernel: audit: type=1130 audit(1696273538.795:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.806350 systemd[1]: Finished dracut-cmdline-ask.service. Oct 2 19:05:38.808312 kernel: SCSI subsystem initialized Oct 2 19:05:38.807000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.808362 systemd[1]: Starting dracut-cmdline.service... Oct 2 19:05:38.812612 kernel: audit: type=1130 audit(1696273538.807:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.811443 systemd-resolved[291]: Positive Trust Anchors: Oct 2 19:05:38.811450 systemd-resolved[291]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Oct 2 19:05:38.811478 systemd-resolved[291]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Oct 2 19:05:38.823250 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Oct 2 19:05:38.823270 kernel: device-mapper: uevent: version 1.0.3 Oct 2 19:05:38.823279 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Oct 2 19:05:38.816131 systemd-resolved[291]: Defaulting to hostname 'linux'. Oct 2 19:05:38.827173 kernel: audit: type=1130 audit(1696273538.823:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.823000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.827224 dracut-cmdline[308]: dracut-dracut-053 Oct 2 19:05:38.816930 systemd[1]: Started systemd-resolved.service. Oct 2 19:05:38.824074 systemd[1]: Reached target nss-lookup.target. Oct 2 19:05:38.829138 systemd-modules-load[290]: Inserted module 'dm_multipath' Oct 2 19:05:38.831000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.829976 systemd[1]: Finished systemd-modules-load.service. Oct 2 19:05:38.835914 kernel: audit: type=1130 audit(1696273538.831:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.835953 dracut-cmdline[308]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected acpi=force verity.usrhash=684fe6a2259d7fb96810743ab87aaaa03d9f185b113bd6990a64d1079e5672ca Oct 2 19:05:38.832001 systemd[1]: Starting systemd-sysctl.service... Oct 2 19:05:38.841934 systemd[1]: Finished systemd-sysctl.service. Oct 2 19:05:38.842000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.846128 kernel: audit: type=1130 audit(1696273538.842:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:38.920183 kernel: Loading iSCSI transport class v2.0-870. Oct 2 19:05:38.929651 kernel: iscsi: registered transport (tcp) Oct 2 19:05:38.945131 kernel: iscsi: registered transport (qla4xxx) Oct 2 19:05:38.945186 kernel: QLogic iSCSI HBA Driver Oct 2 19:05:39.011443 systemd[1]: Finished dracut-cmdline.service. Oct 2 19:05:39.012000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.013165 systemd[1]: Starting dracut-pre-udev.service... Oct 2 19:05:39.018982 kernel: audit: type=1130 audit(1696273539.012:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.070136 kernel: raid6: neonx8 gen() 12227 MB/s Oct 2 19:05:39.087131 kernel: raid6: neonx8 xor() 10832 MB/s Oct 2 19:05:39.105140 kernel: raid6: neonx4 gen() 14730 MB/s Oct 2 19:05:39.122126 kernel: raid6: neonx4 xor() 11181 MB/s Oct 2 19:05:39.139139 kernel: raid6: neonx2 gen() 12943 MB/s Oct 2 19:05:39.156134 kernel: raid6: neonx2 xor() 10218 MB/s Oct 2 19:05:39.173132 kernel: raid6: neonx1 gen() 10494 MB/s Oct 2 19:05:39.190127 kernel: raid6: neonx1 xor() 8800 MB/s Oct 2 19:05:39.208128 kernel: raid6: int64x8 gen() 6862 MB/s Oct 2 19:05:39.225127 kernel: raid6: int64x8 xor() 3536 MB/s Oct 2 19:05:39.242129 kernel: raid6: int64x4 gen() 7261 MB/s Oct 2 19:05:39.259126 kernel: raid6: int64x4 xor() 3828 MB/s Oct 2 19:05:39.276124 kernel: raid6: int64x2 gen() 6147 MB/s Oct 2 19:05:39.293126 kernel: raid6: int64x2 xor() 3320 MB/s Oct 2 19:05:39.310157 kernel: raid6: int64x1 gen() 5021 MB/s Oct 2 19:05:39.327470 kernel: raid6: int64x1 xor() 2622 MB/s Oct 2 19:05:39.327532 kernel: raid6: using algorithm neonx4 gen() 14730 MB/s Oct 2 19:05:39.327549 kernel: raid6: .... xor() 11181 MB/s, rmw enabled Oct 2 19:05:39.328577 kernel: raid6: using neon recovery algorithm Oct 2 19:05:39.341410 kernel: xor: measuring software checksum speed Oct 2 19:05:39.341470 kernel: 8regs : 17293 MB/sec Oct 2 19:05:39.342477 kernel: 32regs : 20755 MB/sec Oct 2 19:05:39.343337 kernel: arm64_neon : 27854 MB/sec Oct 2 19:05:39.343367 kernel: xor: using function: arm64_neon (27854 MB/sec) Oct 2 19:05:39.404131 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Oct 2 19:05:39.418864 systemd[1]: Finished dracut-pre-udev.service. Oct 2 19:05:39.423470 kernel: audit: type=1130 audit(1696273539.419:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.423499 kernel: audit: type=1334 audit(1696273539.422:10): prog-id=7 op=LOAD Oct 2 19:05:39.419000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.422000 audit: BPF prog-id=7 op=LOAD Oct 2 19:05:39.423000 audit: BPF prog-id=8 op=LOAD Oct 2 19:05:39.423843 systemd[1]: Starting systemd-udevd.service... Oct 2 19:05:39.437711 systemd-udevd[490]: Using default interface naming scheme 'v252'. Oct 2 19:05:39.441000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.441142 systemd[1]: Started systemd-udevd.service. Oct 2 19:05:39.444065 systemd[1]: Starting dracut-pre-trigger.service... Oct 2 19:05:39.459891 dracut-pre-trigger[503]: rd.md=0: removing MD RAID activation Oct 2 19:05:39.496000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.496831 systemd[1]: Finished dracut-pre-trigger.service. Oct 2 19:05:39.498548 systemd[1]: Starting systemd-udev-trigger.service... Oct 2 19:05:39.535112 systemd[1]: Finished systemd-udev-trigger.service. Oct 2 19:05:39.535000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:39.571801 kernel: virtio_blk virtio1: [vda] 9289728 512-byte logical blocks (4.76 GB/4.43 GiB) Oct 2 19:05:39.586137 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Oct 2 19:05:39.599116 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/vda6 scanned by (udev-worker) (548) Oct 2 19:05:39.604324 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Oct 2 19:05:39.605432 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Oct 2 19:05:39.609781 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Oct 2 19:05:39.613558 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Oct 2 19:05:39.617058 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Oct 2 19:05:39.618960 systemd[1]: Starting disk-uuid.service... Oct 2 19:05:39.627118 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Oct 2 19:05:40.641033 disk-uuid[563]: The operation has completed successfully. Oct 2 19:05:40.642093 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Oct 2 19:05:40.664609 systemd[1]: disk-uuid.service: Deactivated successfully. Oct 2 19:05:40.664704 systemd[1]: Finished disk-uuid.service. Oct 2 19:05:40.665000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.665000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.669301 systemd[1]: Starting verity-setup.service... Oct 2 19:05:40.690131 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Oct 2 19:05:40.719036 systemd[1]: Found device dev-mapper-usr.device. Oct 2 19:05:40.721720 systemd[1]: Mounting sysusr-usr.mount... Oct 2 19:05:40.725075 systemd[1]: Finished verity-setup.service. Oct 2 19:05:40.725000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.785126 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Oct 2 19:05:40.785827 systemd[1]: Mounted sysusr-usr.mount. Oct 2 19:05:40.786725 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Oct 2 19:05:40.787676 systemd[1]: Starting ignition-setup.service... Oct 2 19:05:40.790074 systemd[1]: Starting parse-ip-for-networkd.service... Oct 2 19:05:40.799224 kernel: BTRFS info (device vda6): using crc32c (crc32c-generic) checksum algorithm Oct 2 19:05:40.799265 kernel: BTRFS info (device vda6): using free space tree Oct 2 19:05:40.799276 kernel: BTRFS info (device vda6): has skinny extents Oct 2 19:05:40.812625 systemd[1]: mnt-oem.mount: Deactivated successfully. Oct 2 19:05:40.821767 systemd[1]: Finished ignition-setup.service. Oct 2 19:05:40.822000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.823638 systemd[1]: Starting ignition-fetch-offline.service... Oct 2 19:05:40.913575 systemd[1]: Finished parse-ip-for-networkd.service. Oct 2 19:05:40.914000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.916000 audit: BPF prog-id=9 op=LOAD Oct 2 19:05:40.917178 systemd[1]: Starting systemd-networkd.service... Oct 2 19:05:40.921612 ignition[648]: Ignition 2.14.0 Oct 2 19:05:40.921624 ignition[648]: Stage: fetch-offline Oct 2 19:05:40.921689 ignition[648]: no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:40.921699 ignition[648]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:40.921878 ignition[648]: parsed url from cmdline: "" Oct 2 19:05:40.921881 ignition[648]: no config URL provided Oct 2 19:05:40.921886 ignition[648]: reading system config file "/usr/lib/ignition/user.ign" Oct 2 19:05:40.921893 ignition[648]: no config at "/usr/lib/ignition/user.ign" Oct 2 19:05:40.921913 ignition[648]: op(1): [started] loading QEMU firmware config module Oct 2 19:05:40.921918 ignition[648]: op(1): executing: "modprobe" "qemu_fw_cfg" Oct 2 19:05:40.930943 ignition[648]: op(1): [finished] loading QEMU firmware config module Oct 2 19:05:40.943139 systemd-networkd[741]: lo: Link UP Oct 2 19:05:40.943151 systemd-networkd[741]: lo: Gained carrier Oct 2 19:05:40.943523 systemd-networkd[741]: Enumeration completed Oct 2 19:05:40.946000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.943648 systemd[1]: Started systemd-networkd.service. Oct 2 19:05:40.943724 systemd-networkd[741]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Oct 2 19:05:40.944916 systemd-networkd[741]: eth0: Link UP Oct 2 19:05:40.944920 systemd-networkd[741]: eth0: Gained carrier Oct 2 19:05:40.946360 systemd[1]: Reached target network.target. Oct 2 19:05:40.948418 systemd[1]: Starting iscsiuio.service... Oct 2 19:05:40.956368 ignition[648]: parsing config with SHA512: fac3dfe00a71c06154e1f50fbd2418a9ffedd523b3eaf8d3de725f8459b8d96cc25f0f4b41cb1d3e51f357cc2ddba684da0ff3e904a4fea506db3870552b4bd1 Oct 2 19:05:40.958191 systemd[1]: Started iscsiuio.service. Oct 2 19:05:40.959890 systemd[1]: Starting iscsid.service... Oct 2 19:05:40.958000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.964188 systemd-networkd[741]: eth0: DHCPv4 address 10.0.0.99/16, gateway 10.0.0.1 acquired from 10.0.0.1 Oct 2 19:05:40.966267 iscsid[748]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Oct 2 19:05:40.966267 iscsid[748]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Oct 2 19:05:40.966267 iscsid[748]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Oct 2 19:05:40.966267 iscsid[748]: If using hardware iscsi like qla4xxx this message can be ignored. Oct 2 19:05:40.966267 iscsid[748]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Oct 2 19:05:40.966267 iscsid[748]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Oct 2 19:05:40.973000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.967869 systemd[1]: Started iscsid.service. Oct 2 19:05:40.974700 systemd[1]: Starting dracut-initqueue.service... Oct 2 19:05:40.987673 systemd[1]: Finished dracut-initqueue.service. Oct 2 19:05:40.988000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:40.988680 systemd[1]: Reached target remote-fs-pre.target. Oct 2 19:05:40.989945 systemd[1]: Reached target remote-cryptsetup.target. Oct 2 19:05:40.991441 systemd[1]: Reached target remote-fs.target. Oct 2 19:05:40.993648 systemd[1]: Starting dracut-pre-mount.service... Oct 2 19:05:41.002945 systemd[1]: Finished dracut-pre-mount.service. Oct 2 19:05:41.003000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.004351 ignition[648]: fetch-offline: fetch-offline passed Oct 2 19:05:41.006000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.003922 unknown[648]: fetched base config from "system" Oct 2 19:05:41.004408 ignition[648]: Ignition finished successfully Oct 2 19:05:41.003929 unknown[648]: fetched user config from "qemu" Oct 2 19:05:41.005748 systemd-resolved[291]: Detected conflict on linux IN A 10.0.0.99 Oct 2 19:05:41.005758 systemd-resolved[291]: Hostname conflict, changing published hostname from 'linux' to 'linux9'. Oct 2 19:05:41.006027 systemd[1]: Finished ignition-fetch-offline.service. Oct 2 19:05:41.007129 systemd[1]: ignition-fetch.service was skipped because of an unmet condition check (ConditionPathExists=!/run/ignition.json). Oct 2 19:05:41.007942 systemd[1]: Starting ignition-kargs.service... Oct 2 19:05:41.019118 ignition[762]: Ignition 2.14.0 Oct 2 19:05:41.019129 ignition[762]: Stage: kargs Oct 2 19:05:41.019238 ignition[762]: no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:41.019247 ignition[762]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:41.020121 ignition[762]: kargs: kargs passed Oct 2 19:05:41.020174 ignition[762]: Ignition finished successfully Oct 2 19:05:41.024203 systemd[1]: Finished ignition-kargs.service. Oct 2 19:05:41.024000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.025956 systemd[1]: Starting ignition-disks.service... Oct 2 19:05:41.034442 ignition[768]: Ignition 2.14.0 Oct 2 19:05:41.034453 ignition[768]: Stage: disks Oct 2 19:05:41.034572 ignition[768]: no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:41.036618 systemd[1]: Finished ignition-disks.service. Oct 2 19:05:41.037000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.034582 ignition[768]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:41.038230 systemd[1]: Reached target initrd-root-device.target. Oct 2 19:05:41.035404 ignition[768]: disks: disks passed Oct 2 19:05:41.039548 systemd[1]: Reached target local-fs-pre.target. Oct 2 19:05:41.035451 ignition[768]: Ignition finished successfully Oct 2 19:05:41.041191 systemd[1]: Reached target local-fs.target. Oct 2 19:05:41.042571 systemd[1]: Reached target sysinit.target. Oct 2 19:05:41.043768 systemd[1]: Reached target basic.target. Oct 2 19:05:41.046189 systemd[1]: Starting systemd-fsck-root.service... Oct 2 19:05:41.058215 systemd-fsck[776]: ROOT: clean, 603/553520 files, 56011/553472 blocks Oct 2 19:05:41.061380 systemd[1]: Finished systemd-fsck-root.service. Oct 2 19:05:41.062000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.063577 systemd[1]: Mounting sysroot.mount... Oct 2 19:05:41.071113 kernel: EXT4-fs (vda9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Oct 2 19:05:41.071423 systemd[1]: Mounted sysroot.mount. Oct 2 19:05:41.072232 systemd[1]: Reached target initrd-root-fs.target. Oct 2 19:05:41.074594 systemd[1]: Mounting sysroot-usr.mount... Oct 2 19:05:41.075560 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Oct 2 19:05:41.075598 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Oct 2 19:05:41.075622 systemd[1]: Reached target ignition-diskful.target. Oct 2 19:05:41.078080 systemd[1]: Mounted sysroot-usr.mount. Oct 2 19:05:41.079594 systemd[1]: Starting initrd-setup-root.service... Oct 2 19:05:41.085194 initrd-setup-root[786]: cut: /sysroot/etc/passwd: No such file or directory Oct 2 19:05:41.090482 initrd-setup-root[794]: cut: /sysroot/etc/group: No such file or directory Oct 2 19:05:41.095286 initrd-setup-root[802]: cut: /sysroot/etc/shadow: No such file or directory Oct 2 19:05:41.099881 initrd-setup-root[810]: cut: /sysroot/etc/gshadow: No such file or directory Oct 2 19:05:41.129424 systemd[1]: Finished initrd-setup-root.service. Oct 2 19:05:41.130000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.131117 systemd[1]: Starting ignition-mount.service... Oct 2 19:05:41.132513 systemd[1]: Starting sysroot-boot.service... Oct 2 19:05:41.138094 bash[827]: umount: /sysroot/usr/share/oem: not mounted. Oct 2 19:05:41.149216 ignition[829]: INFO : Ignition 2.14.0 Oct 2 19:05:41.150315 ignition[829]: INFO : Stage: mount Oct 2 19:05:41.151226 systemd[1]: Finished sysroot-boot.service. Oct 2 19:05:41.151000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.152835 ignition[829]: INFO : no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:41.153918 ignition[829]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:41.156448 ignition[829]: INFO : mount: mount passed Oct 2 19:05:41.157323 ignition[829]: INFO : Ignition finished successfully Oct 2 19:05:41.157892 systemd[1]: Finished ignition-mount.service. Oct 2 19:05:41.158000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:41.733598 systemd[1]: Mounting sysroot-usr-share-oem.mount... Oct 2 19:05:41.741685 kernel: BTRFS: device label OEM devid 1 transid 13 /dev/vda6 scanned by mount (837) Oct 2 19:05:41.741717 kernel: BTRFS info (device vda6): using crc32c (crc32c-generic) checksum algorithm Oct 2 19:05:41.742453 kernel: BTRFS info (device vda6): using free space tree Oct 2 19:05:41.742471 kernel: BTRFS info (device vda6): has skinny extents Oct 2 19:05:41.745905 systemd[1]: Mounted sysroot-usr-share-oem.mount. Oct 2 19:05:41.747558 systemd[1]: Starting ignition-files.service... Oct 2 19:05:41.763585 ignition[857]: INFO : Ignition 2.14.0 Oct 2 19:05:41.763585 ignition[857]: INFO : Stage: files Oct 2 19:05:41.765430 ignition[857]: INFO : no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:41.765430 ignition[857]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:41.765430 ignition[857]: DEBUG : files: compiled without relabeling support, skipping Oct 2 19:05:41.769131 ignition[857]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Oct 2 19:05:41.769131 ignition[857]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Oct 2 19:05:41.776748 ignition[857]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Oct 2 19:05:41.778196 ignition[857]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Oct 2 19:05:41.779564 ignition[857]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Oct 2 19:05:41.779393 unknown[857]: wrote ssh authorized keys file for user: core Oct 2 19:05:41.782213 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Oct 2 19:05:41.782213 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Oct 2 19:05:42.107732 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET result: OK Oct 2 19:05:42.174233 systemd-networkd[741]: eth0: Gained IPv6LL Oct 2 19:05:42.349374 ignition[857]: DEBUG : files: createFilesystemsFiles: createFiles: op(3): file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Oct 2 19:05:42.352231 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Oct 2 19:05:42.352231 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Oct 2 19:05:42.352231 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Oct 2 19:05:42.496607 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET result: OK Oct 2 19:05:42.640465 ignition[857]: DEBUG : files: createFilesystemsFiles: createFiles: op(4): file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Oct 2 19:05:42.640465 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Oct 2 19:05:42.645339 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/opt/bin/kubeadm" Oct 2 19:05:42.645339 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET https://storage.googleapis.com/kubernetes-release/release/v1.28.1/bin/linux/arm64/kubeadm: attempt #1 Oct 2 19:05:42.684393 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET result: OK Oct 2 19:05:43.066015 ignition[857]: DEBUG : files: createFilesystemsFiles: createFiles: op(5): file matches expected sum of: 5a08b81f9cc82d3cce21130856ca63b8dafca9149d9775dd25b376eb0f18209aa0e4a47c0a6d7e6fb1316aacd5d59dec770f26c09120c866949d70bc415518b3 Oct 2 19:05:43.068957 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/opt/bin/kubeadm" Oct 2 19:05:43.068957 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubelet" Oct 2 19:05:43.068957 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET https://storage.googleapis.com/kubernetes-release/release/v1.28.1/bin/linux/arm64/kubelet: attempt #1 Oct 2 19:05:43.126932 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET result: OK Oct 2 19:05:43.914368 ignition[857]: DEBUG : files: createFilesystemsFiles: createFiles: op(6): file matches expected sum of: 5a898ef543a6482895101ea58e33602e3c0a7682d322aaf08ac3dc8a5a3c8da8f09600d577024549288f8cebb1a86f9c79927796b69a3d8fe989ca8f12b147d6 Oct 2 19:05:43.917392 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubelet" Oct 2 19:05:43.917392 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/home/core/install.sh" Oct 2 19:05:43.917392 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/home/core/install.sh" Oct 2 19:05:43.917392 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/etc/docker/daemon.json" Oct 2 19:05:43.917392 ignition[857]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/etc/docker/daemon.json" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(9): [started] processing unit "coreos-metadata.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(9): op(a): [started] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(9): op(a): [finished] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(9): [finished] processing unit "coreos-metadata.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(b): [started] processing unit "prepare-cni-plugins.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(b): op(c): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(b): op(c): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(b): [finished] processing unit "prepare-cni-plugins.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(d): [started] processing unit "prepare-critools.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(d): op(e): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(d): op(e): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(d): [finished] processing unit "prepare-critools.service" Oct 2 19:05:43.917392 ignition[857]: INFO : files: op(f): [started] setting preset to disabled for "coreos-metadata.service" Oct 2 19:05:43.951505 ignition[857]: INFO : files: op(f): op(10): [started] removing enablement symlink(s) for "coreos-metadata.service" Oct 2 19:05:43.978962 ignition[857]: INFO : files: op(f): op(10): [finished] removing enablement symlink(s) for "coreos-metadata.service" Oct 2 19:05:43.994531 kernel: kauditd_printk_skb: 22 callbacks suppressed Oct 2 19:05:43.994553 kernel: audit: type=1130 audit(1696273543.985:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.985000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.984816 systemd[1]: Finished ignition-files.service. Oct 2 19:05:43.995823 ignition[857]: INFO : files: op(f): [finished] setting preset to disabled for "coreos-metadata.service" Oct 2 19:05:43.995823 ignition[857]: INFO : files: op(11): [started] setting preset to enabled for "prepare-cni-plugins.service" Oct 2 19:05:43.995823 ignition[857]: INFO : files: op(11): [finished] setting preset to enabled for "prepare-cni-plugins.service" Oct 2 19:05:43.995823 ignition[857]: INFO : files: op(12): [started] setting preset to enabled for "prepare-critools.service" Oct 2 19:05:43.995823 ignition[857]: INFO : files: op(12): [finished] setting preset to enabled for "prepare-critools.service" Oct 2 19:05:43.995823 ignition[857]: INFO : files: createResultFile: createFiles: op(13): [started] writing file "/sysroot/etc/.ignition-result.json" Oct 2 19:05:43.995823 ignition[857]: INFO : files: createResultFile: createFiles: op(13): [finished] writing file "/sysroot/etc/.ignition-result.json" Oct 2 19:05:43.995823 ignition[857]: INFO : files: files passed Oct 2 19:05:43.995823 ignition[857]: INFO : Ignition finished successfully Oct 2 19:05:44.020879 kernel: audit: type=1130 audit(1696273543.999:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.020905 kernel: audit: type=1131 audit(1696273543.999:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.020916 kernel: audit: type=1130 audit(1696273544.006:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.999000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.999000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.006000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.986680 systemd[1]: Starting initrd-setup-root-after-ignition.service... Oct 2 19:05:43.987583 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Oct 2 19:05:44.024469 initrd-setup-root-after-ignition[882]: grep: /sysroot/usr/share/oem/oem-release: No such file or directory Oct 2 19:05:43.988256 systemd[1]: Starting ignition-quench.service... Oct 2 19:05:44.027255 initrd-setup-root-after-ignition[884]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Oct 2 19:05:43.997746 systemd[1]: ignition-quench.service: Deactivated successfully. Oct 2 19:05:44.029000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.029000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:43.997850 systemd[1]: Finished ignition-quench.service. Oct 2 19:05:44.040064 kernel: audit: type=1130 audit(1696273544.029:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.040095 kernel: audit: type=1131 audit(1696273544.029:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.003573 systemd[1]: Finished initrd-setup-root-after-ignition.service. Oct 2 19:05:44.007022 systemd[1]: Reached target ignition-complete.target. Oct 2 19:05:44.011339 systemd[1]: Starting initrd-parse-etc.service... Oct 2 19:05:44.027808 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Oct 2 19:05:44.027926 systemd[1]: Finished initrd-parse-etc.service. Oct 2 19:05:44.029825 systemd[1]: Reached target initrd-fs.target. Oct 2 19:05:44.036743 systemd[1]: Reached target initrd.target. Oct 2 19:05:44.037628 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Oct 2 19:05:44.038496 systemd[1]: Starting dracut-pre-pivot.service... Oct 2 19:05:44.052208 systemd[1]: Finished dracut-pre-pivot.service. Oct 2 19:05:44.052000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.054021 systemd[1]: Starting initrd-cleanup.service... Oct 2 19:05:44.057142 kernel: audit: type=1130 audit(1696273544.052:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.063777 systemd[1]: Stopped target network.target. Oct 2 19:05:44.064733 systemd[1]: Stopped target nss-lookup.target. Oct 2 19:05:44.066196 systemd[1]: Stopped target remote-cryptsetup.target. Oct 2 19:05:44.067799 systemd[1]: Stopped target timers.target. Oct 2 19:05:44.069258 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Oct 2 19:05:44.070000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.069384 systemd[1]: Stopped dracut-pre-pivot.service. Oct 2 19:05:44.075279 kernel: audit: type=1131 audit(1696273544.070:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.070731 systemd[1]: Stopped target initrd.target. Oct 2 19:05:44.074694 systemd[1]: Stopped target basic.target. Oct 2 19:05:44.076061 systemd[1]: Stopped target ignition-complete.target. Oct 2 19:05:44.077547 systemd[1]: Stopped target ignition-diskful.target. Oct 2 19:05:44.078940 systemd[1]: Stopped target initrd-root-device.target. Oct 2 19:05:44.080599 systemd[1]: Stopped target remote-fs.target. Oct 2 19:05:44.082312 systemd[1]: Stopped target remote-fs-pre.target. Oct 2 19:05:44.083858 systemd[1]: Stopped target sysinit.target. Oct 2 19:05:44.085388 systemd[1]: Stopped target local-fs.target. Oct 2 19:05:44.086847 systemd[1]: Stopped target local-fs-pre.target. Oct 2 19:05:44.088479 systemd[1]: Stopped target swap.target. Oct 2 19:05:44.091000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.090002 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Oct 2 19:05:44.096666 kernel: audit: type=1131 audit(1696273544.091:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.090141 systemd[1]: Stopped dracut-pre-mount.service. Oct 2 19:05:44.097000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.091743 systemd[1]: Stopped target cryptsetup.target. Oct 2 19:05:44.102196 kernel: audit: type=1131 audit(1696273544.097:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.101000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.095829 systemd[1]: dracut-initqueue.service: Deactivated successfully. Oct 2 19:05:44.095941 systemd[1]: Stopped dracut-initqueue.service. Oct 2 19:05:44.097763 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Oct 2 19:05:44.097958 systemd[1]: Stopped ignition-fetch-offline.service. Oct 2 19:05:44.101620 systemd[1]: Stopped target paths.target. Oct 2 19:05:44.102883 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Oct 2 19:05:44.104238 systemd[1]: Stopped systemd-ask-password-console.path. Oct 2 19:05:44.105417 systemd[1]: Stopped target slices.target. Oct 2 19:05:44.112000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.107074 systemd[1]: Stopped target sockets.target. Oct 2 19:05:44.114000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.108457 systemd[1]: iscsid.socket: Deactivated successfully. Oct 2 19:05:44.108539 systemd[1]: Closed iscsid.socket. Oct 2 19:05:44.109650 systemd[1]: iscsiuio.socket: Deactivated successfully. Oct 2 19:05:44.117000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.109718 systemd[1]: Closed iscsiuio.socket. Oct 2 19:05:44.111158 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Oct 2 19:05:44.111265 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Oct 2 19:05:44.113082 systemd[1]: ignition-files.service: Deactivated successfully. Oct 2 19:05:44.113196 systemd[1]: Stopped ignition-files.service. Oct 2 19:05:44.115570 systemd[1]: Stopping ignition-mount.service... Oct 2 19:05:44.125000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.116637 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Oct 2 19:05:44.126000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.129448 ignition[897]: INFO : Ignition 2.14.0 Oct 2 19:05:44.129448 ignition[897]: INFO : Stage: umount Oct 2 19:05:44.129448 ignition[897]: INFO : no configs at "/usr/lib/ignition/base.d" Oct 2 19:05:44.129448 ignition[897]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Oct 2 19:05:44.129448 ignition[897]: INFO : umount: umount passed Oct 2 19:05:44.129448 ignition[897]: INFO : Ignition finished successfully Oct 2 19:05:44.131000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.134000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.137000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.137000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.139000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.116781 systemd[1]: Stopped kmod-static-nodes.service. Oct 2 19:05:44.119032 systemd[1]: Stopping sysroot-boot.service... Oct 2 19:05:44.143000 audit: BPF prog-id=6 op=UNLOAD Oct 2 19:05:44.143000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.120651 systemd[1]: Stopping systemd-networkd.service... Oct 2 19:05:44.145000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.122377 systemd[1]: Stopping systemd-resolved.service... Oct 2 19:05:44.147000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.123785 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Oct 2 19:05:44.123917 systemd[1]: Stopped systemd-udev-trigger.service. Oct 2 19:05:44.125603 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Oct 2 19:05:44.152000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.125696 systemd[1]: Stopped dracut-pre-trigger.service. Oct 2 19:05:44.128623 systemd-networkd[741]: eth0: DHCPv6 lease lost Oct 2 19:05:44.155000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.156000 audit: BPF prog-id=9 op=UNLOAD Oct 2 19:05:44.156000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.128973 systemd[1]: systemd-resolved.service: Deactivated successfully. Oct 2 19:05:44.129065 systemd[1]: Stopped systemd-resolved.service. Oct 2 19:05:44.132924 systemd[1]: sysroot-boot.mount: Deactivated successfully. Oct 2 19:05:44.133359 systemd[1]: systemd-networkd.service: Deactivated successfully. Oct 2 19:05:44.133450 systemd[1]: Stopped systemd-networkd.service. Oct 2 19:05:44.135415 systemd[1]: initrd-cleanup.service: Deactivated successfully. Oct 2 19:05:44.135496 systemd[1]: Finished initrd-cleanup.service. Oct 2 19:05:44.138436 systemd[1]: ignition-mount.service: Deactivated successfully. Oct 2 19:05:44.138528 systemd[1]: Stopped ignition-mount.service. Oct 2 19:05:44.140344 systemd[1]: systemd-networkd.socket: Deactivated successfully. Oct 2 19:05:44.140375 systemd[1]: Closed systemd-networkd.socket. Oct 2 19:05:44.169000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.171000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.142615 systemd[1]: ignition-disks.service: Deactivated successfully. Oct 2 19:05:44.177000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.142660 systemd[1]: Stopped ignition-disks.service. Oct 2 19:05:44.179000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.144033 systemd[1]: ignition-kargs.service: Deactivated successfully. Oct 2 19:05:44.181000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.144072 systemd[1]: Stopped ignition-kargs.service. Oct 2 19:05:44.146196 systemd[1]: ignition-setup.service: Deactivated successfully. Oct 2 19:05:44.184000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.146233 systemd[1]: Stopped ignition-setup.service. Oct 2 19:05:44.148606 systemd[1]: Stopping network-cleanup.service... Oct 2 19:05:44.151124 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Oct 2 19:05:44.151188 systemd[1]: Stopped parse-ip-for-networkd.service. Oct 2 19:05:44.152896 systemd[1]: systemd-sysctl.service: Deactivated successfully. Oct 2 19:05:44.190000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.190000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.152939 systemd[1]: Stopped systemd-sysctl.service. Oct 2 19:05:44.156070 systemd[1]: systemd-modules-load.service: Deactivated successfully. Oct 2 19:05:44.156165 systemd[1]: Stopped systemd-modules-load.service. Oct 2 19:05:44.157199 systemd[1]: Stopping systemd-udevd.service... Oct 2 19:05:44.163529 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Oct 2 19:05:44.168480 systemd[1]: systemd-udevd.service: Deactivated successfully. Oct 2 19:05:44.168635 systemd[1]: Stopped systemd-udevd.service. Oct 2 19:05:44.170309 systemd[1]: network-cleanup.service: Deactivated successfully. Oct 2 19:05:44.170395 systemd[1]: Stopped network-cleanup.service. Oct 2 19:05:44.172014 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Oct 2 19:05:44.172051 systemd[1]: Closed systemd-udevd-control.socket. Oct 2 19:05:44.173455 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Oct 2 19:05:44.173487 systemd[1]: Closed systemd-udevd-kernel.socket. Oct 2 19:05:44.175588 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Oct 2 19:05:44.175635 systemd[1]: Stopped dracut-pre-udev.service. Oct 2 19:05:44.177673 systemd[1]: dracut-cmdline.service: Deactivated successfully. Oct 2 19:05:44.177716 systemd[1]: Stopped dracut-cmdline.service. Oct 2 19:05:44.179838 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Oct 2 19:05:44.179878 systemd[1]: Stopped dracut-cmdline-ask.service. Oct 2 19:05:44.182140 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Oct 2 19:05:44.182982 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Oct 2 19:05:44.183036 systemd[1]: Stopped systemd-vconsole-setup.service. Oct 2 19:05:44.189298 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Oct 2 19:05:44.189398 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Oct 2 19:05:44.217981 systemd[1]: sysroot-boot.service: Deactivated successfully. Oct 2 19:05:44.218094 systemd[1]: Stopped sysroot-boot.service. Oct 2 19:05:44.219000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.219829 systemd[1]: Reached target initrd-switch-root.target. Oct 2 19:05:44.221073 systemd[1]: initrd-setup-root.service: Deactivated successfully. Oct 2 19:05:44.222000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.221140 systemd[1]: Stopped initrd-setup-root.service. Oct 2 19:05:44.223346 systemd[1]: Starting initrd-switch-root.service... Oct 2 19:05:44.230615 systemd[1]: Switching root. Oct 2 19:05:44.246365 iscsid[748]: iscsid shutting down. Oct 2 19:05:44.247077 systemd-journald[289]: Journal stopped Oct 2 19:05:46.468442 systemd-journald[289]: Received SIGTERM from PID 1 (systemd). Oct 2 19:05:46.468552 kernel: SELinux: Class mctp_socket not defined in policy. Oct 2 19:05:46.468565 kernel: SELinux: Class anon_inode not defined in policy. Oct 2 19:05:46.468588 kernel: SELinux: the above unknown classes and permissions will be allowed Oct 2 19:05:46.468598 kernel: SELinux: policy capability network_peer_controls=1 Oct 2 19:05:46.468608 kernel: SELinux: policy capability open_perms=1 Oct 2 19:05:46.468617 kernel: SELinux: policy capability extended_socket_class=1 Oct 2 19:05:46.468626 kernel: SELinux: policy capability always_check_network=0 Oct 2 19:05:46.468636 kernel: SELinux: policy capability cgroup_seclabel=1 Oct 2 19:05:46.468645 kernel: SELinux: policy capability nnp_nosuid_transition=1 Oct 2 19:05:46.468654 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Oct 2 19:05:46.468673 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Oct 2 19:05:46.468694 systemd[1]: Successfully loaded SELinux policy in 34.885ms. Oct 2 19:05:46.468715 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 7.271ms. Oct 2 19:05:46.468747 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Oct 2 19:05:46.468759 systemd[1]: Detected virtualization kvm. Oct 2 19:05:46.468769 systemd[1]: Detected architecture arm64. Oct 2 19:05:46.468780 systemd[1]: Detected first boot. Oct 2 19:05:46.468790 systemd[1]: Initializing machine ID from VM UUID. Oct 2 19:05:46.468799 systemd[1]: Populated /etc with preset unit settings. Oct 2 19:05:46.468812 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Oct 2 19:05:46.468825 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Oct 2 19:05:46.468839 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Oct 2 19:05:46.468850 systemd[1]: iscsiuio.service: Deactivated successfully. Oct 2 19:05:46.468861 systemd[1]: Stopped iscsiuio.service. Oct 2 19:05:46.468872 systemd[1]: iscsid.service: Deactivated successfully. Oct 2 19:05:46.468882 systemd[1]: Stopped iscsid.service. Oct 2 19:05:46.468893 systemd[1]: initrd-switch-root.service: Deactivated successfully. Oct 2 19:05:46.468903 systemd[1]: Stopped initrd-switch-root.service. Oct 2 19:05:46.468914 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Oct 2 19:05:46.468924 systemd[1]: Created slice system-addon\x2dconfig.slice. Oct 2 19:05:46.468934 systemd[1]: Created slice system-addon\x2drun.slice. Oct 2 19:05:46.468946 systemd[1]: Created slice system-getty.slice. Oct 2 19:05:46.468956 systemd[1]: Created slice system-modprobe.slice. Oct 2 19:05:46.468967 systemd[1]: Created slice system-serial\x2dgetty.slice. Oct 2 19:05:46.468977 systemd[1]: Created slice system-system\x2dcloudinit.slice. Oct 2 19:05:46.468988 systemd[1]: Created slice system-systemd\x2dfsck.slice. Oct 2 19:05:46.468998 systemd[1]: Created slice user.slice. Oct 2 19:05:46.469009 systemd[1]: Started systemd-ask-password-console.path. Oct 2 19:05:46.469018 systemd[1]: Started systemd-ask-password-wall.path. Oct 2 19:05:46.469029 systemd[1]: Set up automount boot.automount. Oct 2 19:05:46.469040 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Oct 2 19:05:46.469050 systemd[1]: Stopped target initrd-switch-root.target. Oct 2 19:05:46.469061 systemd[1]: Stopped target initrd-fs.target. Oct 2 19:05:46.469071 systemd[1]: Stopped target initrd-root-fs.target. Oct 2 19:05:46.469081 systemd[1]: Reached target integritysetup.target. Oct 2 19:05:46.469091 systemd[1]: Reached target remote-cryptsetup.target. Oct 2 19:05:46.469117 systemd[1]: Reached target remote-fs.target. Oct 2 19:05:46.469129 systemd[1]: Reached target slices.target. Oct 2 19:05:46.469140 systemd[1]: Reached target swap.target. Oct 2 19:05:46.469150 systemd[1]: Reached target torcx.target. Oct 2 19:05:46.469160 systemd[1]: Reached target veritysetup.target. Oct 2 19:05:46.469171 systemd[1]: Listening on systemd-coredump.socket. Oct 2 19:05:46.469181 systemd[1]: Listening on systemd-initctl.socket. Oct 2 19:05:46.469191 systemd[1]: Listening on systemd-networkd.socket. Oct 2 19:05:46.469202 systemd[1]: Listening on systemd-udevd-control.socket. Oct 2 19:05:46.469212 systemd[1]: Listening on systemd-udevd-kernel.socket. Oct 2 19:05:46.469222 systemd[1]: Listening on systemd-userdbd.socket. Oct 2 19:05:46.469233 systemd[1]: Mounting dev-hugepages.mount... Oct 2 19:05:46.469243 systemd[1]: Mounting dev-mqueue.mount... Oct 2 19:05:46.469254 systemd[1]: Mounting media.mount... Oct 2 19:05:46.469263 systemd[1]: Mounting sys-kernel-debug.mount... Oct 2 19:05:46.469273 systemd[1]: Mounting sys-kernel-tracing.mount... Oct 2 19:05:46.469284 systemd[1]: Mounting tmp.mount... Oct 2 19:05:46.469294 systemd[1]: Starting flatcar-tmpfiles.service... Oct 2 19:05:46.469304 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Oct 2 19:05:46.469315 systemd[1]: Starting kmod-static-nodes.service... Oct 2 19:05:46.469326 systemd[1]: Starting modprobe@configfs.service... Oct 2 19:05:46.469337 systemd[1]: Starting modprobe@dm_mod.service... Oct 2 19:05:46.469347 systemd[1]: Starting modprobe@drm.service... Oct 2 19:05:46.469358 systemd[1]: Starting modprobe@efi_pstore.service... Oct 2 19:05:46.469369 systemd[1]: Starting modprobe@fuse.service... Oct 2 19:05:46.469379 systemd[1]: Starting modprobe@loop.service... Oct 2 19:05:46.469389 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Oct 2 19:05:46.469400 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Oct 2 19:05:46.469411 systemd[1]: Stopped systemd-fsck-root.service. Oct 2 19:05:46.469423 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Oct 2 19:05:46.469434 systemd[1]: Stopped systemd-fsck-usr.service. Oct 2 19:05:46.469444 systemd[1]: Stopped systemd-journald.service. Oct 2 19:05:46.469454 systemd[1]: Starting systemd-journald.service... Oct 2 19:05:46.469464 kernel: fuse: init (API version 7.34) Oct 2 19:05:46.469474 systemd[1]: Starting systemd-modules-load.service... Oct 2 19:05:46.469484 kernel: loop: module loaded Oct 2 19:05:46.469494 systemd[1]: Starting systemd-network-generator.service... Oct 2 19:05:46.469516 systemd[1]: Starting systemd-remount-fs.service... Oct 2 19:05:46.469528 systemd[1]: Starting systemd-udev-trigger.service... Oct 2 19:05:46.469539 systemd[1]: verity-setup.service: Deactivated successfully. Oct 2 19:05:46.469550 systemd[1]: Stopped verity-setup.service. Oct 2 19:05:46.469560 systemd[1]: Mounted dev-hugepages.mount. Oct 2 19:05:46.469570 systemd[1]: Mounted dev-mqueue.mount. Oct 2 19:05:46.469580 systemd[1]: Mounted media.mount. Oct 2 19:05:46.469592 systemd[1]: Mounted sys-kernel-debug.mount. Oct 2 19:05:46.469602 systemd[1]: Mounted sys-kernel-tracing.mount. Oct 2 19:05:46.469612 systemd[1]: Mounted tmp.mount. Oct 2 19:05:46.469623 systemd[1]: Finished kmod-static-nodes.service. Oct 2 19:05:46.469635 systemd[1]: modprobe@configfs.service: Deactivated successfully. Oct 2 19:05:46.469646 systemd[1]: Finished modprobe@configfs.service. Oct 2 19:05:46.469659 systemd-journald[988]: Journal started Oct 2 19:05:46.469712 systemd-journald[988]: Runtime Journal (/run/log/journal/d8393cff662f4b5dbb9a52137c67e9a0) is 6.0M, max 48.7M, 42.6M free. Oct 2 19:05:44.323000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Oct 2 19:05:44.513000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Oct 2 19:05:44.513000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Oct 2 19:05:44.513000 audit: BPF prog-id=10 op=LOAD Oct 2 19:05:44.513000 audit: BPF prog-id=10 op=UNLOAD Oct 2 19:05:44.513000 audit: BPF prog-id=11 op=LOAD Oct 2 19:05:44.513000 audit: BPF prog-id=11 op=UNLOAD Oct 2 19:05:46.325000 audit: BPF prog-id=12 op=LOAD Oct 2 19:05:46.325000 audit: BPF prog-id=3 op=UNLOAD Oct 2 19:05:46.325000 audit: BPF prog-id=13 op=LOAD Oct 2 19:05:46.325000 audit: BPF prog-id=14 op=LOAD Oct 2 19:05:46.325000 audit: BPF prog-id=4 op=UNLOAD Oct 2 19:05:46.325000 audit: BPF prog-id=5 op=UNLOAD Oct 2 19:05:46.326000 audit: BPF prog-id=15 op=LOAD Oct 2 19:05:46.326000 audit: BPF prog-id=12 op=UNLOAD Oct 2 19:05:46.326000 audit: BPF prog-id=16 op=LOAD Oct 2 19:05:46.326000 audit: BPF prog-id=17 op=LOAD Oct 2 19:05:46.326000 audit: BPF prog-id=13 op=UNLOAD Oct 2 19:05:46.326000 audit: BPF prog-id=14 op=UNLOAD Oct 2 19:05:46.327000 audit: BPF prog-id=18 op=LOAD Oct 2 19:05:46.327000 audit: BPF prog-id=15 op=UNLOAD Oct 2 19:05:46.327000 audit: BPF prog-id=19 op=LOAD Oct 2 19:05:46.327000 audit: BPF prog-id=20 op=LOAD Oct 2 19:05:46.327000 audit: BPF prog-id=16 op=UNLOAD Oct 2 19:05:46.327000 audit: BPF prog-id=17 op=UNLOAD Oct 2 19:05:46.328000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.330000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.333000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.335000 audit: BPF prog-id=18 op=UNLOAD Oct 2 19:05:46.336000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.336000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.427000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.430000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.431000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.432000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.433000 audit: BPF prog-id=21 op=LOAD Oct 2 19:05:46.433000 audit: BPF prog-id=22 op=LOAD Oct 2 19:05:46.433000 audit: BPF prog-id=23 op=LOAD Oct 2 19:05:46.433000 audit: BPF prog-id=19 op=UNLOAD Oct 2 19:05:46.433000 audit: BPF prog-id=20 op=UNLOAD Oct 2 19:05:46.454000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.467000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.467000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Oct 2 19:05:46.467000 audit[988]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=6 a1=fffff47487b0 a2=4000 a3=1 items=0 ppid=1 pid=988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:46.467000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Oct 2 19:05:46.470000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.470000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.323715 systemd[1]: Queued start job for default target multi-user.target. Oct 2 19:05:44.575867 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.0 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.0 /var/lib/torcx/store]" Oct 2 19:05:46.323727 systemd[1]: Unnecessary job was removed for dev-vda6.device. Oct 2 19:05:44.580156 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Oct 2 19:05:46.327937 systemd[1]: systemd-journald.service: Deactivated successfully. Oct 2 19:05:44.580179 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Oct 2 19:05:44.580214 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Oct 2 19:05:44.580224 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="skipped missing lower profile" missing profile=oem Oct 2 19:05:44.580263 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Oct 2 19:05:44.580276 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Oct 2 19:05:44.580475 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Oct 2 19:05:44.580508 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Oct 2 19:05:44.580535 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Oct 2 19:05:44.581926 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Oct 2 19:05:44.582164 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Oct 2 19:05:44.582191 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.0: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.0 Oct 2 19:05:44.582205 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Oct 2 19:05:46.471000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:44.582224 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.0: no such file or directory" path=/var/lib/torcx/store/3510.3.0 Oct 2 19:05:46.472118 systemd[1]: Started systemd-journald.service. Oct 2 19:05:44.582236 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:44Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Oct 2 19:05:46.060628 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Oct 2 19:05:46.060902 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Oct 2 19:05:46.060998 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Oct 2 19:05:46.061173 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Oct 2 19:05:46.061221 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Oct 2 19:05:46.061276 /usr/lib/systemd/system-generators/torcx-generator[930]: time="2023-10-02T19:05:46Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Oct 2 19:05:46.472481 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Oct 2 19:05:46.472654 systemd[1]: Finished modprobe@dm_mod.service. Oct 2 19:05:46.473000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.473000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.473900 systemd[1]: modprobe@drm.service: Deactivated successfully. Oct 2 19:05:46.474048 systemd[1]: Finished modprobe@drm.service. Oct 2 19:05:46.474000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.474000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.475134 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Oct 2 19:05:46.476277 systemd[1]: Finished modprobe@efi_pstore.service. Oct 2 19:05:46.476000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.477000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.477367 systemd[1]: modprobe@fuse.service: Deactivated successfully. Oct 2 19:05:46.477535 systemd[1]: Finished modprobe@fuse.service. Oct 2 19:05:46.478000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.478000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.478651 systemd[1]: modprobe@loop.service: Deactivated successfully. Oct 2 19:05:46.479876 systemd[1]: Finished modprobe@loop.service. Oct 2 19:05:46.480000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.480000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.481034 systemd[1]: Finished systemd-modules-load.service. Oct 2 19:05:46.481000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.482321 systemd[1]: Finished systemd-network-generator.service. Oct 2 19:05:46.483000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.483596 systemd[1]: Finished systemd-remount-fs.service. Oct 2 19:05:46.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.484885 systemd[1]: Reached target network-pre.target. Oct 2 19:05:46.486964 systemd[1]: Mounting sys-fs-fuse-connections.mount... Oct 2 19:05:46.488867 systemd[1]: Mounting sys-kernel-config.mount... Oct 2 19:05:46.489648 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Oct 2 19:05:46.491422 systemd[1]: Starting systemd-hwdb-update.service... Oct 2 19:05:46.494012 systemd[1]: Starting systemd-journal-flush.service... Oct 2 19:05:46.495749 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Oct 2 19:05:46.496771 systemd[1]: Starting systemd-random-seed.service... Oct 2 19:05:46.499310 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Oct 2 19:05:46.500491 systemd[1]: Starting systemd-sysctl.service... Oct 2 19:05:46.502475 systemd[1]: Mounted sys-fs-fuse-connections.mount. Oct 2 19:05:46.503524 systemd[1]: Mounted sys-kernel-config.mount. Oct 2 19:05:46.509000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.508710 systemd[1]: Finished flatcar-tmpfiles.service. Oct 2 19:05:46.510842 systemd[1]: Starting systemd-sysusers.service... Oct 2 19:05:46.511957 systemd[1]: Finished systemd-udev-trigger.service. Oct 2 19:05:46.512000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.515778 systemd[1]: Starting systemd-udev-settle.service... Oct 2 19:05:46.518009 systemd[1]: Finished systemd-random-seed.service. Oct 2 19:05:46.518000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.519035 systemd[1]: Reached target first-boot-complete.target. Oct 2 19:05:46.527344 systemd-journald[988]: Time spent on flushing to /var/log/journal/d8393cff662f4b5dbb9a52137c67e9a0 is 13.137ms for 996 entries. Oct 2 19:05:46.527344 systemd-journald[988]: System Journal (/var/log/journal/d8393cff662f4b5dbb9a52137c67e9a0) is 8.0M, max 195.6M, 187.6M free. Oct 2 19:05:46.565205 systemd-journald[988]: Received client request to flush runtime journal. Oct 2 19:05:46.546000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.547000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.545335 systemd[1]: Finished systemd-sysusers.service. Oct 2 19:05:46.565587 udevadm[1030]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Oct 2 19:05:46.546477 systemd[1]: Finished systemd-sysctl.service. Oct 2 19:05:46.566220 systemd[1]: Finished systemd-journal-flush.service. Oct 2 19:05:46.566000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.899435 systemd[1]: Finished systemd-hwdb-update.service. Oct 2 19:05:46.900000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.900000 audit: BPF prog-id=24 op=LOAD Oct 2 19:05:46.911000 audit: BPF prog-id=25 op=LOAD Oct 2 19:05:46.911000 audit: BPF prog-id=7 op=UNLOAD Oct 2 19:05:46.911000 audit: BPF prog-id=8 op=UNLOAD Oct 2 19:05:46.925320 systemd[1]: Starting systemd-udevd.service... Oct 2 19:05:46.958021 systemd-udevd[1033]: Using default interface naming scheme 'v252'. Oct 2 19:05:46.969681 systemd[1]: Started systemd-udevd.service. Oct 2 19:05:46.970000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:46.972000 audit: BPF prog-id=26 op=LOAD Oct 2 19:05:46.973897 systemd[1]: Starting systemd-networkd.service... Oct 2 19:05:46.980000 audit: BPF prog-id=27 op=LOAD Oct 2 19:05:46.980000 audit: BPF prog-id=28 op=LOAD Oct 2 19:05:46.980000 audit: BPF prog-id=29 op=LOAD Oct 2 19:05:46.981542 systemd[1]: Starting systemd-userdbd.service... Oct 2 19:05:46.997687 systemd[1]: Condition check resulted in dev-ttyAMA0.device being skipped. Oct 2 19:05:47.011003 systemd[1]: Started systemd-userdbd.service. Oct 2 19:05:47.011000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.044186 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Oct 2 19:05:47.069891 systemd-networkd[1044]: lo: Link UP Oct 2 19:05:47.070185 systemd-networkd[1044]: lo: Gained carrier Oct 2 19:05:47.070621 systemd-networkd[1044]: Enumeration completed Oct 2 19:05:47.070809 systemd[1]: Started systemd-networkd.service. Oct 2 19:05:47.070908 systemd-networkd[1044]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Oct 2 19:05:47.071000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.072674 systemd-networkd[1044]: eth0: Link UP Oct 2 19:05:47.072768 systemd-networkd[1044]: eth0: Gained carrier Oct 2 19:05:47.087463 systemd[1]: Finished systemd-udev-settle.service. Oct 2 19:05:47.088000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.089809 systemd[1]: Starting lvm2-activation-early.service... Oct 2 19:05:47.104037 lvm[1067]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Oct 2 19:05:47.106184 systemd-networkd[1044]: eth0: DHCPv4 address 10.0.0.99/16, gateway 10.0.0.1 acquired from 10.0.0.1 Oct 2 19:05:47.132012 systemd[1]: Finished lvm2-activation-early.service. Oct 2 19:05:47.132000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.133137 systemd[1]: Reached target cryptsetup.target. Oct 2 19:05:47.135231 systemd[1]: Starting lvm2-activation.service... Oct 2 19:05:47.139536 lvm[1068]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Oct 2 19:05:47.175006 systemd[1]: Finished lvm2-activation.service. Oct 2 19:05:47.175000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.176013 systemd[1]: Reached target local-fs-pre.target. Oct 2 19:05:47.176876 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Oct 2 19:05:47.176906 systemd[1]: Reached target local-fs.target. Oct 2 19:05:47.177729 systemd[1]: Reached target machines.target. Oct 2 19:05:47.179750 systemd[1]: Starting ldconfig.service... Oct 2 19:05:47.180908 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Oct 2 19:05:47.180970 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Oct 2 19:05:47.182206 systemd[1]: Starting systemd-boot-update.service... Oct 2 19:05:47.184297 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Oct 2 19:05:47.186596 systemd[1]: Starting systemd-machine-id-commit.service... Oct 2 19:05:47.188595 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Oct 2 19:05:47.188647 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Oct 2 19:05:47.190269 systemd[1]: Starting systemd-tmpfiles-setup.service... Oct 2 19:05:47.195989 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1070 (bootctl) Oct 2 19:05:47.197398 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Oct 2 19:05:47.202810 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Oct 2 19:05:47.206000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.274087 systemd-tmpfiles[1073]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Oct 2 19:05:47.277820 systemd-tmpfiles[1073]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Oct 2 19:05:47.281052 systemd[1]: Finished systemd-machine-id-commit.service. Oct 2 19:05:47.282000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.282969 systemd-tmpfiles[1073]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Oct 2 19:05:47.293928 systemd-fsck[1078]: fsck.fat 4.2 (2021-01-31) Oct 2 19:05:47.293928 systemd-fsck[1078]: /dev/vda1: 236 files, 113463/258078 clusters Oct 2 19:05:47.300393 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Oct 2 19:05:47.301000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.369476 ldconfig[1069]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Oct 2 19:05:47.372708 systemd[1]: Finished ldconfig.service. Oct 2 19:05:47.373000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ldconfig comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.455927 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Oct 2 19:05:47.457362 systemd[1]: Mounting boot.mount... Oct 2 19:05:47.464427 systemd[1]: Mounted boot.mount. Oct 2 19:05:47.473364 systemd[1]: Finished systemd-boot-update.service. Oct 2 19:05:47.474000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.529199 systemd[1]: Finished systemd-tmpfiles-setup.service. Oct 2 19:05:47.529000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.532754 systemd[1]: Starting audit-rules.service... Oct 2 19:05:47.534540 systemd[1]: Starting clean-ca-certificates.service... Oct 2 19:05:47.536598 systemd[1]: Starting systemd-journal-catalog-update.service... Oct 2 19:05:47.539000 audit: BPF prog-id=30 op=LOAD Oct 2 19:05:47.540573 systemd[1]: Starting systemd-resolved.service... Oct 2 19:05:47.543000 audit: BPF prog-id=31 op=LOAD Oct 2 19:05:47.544592 systemd[1]: Starting systemd-timesyncd.service... Oct 2 19:05:47.546491 systemd[1]: Starting systemd-update-utmp.service... Oct 2 19:05:47.550000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.549980 systemd[1]: Finished clean-ca-certificates.service. Oct 2 19:05:47.551086 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Oct 2 19:05:47.553000 audit[1087]: SYSTEM_BOOT pid=1087 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.557000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.556456 systemd[1]: Finished systemd-update-utmp.service. Oct 2 19:05:47.565000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.564077 systemd[1]: Finished systemd-journal-catalog-update.service. Oct 2 19:05:47.566436 systemd[1]: Starting systemd-update-done.service... Oct 2 19:05:47.573941 systemd[1]: Finished systemd-update-done.service. Oct 2 19:05:47.574000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-done comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.594172 systemd[1]: Started systemd-timesyncd.service. Oct 2 19:05:47.595000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:47.595474 systemd-timesyncd[1086]: Contacted time server 10.0.0.1:123 (10.0.0.1). Oct 2 19:05:47.595538 systemd-timesyncd[1086]: Initial clock synchronization to Mon 2023-10-02 19:05:47.776886 UTC. Oct 2 19:05:47.595652 systemd[1]: Reached target time-set.target. Oct 2 19:05:47.596624 systemd-resolved[1084]: Positive Trust Anchors: Oct 2 19:05:47.596634 systemd-resolved[1084]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Oct 2 19:05:47.596662 systemd-resolved[1084]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Oct 2 19:05:47.606000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Oct 2 19:05:47.606000 audit[1103]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc4084c20 a2=420 a3=0 items=0 ppid=1081 pid=1103 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:47.606000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Oct 2 19:05:47.606721 augenrules[1103]: No rules Oct 2 19:05:47.607628 systemd[1]: Finished audit-rules.service. Oct 2 19:05:47.609632 systemd-resolved[1084]: Defaulting to hostname 'linux'. Oct 2 19:05:47.611109 systemd[1]: Started systemd-resolved.service. Oct 2 19:05:47.611957 systemd[1]: Reached target network.target. Oct 2 19:05:47.612762 systemd[1]: Reached target nss-lookup.target. Oct 2 19:05:47.613573 systemd[1]: Reached target sysinit.target. Oct 2 19:05:47.614441 systemd[1]: Started motdgen.path. Oct 2 19:05:47.615204 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Oct 2 19:05:47.616564 systemd[1]: Started logrotate.timer. Oct 2 19:05:47.617465 systemd[1]: Started mdadm.timer. Oct 2 19:05:47.618187 systemd[1]: Started systemd-tmpfiles-clean.timer. Oct 2 19:05:47.619003 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Oct 2 19:05:47.619041 systemd[1]: Reached target paths.target. Oct 2 19:05:47.619822 systemd[1]: Reached target timers.target. Oct 2 19:05:47.621003 systemd[1]: Listening on dbus.socket. Oct 2 19:05:47.623040 systemd[1]: Starting docker.socket... Oct 2 19:05:47.626560 systemd[1]: Listening on sshd.socket. Oct 2 19:05:47.627491 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Oct 2 19:05:47.627969 systemd[1]: Listening on docker.socket. Oct 2 19:05:47.628864 systemd[1]: Reached target sockets.target. Oct 2 19:05:47.629663 systemd[1]: Reached target basic.target. Oct 2 19:05:47.630539 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Oct 2 19:05:47.630570 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Oct 2 19:05:47.631657 systemd[1]: Starting containerd.service... Oct 2 19:05:47.633428 systemd[1]: Starting dbus.service... Oct 2 19:05:47.635321 systemd[1]: Starting enable-oem-cloudinit.service... Oct 2 19:05:47.637348 systemd[1]: Starting extend-filesystems.service... Oct 2 19:05:47.638210 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Oct 2 19:05:47.639415 systemd[1]: Starting motdgen.service... Oct 2 19:05:47.641513 systemd[1]: Starting prepare-cni-plugins.service... Oct 2 19:05:47.645368 systemd[1]: Starting prepare-critools.service... Oct 2 19:05:47.647419 systemd[1]: Starting ssh-key-proc-cmdline.service... Oct 2 19:05:47.649691 systemd[1]: Starting sshd-keygen.service... Oct 2 19:05:47.656148 jq[1112]: false Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda1 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda2 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda3 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found usr Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda4 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda6 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda7 Oct 2 19:05:47.658357 extend-filesystems[1113]: Found vda9 Oct 2 19:05:47.658357 extend-filesystems[1113]: Checking size of /dev/vda9 Oct 2 19:05:47.657053 systemd[1]: Starting systemd-logind.service... Oct 2 19:05:47.657959 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Oct 2 19:05:47.658039 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Oct 2 19:05:47.675299 jq[1129]: true Oct 2 19:05:47.658587 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Oct 2 19:05:47.659306 systemd[1]: Starting update-engine.service... Oct 2 19:05:47.661261 systemd[1]: Starting update-ssh-keys-after-ignition.service... Oct 2 19:05:47.665551 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Oct 2 19:05:47.665718 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Oct 2 19:05:47.668836 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Oct 2 19:05:47.668992 systemd[1]: Finished ssh-key-proc-cmdline.service. Oct 2 19:05:47.677658 systemd[1]: motdgen.service: Deactivated successfully. Oct 2 19:05:47.677826 systemd[1]: Finished motdgen.service. Oct 2 19:05:47.679579 jq[1137]: true Oct 2 19:05:47.701539 tar[1136]: crictl Oct 2 19:05:47.701732 tar[1134]: ./ Oct 2 19:05:47.701732 tar[1134]: ./loopback Oct 2 19:05:47.707124 dbus-daemon[1111]: [system] SELinux support is enabled Oct 2 19:05:47.707275 systemd[1]: Started dbus.service. Oct 2 19:05:47.711051 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Oct 2 19:05:47.711072 systemd[1]: Reached target system-config.target. Oct 2 19:05:47.712492 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Oct 2 19:05:47.712516 systemd[1]: Reached target user-config.target. Oct 2 19:05:47.730459 extend-filesystems[1113]: Old size kept for /dev/vda9 Oct 2 19:05:47.731654 systemd[1]: extend-filesystems.service: Deactivated successfully. Oct 2 19:05:47.731826 systemd[1]: Finished extend-filesystems.service. Oct 2 19:05:47.735821 systemd-logind[1124]: Watching system buttons on /dev/input/event0 (Power Button) Oct 2 19:05:47.737047 systemd-logind[1124]: New seat seat0. Oct 2 19:05:47.739445 systemd[1]: Started systemd-logind.service. Oct 2 19:05:47.772419 tar[1134]: ./bandwidth Oct 2 19:05:47.787480 bash[1160]: Updated "/home/core/.ssh/authorized_keys" Oct 2 19:05:47.788420 systemd[1]: Finished update-ssh-keys-after-ignition.service. Oct 2 19:05:47.801112 update_engine[1127]: I1002 19:05:47.800809 1127 main.cc:92] Flatcar Update Engine starting Oct 2 19:05:47.805339 systemd[1]: Started update-engine.service. Oct 2 19:05:47.809352 update_engine[1127]: I1002 19:05:47.805372 1127 update_check_scheduler.cc:74] Next update check in 4m40s Oct 2 19:05:47.808091 systemd[1]: Started locksmithd.service. Oct 2 19:05:47.817079 tar[1134]: ./ptp Oct 2 19:05:47.819601 env[1138]: time="2023-10-02T19:05:47.819543800Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Oct 2 19:05:47.863479 env[1138]: time="2023-10-02T19:05:47.863428560Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Oct 2 19:05:47.863873 env[1138]: time="2023-10-02T19:05:47.863850600Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.865337 env[1138]: time="2023-10-02T19:05:47.865301520Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.132-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Oct 2 19:05:47.865515 env[1138]: time="2023-10-02T19:05:47.865489880Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.865789 env[1138]: time="2023-10-02T19:05:47.865765840Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Oct 2 19:05:47.865887 env[1138]: time="2023-10-02T19:05:47.865871960Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.865950 env[1138]: time="2023-10-02T19:05:47.865934240Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Oct 2 19:05:47.866005 env[1138]: time="2023-10-02T19:05:47.865990880Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.866176 env[1138]: time="2023-10-02T19:05:47.866157240Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.866623 env[1138]: time="2023-10-02T19:05:47.866600120Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Oct 2 19:05:47.866840 env[1138]: time="2023-10-02T19:05:47.866816760Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Oct 2 19:05:47.866925 env[1138]: time="2023-10-02T19:05:47.866909360Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Oct 2 19:05:47.867037 env[1138]: time="2023-10-02T19:05:47.867018320Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Oct 2 19:05:47.867123 env[1138]: time="2023-10-02T19:05:47.867086640Z" level=info msg="metadata content store policy set" policy=shared Oct 2 19:05:47.869575 tar[1134]: ./vlan Oct 2 19:05:47.876155 env[1138]: time="2023-10-02T19:05:47.876124800Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Oct 2 19:05:47.876316 env[1138]: time="2023-10-02T19:05:47.876299600Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Oct 2 19:05:47.876382 env[1138]: time="2023-10-02T19:05:47.876368720Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Oct 2 19:05:47.876584 env[1138]: time="2023-10-02T19:05:47.876564520Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.876660 env[1138]: time="2023-10-02T19:05:47.876645520Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.876783 env[1138]: time="2023-10-02T19:05:47.876767320Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.876865 env[1138]: time="2023-10-02T19:05:47.876851000Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.877491 env[1138]: time="2023-10-02T19:05:47.877466280Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.877595 env[1138]: time="2023-10-02T19:05:47.877578280Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.877739 env[1138]: time="2023-10-02T19:05:47.877723120Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.877807 env[1138]: time="2023-10-02T19:05:47.877792960Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.877934 env[1138]: time="2023-10-02T19:05:47.877914400Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Oct 2 19:05:47.878358 env[1138]: time="2023-10-02T19:05:47.878337000Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Oct 2 19:05:47.878687 env[1138]: time="2023-10-02T19:05:47.878669240Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Oct 2 19:05:47.879191 env[1138]: time="2023-10-02T19:05:47.879170280Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Oct 2 19:05:47.879350 env[1138]: time="2023-10-02T19:05:47.879331920Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.879484 env[1138]: time="2023-10-02T19:05:47.879458960Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Oct 2 19:05:47.879788 env[1138]: time="2023-10-02T19:05:47.879769400Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.879934 env[1138]: time="2023-10-02T19:05:47.879917880Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880001 env[1138]: time="2023-10-02T19:05:47.879987680Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880147 env[1138]: time="2023-10-02T19:05:47.880130080Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880276 env[1138]: time="2023-10-02T19:05:47.880204160Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880350 env[1138]: time="2023-10-02T19:05:47.880334760Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880465 env[1138]: time="2023-10-02T19:05:47.880449880Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880640 env[1138]: time="2023-10-02T19:05:47.880622120Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.880800 env[1138]: time="2023-10-02T19:05:47.880783960Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Oct 2 19:05:47.881187 env[1138]: time="2023-10-02T19:05:47.881094200Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.881272 env[1138]: time="2023-10-02T19:05:47.881256760Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.881410 env[1138]: time="2023-10-02T19:05:47.881394840Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.881578 env[1138]: time="2023-10-02T19:05:47.881561040Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Oct 2 19:05:47.881717 env[1138]: time="2023-10-02T19:05:47.881698880Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Oct 2 19:05:47.881850 env[1138]: time="2023-10-02T19:05:47.881834480Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Oct 2 19:05:47.882023 env[1138]: time="2023-10-02T19:05:47.882004960Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Oct 2 19:05:47.882217 env[1138]: time="2023-10-02T19:05:47.882199160Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Oct 2 19:05:47.882744 env[1138]: time="2023-10-02T19:05:47.882676800Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.883338600Z" level=info msg="Connect containerd service" Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.884156400Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.884896400Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.885292240Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.885331720Z" level=info msg=serving... address=/run/containerd/containerd.sock Oct 2 19:05:47.886927 env[1138]: time="2023-10-02T19:05:47.885386320Z" level=info msg="containerd successfully booted in 0.066713s" Oct 2 19:05:47.885457 systemd[1]: Started containerd.service. Oct 2 19:05:47.887264 env[1138]: time="2023-10-02T19:05:47.887224640Z" level=info msg="Start subscribing containerd event" Oct 2 19:05:47.899414 env[1138]: time="2023-10-02T19:05:47.899363800Z" level=info msg="Start recovering state" Oct 2 19:05:47.899667 env[1138]: time="2023-10-02T19:05:47.899651800Z" level=info msg="Start event monitor" Oct 2 19:05:47.899833 env[1138]: time="2023-10-02T19:05:47.899751640Z" level=info msg="Start snapshots syncer" Oct 2 19:05:47.899912 env[1138]: time="2023-10-02T19:05:47.899897120Z" level=info msg="Start cni network conf syncer for default" Oct 2 19:05:47.899998 env[1138]: time="2023-10-02T19:05:47.899984240Z" level=info msg="Start streaming server" Oct 2 19:05:47.907141 tar[1134]: ./host-device Oct 2 19:05:47.940530 tar[1134]: ./tuning Oct 2 19:05:47.972135 tar[1134]: ./vrf Oct 2 19:05:48.002753 tar[1134]: ./sbr Oct 2 19:05:48.035256 tar[1134]: ./tap Oct 2 19:05:48.072610 tar[1134]: ./dhcp Oct 2 19:05:48.077477 locksmithd[1166]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Oct 2 19:05:48.120103 systemd[1]: Finished prepare-critools.service. Oct 2 19:05:48.157745 tar[1134]: ./static Oct 2 19:05:48.182987 tar[1134]: ./firewall Oct 2 19:05:48.215921 tar[1134]: ./macvlan Oct 2 19:05:48.245651 tar[1134]: ./dummy Oct 2 19:05:48.274796 tar[1134]: ./bridge Oct 2 19:05:48.306718 tar[1134]: ./ipvlan Oct 2 19:05:48.335977 tar[1134]: ./portmap Oct 2 19:05:48.365695 tar[1134]: ./host-local Oct 2 19:05:48.400780 systemd[1]: Finished prepare-cni-plugins.service. Oct 2 19:05:48.833483 sshd_keygen[1135]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Oct 2 19:05:48.853475 systemd[1]: Finished sshd-keygen.service. Oct 2 19:05:48.855746 systemd[1]: Starting issuegen.service... Oct 2 19:05:48.861107 systemd[1]: issuegen.service: Deactivated successfully. Oct 2 19:05:48.861404 systemd[1]: Finished issuegen.service. Oct 2 19:05:48.863531 systemd[1]: Starting systemd-user-sessions.service... Oct 2 19:05:48.869949 systemd[1]: Finished systemd-user-sessions.service. Oct 2 19:05:48.872160 systemd[1]: Started getty@tty1.service. Oct 2 19:05:48.874116 systemd[1]: Started serial-getty@ttyAMA0.service. Oct 2 19:05:48.875165 systemd[1]: Reached target getty.target. Oct 2 19:05:48.875979 systemd[1]: Reached target multi-user.target. Oct 2 19:05:48.877944 systemd[1]: Starting systemd-update-utmp-runlevel.service... Oct 2 19:05:48.885233 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Oct 2 19:05:48.885404 systemd[1]: Finished systemd-update-utmp-runlevel.service. Oct 2 19:05:48.886538 systemd[1]: Startup finished in 660ms (kernel) + 5.704s (initrd) + 4.602s (userspace) = 10.967s. Oct 2 19:05:48.895292 systemd-networkd[1044]: eth0: Gained IPv6LL Oct 2 19:05:51.383121 systemd[1]: Created slice system-sshd.slice. Oct 2 19:05:51.384559 systemd[1]: Started sshd@0-10.0.0.99:22-10.0.0.1:38134.service. Oct 2 19:05:51.431389 sshd[1193]: Accepted publickey for core from 10.0.0.1 port 38134 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:51.433411 sshd[1193]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.446728 systemd[1]: Created slice user-500.slice. Oct 2 19:05:51.448073 systemd[1]: Starting user-runtime-dir@500.service... Oct 2 19:05:51.450469 systemd-logind[1124]: New session 1 of user core. Oct 2 19:05:51.461306 systemd[1]: Finished user-runtime-dir@500.service. Oct 2 19:05:51.462837 systemd[1]: Starting user@500.service... Oct 2 19:05:51.467074 (systemd)[1196]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.538832 systemd[1196]: Queued start job for default target default.target. Oct 2 19:05:51.539357 systemd[1196]: Reached target paths.target. Oct 2 19:05:51.539378 systemd[1196]: Reached target sockets.target. Oct 2 19:05:51.539389 systemd[1196]: Reached target timers.target. Oct 2 19:05:51.539399 systemd[1196]: Reached target basic.target. Oct 2 19:05:51.539450 systemd[1196]: Reached target default.target. Oct 2 19:05:51.539474 systemd[1196]: Startup finished in 65ms. Oct 2 19:05:51.540136 systemd[1]: Started user@500.service. Oct 2 19:05:51.541223 systemd[1]: Started session-1.scope. Oct 2 19:05:51.601008 systemd[1]: Started sshd@1-10.0.0.99:22-10.0.0.1:38146.service. Oct 2 19:05:51.652856 sshd[1205]: Accepted publickey for core from 10.0.0.1 port 38146 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:51.654418 sshd[1205]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.658906 systemd-logind[1124]: New session 2 of user core. Oct 2 19:05:51.659752 systemd[1]: Started session-2.scope. Oct 2 19:05:51.724917 sshd[1205]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:51.728419 systemd[1]: Started sshd@2-10.0.0.99:22-10.0.0.1:38160.service. Oct 2 19:05:51.728884 systemd[1]: sshd@1-10.0.0.99:22-10.0.0.1:38146.service: Deactivated successfully. Oct 2 19:05:51.729579 systemd[1]: session-2.scope: Deactivated successfully. Oct 2 19:05:51.730085 systemd-logind[1124]: Session 2 logged out. Waiting for processes to exit. Oct 2 19:05:51.732976 systemd-logind[1124]: Removed session 2. Oct 2 19:05:51.767753 sshd[1210]: Accepted publickey for core from 10.0.0.1 port 38160 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:51.768673 sshd[1210]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.774675 systemd[1]: Started session-3.scope. Oct 2 19:05:51.774934 systemd-logind[1124]: New session 3 of user core. Oct 2 19:05:51.834839 sshd[1210]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:51.837320 systemd[1]: sshd@2-10.0.0.99:22-10.0.0.1:38160.service: Deactivated successfully. Oct 2 19:05:51.837917 systemd[1]: session-3.scope: Deactivated successfully. Oct 2 19:05:51.838520 systemd-logind[1124]: Session 3 logged out. Waiting for processes to exit. Oct 2 19:05:51.839565 systemd[1]: Started sshd@3-10.0.0.99:22-10.0.0.1:38172.service. Oct 2 19:05:51.840661 systemd-logind[1124]: Removed session 3. Oct 2 19:05:51.873687 sshd[1217]: Accepted publickey for core from 10.0.0.1 port 38172 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:51.875471 sshd[1217]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.880528 systemd-logind[1124]: New session 4 of user core. Oct 2 19:05:51.881017 systemd[1]: Started session-4.scope. Oct 2 19:05:51.943385 sshd[1217]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:51.947216 systemd[1]: sshd@3-10.0.0.99:22-10.0.0.1:38172.service: Deactivated successfully. Oct 2 19:05:51.948034 systemd[1]: session-4.scope: Deactivated successfully. Oct 2 19:05:51.948629 systemd-logind[1124]: Session 4 logged out. Waiting for processes to exit. Oct 2 19:05:51.949662 systemd[1]: Started sshd@4-10.0.0.99:22-10.0.0.1:38176.service. Oct 2 19:05:51.952920 systemd-logind[1124]: Removed session 4. Oct 2 19:05:51.984485 sshd[1223]: Accepted publickey for core from 10.0.0.1 port 38176 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:51.985893 sshd[1223]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:51.992074 systemd-logind[1124]: New session 5 of user core. Oct 2 19:05:51.992396 systemd[1]: Started session-5.scope. Oct 2 19:05:52.059708 sudo[1226]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Oct 2 19:05:52.059924 sudo[1226]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Oct 2 19:05:52.070450 dbus-daemon[1111]: avc: received setenforce notice (enforcing=1) Oct 2 19:05:52.071328 sudo[1226]: pam_unix(sudo:session): session closed for user root Oct 2 19:05:52.077410 sshd[1223]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:52.080354 systemd[1]: sshd@4-10.0.0.99:22-10.0.0.1:38176.service: Deactivated successfully. Oct 2 19:05:52.081033 systemd[1]: session-5.scope: Deactivated successfully. Oct 2 19:05:52.082004 systemd-logind[1124]: Session 5 logged out. Waiting for processes to exit. Oct 2 19:05:52.083098 systemd[1]: Started sshd@5-10.0.0.99:22-10.0.0.1:38186.service. Oct 2 19:05:52.084269 systemd-logind[1124]: Removed session 5. Oct 2 19:05:52.120023 sshd[1230]: Accepted publickey for core from 10.0.0.1 port 38186 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:52.121880 sshd[1230]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:52.126903 systemd-logind[1124]: New session 6 of user core. Oct 2 19:05:52.127722 systemd[1]: Started session-6.scope. Oct 2 19:05:52.184371 sudo[1234]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Oct 2 19:05:52.184580 sudo[1234]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Oct 2 19:05:52.189488 sudo[1234]: pam_unix(sudo:session): session closed for user root Oct 2 19:05:52.196246 sudo[1233]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Oct 2 19:05:52.197046 sudo[1233]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Oct 2 19:05:52.208305 systemd[1]: Stopping audit-rules.service... Oct 2 19:05:52.209000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Oct 2 19:05:52.211476 auditctl[1237]: No rules Oct 2 19:05:52.211895 systemd[1]: audit-rules.service: Deactivated successfully. Oct 2 19:05:52.212077 systemd[1]: Stopped audit-rules.service. Oct 2 19:05:52.212850 kernel: kauditd_printk_skb: 128 callbacks suppressed Oct 2 19:05:52.212899 kernel: audit: type=1305 audit(1696273552.209:167): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Oct 2 19:05:52.212917 kernel: audit: type=1300 audit(1696273552.209:167): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffe7b41470 a2=420 a3=0 items=0 ppid=1 pid=1237 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:52.209000 audit[1237]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffe7b41470 a2=420 a3=0 items=0 ppid=1 pid=1237 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:52.213811 systemd[1]: Starting audit-rules.service... Oct 2 19:05:52.219904 kernel: audit: type=1327 audit(1696273552.209:167): proctitle=2F7362696E2F617564697463746C002D44 Oct 2 19:05:52.209000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Oct 2 19:05:52.221801 kernel: audit: type=1131 audit(1696273552.209:168): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.209000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.237322 augenrules[1254]: No rules Oct 2 19:05:52.238538 systemd[1]: Finished audit-rules.service. Oct 2 19:05:52.237000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.241496 sudo[1233]: pam_unix(sudo:session): session closed for user root Oct 2 19:05:52.243787 kernel: audit: type=1130 audit(1696273552.237:169): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.243864 kernel: audit: type=1106 audit(1696273552.240:170): pid=1233 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.240000 audit[1233]: USER_END pid=1233 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.240000 audit[1233]: CRED_DISP pid=1233 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.248212 kernel: audit: type=1104 audit(1696273552.240:171): pid=1233 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.248763 sshd[1230]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:52.249957 systemd[1]: Started sshd@6-10.0.0.99:22-10.0.0.1:38196.service. Oct 2 19:05:52.247000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.99:22-10.0.0.1:38196 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.252464 systemd[1]: sshd@5-10.0.0.99:22-10.0.0.1:38186.service: Deactivated successfully. Oct 2 19:05:52.249000 audit[1230]: USER_END pid=1230 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.253769 systemd[1]: session-6.scope: Deactivated successfully. Oct 2 19:05:52.254744 systemd-logind[1124]: Session 6 logged out. Waiting for processes to exit. Oct 2 19:05:52.257045 kernel: audit: type=1130 audit(1696273552.247:172): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.99:22-10.0.0.1:38196 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.257127 kernel: audit: type=1106 audit(1696273552.249:173): pid=1230 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.257151 kernel: audit: type=1104 audit(1696273552.249:174): pid=1230 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.249000 audit[1230]: CRED_DISP pid=1230 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.256755 systemd-logind[1124]: Removed session 6. Oct 2 19:05:52.249000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-10.0.0.99:22-10.0.0.1:38186 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.283000 audit[1259]: USER_ACCT pid=1259 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.284454 sshd[1259]: Accepted publickey for core from 10.0.0.1 port 38196 ssh2: RSA SHA256:327EISj6dhgnnLT6sEqi2+uwythtGn0QzwGU+yMaXG4 Oct 2 19:05:52.284000 audit[1259]: CRED_ACQ pid=1259 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.284000 audit[1259]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffc4bdd5a0 a2=3 a3=1 items=0 ppid=1 pid=1259 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:52.284000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Oct 2 19:05:52.286212 sshd[1259]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Oct 2 19:05:52.290583 systemd[1]: Started session-7.scope. Oct 2 19:05:52.291701 systemd-logind[1124]: New session 7 of user core. Oct 2 19:05:52.300000 audit[1259]: USER_START pid=1259 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.302000 audit[1262]: CRED_ACQ pid=1262 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:52.353444 sudo[1263]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Oct 2 19:05:52.353661 sudo[1263]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Oct 2 19:05:52.352000 audit[1263]: USER_ACCT pid=1263 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.352000 audit[1263]: CRED_REFR pid=1263 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.355000 audit[1263]: USER_START pid=1263 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:52.906412 systemd[1]: Reloading. Oct 2 19:05:52.949295 /usr/lib/systemd/system-generators/torcx-generator[1293]: time="2023-10-02T19:05:52Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.0 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.0 /var/lib/torcx/store]" Oct 2 19:05:52.949321 /usr/lib/systemd/system-generators/torcx-generator[1293]: time="2023-10-02T19:05:52Z" level=info msg="torcx already run" Oct 2 19:05:53.048837 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Oct 2 19:05:53.049028 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Oct 2 19:05:53.067483 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Oct 2 19:05:53.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit: BPF prog-id=37 op=LOAD Oct 2 19:05:53.119000 audit: BPF prog-id=27 op=UNLOAD Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.119000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit: BPF prog-id=38 op=LOAD Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.120000 audit: BPF prog-id=39 op=LOAD Oct 2 19:05:53.120000 audit: BPF prog-id=28 op=UNLOAD Oct 2 19:05:53.120000 audit: BPF prog-id=29 op=UNLOAD Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.122000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.122000 audit: BPF prog-id=40 op=LOAD Oct 2 19:05:53.122000 audit: BPF prog-id=35 op=UNLOAD Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit: BPF prog-id=41 op=LOAD Oct 2 19:05:53.123000 audit: BPF prog-id=32 op=UNLOAD Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit: BPF prog-id=42 op=LOAD Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.124000 audit: BPF prog-id=43 op=LOAD Oct 2 19:05:53.124000 audit: BPF prog-id=33 op=UNLOAD Oct 2 19:05:53.124000 audit: BPF prog-id=34 op=UNLOAD Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.125000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit: BPF prog-id=44 op=LOAD Oct 2 19:05:53.126000 audit: BPF prog-id=31 op=UNLOAD Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.126000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit: BPF prog-id=45 op=LOAD Oct 2 19:05:53.127000 audit: BPF prog-id=21 op=UNLOAD Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.127000 audit: BPF prog-id=46 op=LOAD Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.128000 audit: BPF prog-id=47 op=LOAD Oct 2 19:05:53.128000 audit: BPF prog-id=22 op=UNLOAD Oct 2 19:05:53.128000 audit: BPF prog-id=23 op=UNLOAD Oct 2 19:05:53.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.130000 audit: BPF prog-id=48 op=LOAD Oct 2 19:05:53.130000 audit: BPF prog-id=26 op=UNLOAD Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit: BPF prog-id=49 op=LOAD Oct 2 19:05:53.132000 audit: BPF prog-id=30 op=UNLOAD Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit: BPF prog-id=50 op=LOAD Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.132000 audit: BPF prog-id=51 op=LOAD Oct 2 19:05:53.132000 audit: BPF prog-id=24 op=UNLOAD Oct 2 19:05:53.132000 audit: BPF prog-id=25 op=UNLOAD Oct 2 19:05:53.140593 systemd[1]: Starting systemd-networkd-wait-online.service... Oct 2 19:05:53.147200 systemd[1]: Finished systemd-networkd-wait-online.service. Oct 2 19:05:53.146000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.147707 systemd[1]: Reached target network-online.target. Oct 2 19:05:53.149285 systemd[1]: Started kubelet.service. Oct 2 19:05:53.148000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.160132 systemd[1]: Starting coreos-metadata.service... Oct 2 19:05:53.175083 systemd[1]: coreos-metadata.service: Deactivated successfully. Oct 2 19:05:53.175281 systemd[1]: Finished coreos-metadata.service. Oct 2 19:05:53.174000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.174000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.296044 kubelet[1330]: E1002 19:05:53.295964 1330 run.go:74] "command failed" err="failed to load kubelet config file, path: /var/lib/kubelet/config.yaml, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory" Oct 2 19:05:53.298659 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Oct 2 19:05:53.298799 systemd[1]: kubelet.service: Failed with result 'exit-code'. Oct 2 19:05:53.297000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Oct 2 19:05:53.514021 systemd[1]: Stopped kubelet.service. Oct 2 19:05:53.513000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.513000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.532320 systemd[1]: Reloading. Oct 2 19:05:53.596644 /usr/lib/systemd/system-generators/torcx-generator[1397]: time="2023-10-02T19:05:53Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.0 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.0 /var/lib/torcx/store]" Oct 2 19:05:53.596671 /usr/lib/systemd/system-generators/torcx-generator[1397]: time="2023-10-02T19:05:53Z" level=info msg="torcx already run" Oct 2 19:05:53.657407 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Oct 2 19:05:53.657428 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Oct 2 19:05:53.672727 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.720000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit: BPF prog-id=52 op=LOAD Oct 2 19:05:53.721000 audit: BPF prog-id=37 op=UNLOAD Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit: BPF prog-id=53 op=LOAD Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit: BPF prog-id=54 op=LOAD Oct 2 19:05:53.722000 audit: BPF prog-id=38 op=UNLOAD Oct 2 19:05:53.722000 audit: BPF prog-id=39 op=UNLOAD Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.722000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit: BPF prog-id=55 op=LOAD Oct 2 19:05:53.723000 audit: BPF prog-id=40 op=UNLOAD Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit: BPF prog-id=56 op=LOAD Oct 2 19:05:53.724000 audit: BPF prog-id=41 op=UNLOAD Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit: BPF prog-id=57 op=LOAD Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.724000 audit: BPF prog-id=58 op=LOAD Oct 2 19:05:53.724000 audit: BPF prog-id=42 op=UNLOAD Oct 2 19:05:53.724000 audit: BPF prog-id=43 op=UNLOAD Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit: BPF prog-id=59 op=LOAD Oct 2 19:05:53.726000 audit: BPF prog-id=44 op=UNLOAD Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit: BPF prog-id=60 op=LOAD Oct 2 19:05:53.726000 audit: BPF prog-id=45 op=UNLOAD Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit: BPF prog-id=61 op=LOAD Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.727000 audit: BPF prog-id=62 op=LOAD Oct 2 19:05:53.727000 audit: BPF prog-id=46 op=UNLOAD Oct 2 19:05:53.727000 audit: BPF prog-id=47 op=UNLOAD Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.730000 audit: BPF prog-id=63 op=LOAD Oct 2 19:05:53.730000 audit: BPF prog-id=48 op=UNLOAD Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.731000 audit: BPF prog-id=64 op=LOAD Oct 2 19:05:53.731000 audit: BPF prog-id=49 op=UNLOAD Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit: BPF prog-id=65 op=LOAD Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:53.732000 audit: BPF prog-id=66 op=LOAD Oct 2 19:05:53.732000 audit: BPF prog-id=50 op=UNLOAD Oct 2 19:05:53.732000 audit: BPF prog-id=51 op=UNLOAD Oct 2 19:05:53.746000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:53.747068 systemd[1]: Started kubelet.service. Oct 2 19:05:53.793416 kubelet[1435]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Oct 2 19:05:53.793416 kubelet[1435]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Oct 2 19:05:53.793416 kubelet[1435]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Oct 2 19:05:53.794265 kubelet[1435]: I1002 19:05:53.793403 1435 server.go:203] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Oct 2 19:05:54.527498 kubelet[1435]: I1002 19:05:54.527455 1435 server.go:467] "Kubelet version" kubeletVersion="v1.28.1" Oct 2 19:05:54.527498 kubelet[1435]: I1002 19:05:54.527492 1435 server.go:469] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Oct 2 19:05:54.527719 kubelet[1435]: I1002 19:05:54.527703 1435 server.go:895] "Client rotation is on, will bootstrap in background" Oct 2 19:05:54.532532 kubelet[1435]: I1002 19:05:54.532506 1435 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Oct 2 19:05:54.548424 kubelet[1435]: W1002 19:05:54.548385 1435 machine.go:65] Cannot read vendor id correctly, set empty. Oct 2 19:05:54.549046 kubelet[1435]: I1002 19:05:54.549027 1435 server.go:725] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Oct 2 19:05:54.549280 kubelet[1435]: I1002 19:05:54.549262 1435 container_manager_linux.go:265] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Oct 2 19:05:54.549457 kubelet[1435]: I1002 19:05:54.549442 1435 container_manager_linux.go:270] "Creating Container Manager object based on Node Config" nodeConfig={"RuntimeCgroupsName":"","SystemCgroupsName":"","KubeletCgroupsName":"","KubeletOOMScoreAdj":-999,"ContainerRuntime":"","CgroupsPerQOS":true,"CgroupRoot":"/","CgroupDriver":"systemd","KubeletRootDir":"/var/lib/kubelet","ProtectKernelDefaults":false,"KubeReservedCgroupName":"","SystemReservedCgroupName":"","ReservedSystemCPUs":{},"EnforceNodeAllocatable":{"pods":{}},"KubeReserved":null,"SystemReserved":null,"HardEvictionThresholds":[{"Signal":"memory.available","Operator":"LessThan","Value":{"Quantity":"100Mi","Percentage":0},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.1},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.inodesFree","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.05},"GracePeriod":0,"MinReclaim":null},{"Signal":"imagefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.15},"GracePeriod":0,"MinReclaim":null}],"QOSReserved":{},"CPUManagerPolicy":"none","CPUManagerPolicyOptions":null,"TopologyManagerScope":"container","CPUManagerReconcilePeriod":10000000000,"ExperimentalMemoryManagerPolicy":"None","ExperimentalMemoryManagerReservedMemory":null,"PodPidsLimit":-1,"EnforceCPULimits":true,"CPUCFSQuotaPeriod":100000000,"TopologyManagerPolicy":"none","TopologyManagerPolicyOptions":null} Oct 2 19:05:54.549547 kubelet[1435]: I1002 19:05:54.549472 1435 topology_manager.go:138] "Creating topology manager with none policy" Oct 2 19:05:54.549547 kubelet[1435]: I1002 19:05:54.549481 1435 container_manager_linux.go:301] "Creating device plugin manager" Oct 2 19:05:54.549596 kubelet[1435]: I1002 19:05:54.549585 1435 state_mem.go:36] "Initialized new in-memory state store" Oct 2 19:05:54.549837 kubelet[1435]: I1002 19:05:54.549827 1435 kubelet.go:393] "Attempting to sync node with API server" Oct 2 19:05:54.549871 kubelet[1435]: I1002 19:05:54.549844 1435 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Oct 2 19:05:54.549871 kubelet[1435]: I1002 19:05:54.549869 1435 kubelet.go:309] "Adding apiserver pod source" Oct 2 19:05:54.549927 kubelet[1435]: I1002 19:05:54.549892 1435 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Oct 2 19:05:54.550389 kubelet[1435]: E1002 19:05:54.550355 1435 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:54.550843 kubelet[1435]: E1002 19:05:54.550638 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:54.550979 kubelet[1435]: I1002 19:05:54.550949 1435 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Oct 2 19:05:54.552004 kubelet[1435]: W1002 19:05:54.551457 1435 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Oct 2 19:05:54.552279 kubelet[1435]: I1002 19:05:54.552248 1435 server.go:1232] "Started kubelet" Oct 2 19:05:54.552436 kubelet[1435]: I1002 19:05:54.552419 1435 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Oct 2 19:05:54.552743 kubelet[1435]: I1002 19:05:54.552713 1435 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Oct 2 19:05:54.554227 kubelet[1435]: I1002 19:05:54.552981 1435 server.go:233] "Starting to serve the podresources API" endpoint="unix:/var/lib/kubelet/pod-resources/kubelet.sock" Oct 2 19:05:54.554305 kubelet[1435]: E1002 19:05:54.554220 1435 cri_stats_provider.go:448] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Oct 2 19:05:54.554305 kubelet[1435]: E1002 19:05:54.554277 1435 kubelet.go:1431] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Oct 2 19:05:54.554764 kubelet[1435]: I1002 19:05:54.554744 1435 server.go:462] "Adding debug handlers to kubelet server" Oct 2 19:05:54.553000 audit[1435]: AVC avc: denied { mac_admin } for pid=1435 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:54.553000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Oct 2 19:05:54.553000 audit[1435]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=40009aa870 a1=40007263a8 a2=40009aa840 a3=25 items=0 ppid=1 pid=1435 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.553000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Oct 2 19:05:54.553000 audit[1435]: AVC avc: denied { mac_admin } for pid=1435 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:54.553000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Oct 2 19:05:54.553000 audit[1435]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=40001e4fe0 a1=40007263c0 a2=40009aa900 a3=25 items=0 ppid=1 pid=1435 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.553000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Oct 2 19:05:54.555151 kubelet[1435]: I1002 19:05:54.554912 1435 kubelet.go:1386] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Oct 2 19:05:54.555151 kubelet[1435]: I1002 19:05:54.554957 1435 kubelet.go:1390] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Oct 2 19:05:54.555151 kubelet[1435]: I1002 19:05:54.555024 1435 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Oct 2 19:05:54.555223 kubelet[1435]: I1002 19:05:54.555192 1435 volume_manager.go:291] "Starting Kubelet Volume Manager" Oct 2 19:05:54.557330 kubelet[1435]: I1002 19:05:54.556221 1435 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Oct 2 19:05:54.557330 kubelet[1435]: I1002 19:05:54.556298 1435 reconciler_new.go:29] "Reconciler: start to sync state" Oct 2 19:05:54.557330 kubelet[1435]: E1002 19:05:54.556497 1435 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"10.0.0.99\" not found" Oct 2 19:05:54.575445 kubelet[1435]: I1002 19:05:54.575420 1435 cpu_manager.go:214] "Starting CPU manager" policy="none" Oct 2 19:05:54.575445 kubelet[1435]: I1002 19:05:54.575442 1435 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Oct 2 19:05:54.575564 kubelet[1435]: I1002 19:05:54.575458 1435 state_mem.go:36] "Initialized new in-memory state store" Oct 2 19:05:54.576975 kubelet[1435]: I1002 19:05:54.576949 1435 policy_none.go:49] "None policy: Start" Oct 2 19:05:54.577506 kubelet[1435]: I1002 19:05:54.577492 1435 memory_manager.go:169] "Starting memorymanager" policy="None" Oct 2 19:05:54.577609 kubelet[1435]: I1002 19:05:54.577599 1435 state_mem.go:35] "Initializing new in-memory state store" Oct 2 19:05:54.583141 systemd[1]: Created slice kubepods.slice. Oct 2 19:05:54.585000 audit[1452]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=1452 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.585000 audit[1452]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff95cc440 a2=0 a3=1 items=0 ppid=1435 pid=1452 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.585000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Oct 2 19:05:54.588657 systemd[1]: Created slice kubepods-burstable.slice. Oct 2 19:05:54.589000 audit[1454]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=1454 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.589000 audit[1454]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffc2f16a10 a2=0 a3=1 items=0 ppid=1435 pid=1454 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.589000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Oct 2 19:05:54.591383 systemd[1]: Created slice kubepods-besteffort.slice. Oct 2 19:05:54.608003 kubelet[1435]: I1002 19:05:54.607961 1435 manager.go:471] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Oct 2 19:05:54.607000 audit[1435]: AVC avc: denied { mac_admin } for pid=1435 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:54.607000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Oct 2 19:05:54.607000 audit[1435]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000f42450 a1=4000f37e30 a2=4000f42420 a3=25 items=0 ppid=1 pid=1435 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.607000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Oct 2 19:05:54.608285 kubelet[1435]: I1002 19:05:54.608035 1435 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Oct 2 19:05:54.608285 kubelet[1435]: I1002 19:05:54.608272 1435 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Oct 2 19:05:54.608917 kubelet[1435]: E1002 19:05:54.608897 1435 eviction_manager.go:258] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"10.0.0.99\" not found" Oct 2 19:05:54.623622 kubelet[1435]: W1002 19:05:54.623592 1435 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "10.0.0.99" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Oct 2 19:05:54.623772 kubelet[1435]: E1002 19:05:54.623759 1435 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "10.0.0.99" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Oct 2 19:05:54.623959 kubelet[1435]: W1002 19:05:54.623942 1435 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Oct 2 19:05:54.624038 kubelet[1435]: E1002 19:05:54.624027 1435 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Oct 2 19:05:54.624134 kubelet[1435]: W1002 19:05:54.624059 1435 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Oct 2 19:05:54.624213 kubelet[1435]: E1002 19:05:54.624186 1435 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.99\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Oct 2 19:05:54.624213 kubelet[1435]: E1002 19:05:54.624198 1435 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Oct 2 19:05:54.624660 kubelet[1435]: E1002 19:05:54.624075 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf84f988a6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 552228006, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 552228006, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.594000 audit[1456]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=1456 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.594000 audit[1456]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffd6878700 a2=0 a3=1 items=0 ppid=1435 pid=1456 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.594000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Oct 2 19:05:54.627803 kubelet[1435]: E1002 19:05:54.627704 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf851848f7", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 554243319, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 554243319, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.628714 kubelet[1435]: E1002 19:05:54.628586 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865134b3", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.99 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574750899, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574750899, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.629911 kubelet[1435]: E1002 19:05:54.629837 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf86514638", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.99 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574755384, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574755384, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.628000 audit[1461]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=1461 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.628000 audit[1461]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=fffff3ef1510 a2=0 a3=1 items=0 ppid=1435 pid=1461 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.628000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Oct 2 19:05:54.632042 kubelet[1435]: E1002 19:05:54.631941 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865150cb", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.99 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574758091, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574758091, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.635395 kubelet[1435]: E1002 19:05:54.635249 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf886ae43b", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 609988667, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 609988667, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.657865 kubelet[1435]: I1002 19:05:54.657832 1435 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.99" Oct 2 19:05:54.659378 kubelet[1435]: E1002 19:05:54.659350 1435 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.99" Oct 2 19:05:54.659585 kubelet[1435]: E1002 19:05:54.659512 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865134b3", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.99 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574750899, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 657782631, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865134b3" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.660540 kubelet[1435]: E1002 19:05:54.660462 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf86514638", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.99 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574755384, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 657797057, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf86514638" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.662961 kubelet[1435]: E1002 19:05:54.662880 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865150cb", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.99 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574758091, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 657800128, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865150cb" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.671000 audit[1466]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=1466 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.671000 audit[1466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffd5501490 a2=0 a3=1 items=0 ppid=1435 pid=1466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.671000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Oct 2 19:05:54.673290 kubelet[1435]: I1002 19:05:54.673248 1435 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv4" Oct 2 19:05:54.673000 audit[1467]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=1467 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:05:54.673000 audit[1467]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff337c160 a2=0 a3=1 items=0 ppid=1435 pid=1467 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.673000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Oct 2 19:05:54.674400 kubelet[1435]: I1002 19:05:54.674382 1435 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv6" Oct 2 19:05:54.674433 kubelet[1435]: I1002 19:05:54.674421 1435 status_manager.go:217] "Starting to sync pod status with apiserver" Oct 2 19:05:54.674455 kubelet[1435]: I1002 19:05:54.674441 1435 kubelet.go:2303] "Starting kubelet main sync loop" Oct 2 19:05:54.674499 kubelet[1435]: E1002 19:05:54.674483 1435 kubelet.go:2327] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Oct 2 19:05:54.673000 audit[1468]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=1468 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.673000 audit[1468]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd4775550 a2=0 a3=1 items=0 ppid=1435 pid=1468 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.673000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Oct 2 19:05:54.675000 audit[1470]: NETFILTER_CFG table=nat:9 family=2 entries=2 op=nft_register_chain pid=1470 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.675000 audit[1470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffc04dd8e0 a2=0 a3=1 items=0 ppid=1435 pid=1470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.675000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Oct 2 19:05:54.675000 audit[1469]: NETFILTER_CFG table=mangle:10 family=10 entries=1 op=nft_register_chain pid=1469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:05:54.675000 audit[1469]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffebb30380 a2=0 a3=1 items=0 ppid=1435 pid=1469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.675000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Oct 2 19:05:54.677284 kubelet[1435]: W1002 19:05:54.677252 1435 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Oct 2 19:05:54.677284 kubelet[1435]: E1002 19:05:54.677285 1435 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Oct 2 19:05:54.676000 audit[1471]: NETFILTER_CFG table=filter:11 family=2 entries=1 op=nft_register_chain pid=1471 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:05:54.676000 audit[1471]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffc22e6b0 a2=0 a3=1 items=0 ppid=1435 pid=1471 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.676000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Oct 2 19:05:54.676000 audit[1472]: NETFILTER_CFG table=nat:12 family=10 entries=2 op=nft_register_chain pid=1472 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:05:54.676000 audit[1472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=fffff9e61750 a2=0 a3=1 items=0 ppid=1435 pid=1472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.676000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Oct 2 19:05:54.678000 audit[1473]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=1473 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:05:54.678000 audit[1473]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff03513f0 a2=0 a3=1 items=0 ppid=1435 pid=1473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:54.678000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Oct 2 19:05:54.826686 kubelet[1435]: E1002 19:05:54.826564 1435 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.99\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Oct 2 19:05:54.860715 kubelet[1435]: I1002 19:05:54.860687 1435 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.99" Oct 2 19:05:54.862149 kubelet[1435]: E1002 19:05:54.862126 1435 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.99" Oct 2 19:05:54.862270 kubelet[1435]: E1002 19:05:54.862181 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865134b3", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.99 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574750899, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 860640878, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865134b3" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.863229 kubelet[1435]: E1002 19:05:54.863153 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf86514638", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.99 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574755384, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 860653930, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf86514638" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:54.864143 kubelet[1435]: E1002 19:05:54.864071 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865150cb", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.99 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574758091, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 860658092, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865150cb" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:55.231160 kubelet[1435]: E1002 19:05:55.231036 1435 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.99\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Oct 2 19:05:55.263274 kubelet[1435]: I1002 19:05:55.263240 1435 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.99" Oct 2 19:05:55.266679 kubelet[1435]: E1002 19:05:55.266637 1435 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.99" Oct 2 19:05:55.267370 kubelet[1435]: E1002 19:05:55.267270 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865134b3", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.99 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574750899, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 55, 263200414, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865134b3" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:55.270534 kubelet[1435]: E1002 19:05:55.270428 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf86514638", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.99 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574755384, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 55, 263205781, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf86514638" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:55.271617 kubelet[1435]: E1002 19:05:55.271515 1435 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99.178a5fcf865150cb", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.99", UID:"10.0.0.99", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.99 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.99"}, FirstTimestamp:time.Date(2023, time.October, 2, 19, 5, 54, 574758091, time.Local), LastTimestamp:time.Date(2023, time.October, 2, 19, 5, 55, 263208566, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"10.0.0.99"}': 'events "10.0.0.99.178a5fcf865150cb" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Oct 2 19:05:55.529480 kubelet[1435]: W1002 19:05:55.529382 1435 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Oct 2 19:05:55.529642 kubelet[1435]: E1002 19:05:55.529625 1435 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Oct 2 19:05:55.529879 kubelet[1435]: I1002 19:05:55.529862 1435 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Oct 2 19:05:55.550784 kubelet[1435]: E1002 19:05:55.550735 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:55.974887 kubelet[1435]: E1002 19:05:55.974785 1435 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "10.0.0.99" not found Oct 2 19:05:56.038527 kubelet[1435]: E1002 19:05:56.038488 1435 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"10.0.0.99\" not found" node="10.0.0.99" Oct 2 19:05:56.067708 kubelet[1435]: I1002 19:05:56.067686 1435 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.99" Oct 2 19:05:56.075087 kubelet[1435]: I1002 19:05:56.075047 1435 kubelet_node_status.go:73] "Successfully registered node" node="10.0.0.99" Oct 2 19:05:56.092297 kubelet[1435]: I1002 19:05:56.092060 1435 kuberuntime_manager.go:1463] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Oct 2 19:05:56.092416 env[1138]: time="2023-10-02T19:05:56.092325482Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Oct 2 19:05:56.092654 kubelet[1435]: I1002 19:05:56.092516 1435 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Oct 2 19:05:56.261604 sudo[1263]: pam_unix(sudo:session): session closed for user root Oct 2 19:05:56.260000 audit[1263]: USER_END pid=1263 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:56.260000 audit[1263]: CRED_DISP pid=1263 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Oct 2 19:05:56.263468 sshd[1259]: pam_unix(sshd:session): session closed for user core Oct 2 19:05:56.264000 audit[1259]: USER_END pid=1259 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:56.264000 audit[1259]: CRED_DISP pid=1259 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Oct 2 19:05:56.266811 systemd[1]: sshd@6-10.0.0.99:22-10.0.0.1:38196.service: Deactivated successfully. Oct 2 19:05:56.265000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.99:22-10.0.0.1:38196 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Oct 2 19:05:56.267549 systemd[1]: session-7.scope: Deactivated successfully. Oct 2 19:05:56.268117 systemd-logind[1124]: Session 7 logged out. Waiting for processes to exit. Oct 2 19:05:56.269076 systemd-logind[1124]: Removed session 7. Oct 2 19:05:56.551832 kubelet[1435]: I1002 19:05:56.551676 1435 apiserver.go:52] "Watching apiserver" Oct 2 19:05:56.551959 kubelet[1435]: E1002 19:05:56.551939 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:56.556930 kubelet[1435]: I1002 19:05:56.556898 1435 topology_manager.go:215] "Topology Admit Handler" podUID="c9b25d1d-41fb-4403-b1e0-5a6a132ec43e" podNamespace="calico-system" podName="calico-node-sxncd" Oct 2 19:05:56.557043 kubelet[1435]: I1002 19:05:56.557010 1435 topology_manager.go:215] "Topology Admit Handler" podUID="b73dcb0c-286c-47ee-a459-c70e55b26ef9" podNamespace="kube-system" podName="kube-proxy-glzwp" Oct 2 19:05:56.557070 kubelet[1435]: I1002 19:05:56.557052 1435 topology_manager.go:215] "Topology Admit Handler" podUID="da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2" podNamespace="tigera-operator" podName="tigera-operator-8547bd6cc6-hgcvr" Oct 2 19:05:56.558000 kubelet[1435]: I1002 19:05:56.557979 1435 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Oct 2 19:05:56.563791 systemd[1]: Created slice kubepods-besteffort-podda1fd2d8_e142_4a78_ad2f_4ebc9b98cff2.slice. Oct 2 19:05:56.567920 kubelet[1435]: I1002 19:05:56.567895 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-node-certs\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568060 kubelet[1435]: I1002 19:05:56.567933 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-cni-net-dir\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568060 kubelet[1435]: I1002 19:05:56.567958 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-cni-log-dir\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568060 kubelet[1435]: I1002 19:05:56.567980 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-flexvol-driver-host\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568060 kubelet[1435]: I1002 19:05:56.568001 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2-var-lib-calico\") pod \"tigera-operator-8547bd6cc6-hgcvr\" (UID: \"da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2\") " pod="tigera-operator/tigera-operator-8547bd6cc6-hgcvr" Oct 2 19:05:56.568060 kubelet[1435]: I1002 19:05:56.568025 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-lib-modules\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568222 kubelet[1435]: I1002 19:05:56.568046 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-policysync\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568222 kubelet[1435]: I1002 19:05:56.568065 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/b73dcb0c-286c-47ee-a459-c70e55b26ef9-xtables-lock\") pod \"kube-proxy-glzwp\" (UID: \"b73dcb0c-286c-47ee-a459-c70e55b26ef9\") " pod="kube-system/kube-proxy-glzwp" Oct 2 19:05:56.568222 kubelet[1435]: I1002 19:05:56.568085 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-xtables-lock\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568222 kubelet[1435]: I1002 19:05:56.568129 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-tigera-ca-bundle\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568222 kubelet[1435]: I1002 19:05:56.568152 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-var-run-calico\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568330 kubelet[1435]: I1002 19:05:56.568182 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-var-lib-calico\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568330 kubelet[1435]: I1002 19:05:56.568206 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-cni-bin-dir\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568330 kubelet[1435]: I1002 19:05:56.568227 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-6csfl\" (UniqueName: \"kubernetes.io/projected/c9b25d1d-41fb-4403-b1e0-5a6a132ec43e-kube-api-access-6csfl\") pod \"calico-node-sxncd\" (UID: \"c9b25d1d-41fb-4403-b1e0-5a6a132ec43e\") " pod="calico-system/calico-node-sxncd" Oct 2 19:05:56.568330 kubelet[1435]: I1002 19:05:56.568277 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/b73dcb0c-286c-47ee-a459-c70e55b26ef9-kube-proxy\") pod \"kube-proxy-glzwp\" (UID: \"b73dcb0c-286c-47ee-a459-c70e55b26ef9\") " pod="kube-system/kube-proxy-glzwp" Oct 2 19:05:56.568455 kubelet[1435]: I1002 19:05:56.568386 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/b73dcb0c-286c-47ee-a459-c70e55b26ef9-lib-modules\") pod \"kube-proxy-glzwp\" (UID: \"b73dcb0c-286c-47ee-a459-c70e55b26ef9\") " pod="kube-system/kube-proxy-glzwp" Oct 2 19:05:56.568455 kubelet[1435]: I1002 19:05:56.568431 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-qmd7c\" (UniqueName: \"kubernetes.io/projected/b73dcb0c-286c-47ee-a459-c70e55b26ef9-kube-api-access-qmd7c\") pod \"kube-proxy-glzwp\" (UID: \"b73dcb0c-286c-47ee-a459-c70e55b26ef9\") " pod="kube-system/kube-proxy-glzwp" Oct 2 19:05:56.568567 kubelet[1435]: I1002 19:05:56.568460 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-2ldl5\" (UniqueName: \"kubernetes.io/projected/da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2-kube-api-access-2ldl5\") pod \"tigera-operator-8547bd6cc6-hgcvr\" (UID: \"da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2\") " pod="tigera-operator/tigera-operator-8547bd6cc6-hgcvr" Oct 2 19:05:56.576820 systemd[1]: Created slice kubepods-besteffort-podc9b25d1d_41fb_4403_b1e0_5a6a132ec43e.slice. Oct 2 19:05:56.592217 systemd[1]: Created slice kubepods-besteffort-podb73dcb0c_286c_47ee_a459_c70e55b26ef9.slice. Oct 2 19:05:56.672719 kubelet[1435]: E1002 19:05:56.672301 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.672719 kubelet[1435]: W1002 19:05:56.672324 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.672719 kubelet[1435]: E1002 19:05:56.672351 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.672719 kubelet[1435]: E1002 19:05:56.672683 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.672719 kubelet[1435]: W1002 19:05:56.672692 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.672719 kubelet[1435]: E1002 19:05:56.672706 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.673241 kubelet[1435]: E1002 19:05:56.673225 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.673241 kubelet[1435]: W1002 19:05:56.673239 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.673321 kubelet[1435]: E1002 19:05:56.673261 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.673671 kubelet[1435]: E1002 19:05:56.673647 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.673671 kubelet[1435]: W1002 19:05:56.673661 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.673755 kubelet[1435]: E1002 19:05:56.673743 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.673924 kubelet[1435]: E1002 19:05:56.673897 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.673924 kubelet[1435]: W1002 19:05:56.673912 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.673924 kubelet[1435]: E1002 19:05:56.673925 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.674226 kubelet[1435]: E1002 19:05:56.674211 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.674226 kubelet[1435]: W1002 19:05:56.674224 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.674294 kubelet[1435]: E1002 19:05:56.674240 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.674624 kubelet[1435]: E1002 19:05:56.674598 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.674624 kubelet[1435]: W1002 19:05:56.674612 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.674624 kubelet[1435]: E1002 19:05:56.674626 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.674906 kubelet[1435]: E1002 19:05:56.674893 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.674906 kubelet[1435]: W1002 19:05:56.674905 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.674977 kubelet[1435]: E1002 19:05:56.674917 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.680826 kubelet[1435]: E1002 19:05:56.680810 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.680934 kubelet[1435]: W1002 19:05:56.680918 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.680994 kubelet[1435]: E1002 19:05:56.680983 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.683666 kubelet[1435]: E1002 19:05:56.683647 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.683666 kubelet[1435]: W1002 19:05:56.683662 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.683769 kubelet[1435]: E1002 19:05:56.683677 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.688389 kubelet[1435]: E1002 19:05:56.688357 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.688389 kubelet[1435]: W1002 19:05:56.688375 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.688389 kubelet[1435]: E1002 19:05:56.688394 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.690471 kubelet[1435]: E1002 19:05:56.690437 1435 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Oct 2 19:05:56.690471 kubelet[1435]: W1002 19:05:56.690456 1435 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Oct 2 19:05:56.690471 kubelet[1435]: E1002 19:05:56.690475 1435 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Oct 2 19:05:56.875409 env[1138]: time="2023-10-02T19:05:56.875244037Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:tigera-operator-8547bd6cc6-hgcvr,Uid:da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2,Namespace:tigera-operator,Attempt:0,}" Oct 2 19:05:56.891965 kubelet[1435]: E1002 19:05:56.891927 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:05:56.892561 env[1138]: time="2023-10-02T19:05:56.892434487Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-sxncd,Uid:c9b25d1d-41fb-4403-b1e0-5a6a132ec43e,Namespace:calico-system,Attempt:0,}" Oct 2 19:05:56.895362 kubelet[1435]: E1002 19:05:56.894950 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:05:56.896698 env[1138]: time="2023-10-02T19:05:56.896611235Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-glzwp,Uid:b73dcb0c-286c-47ee-a459-c70e55b26ef9,Namespace:kube-system,Attempt:0,}" Oct 2 19:05:57.436547 env[1138]: time="2023-10-02T19:05:57.436498857Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.437810 env[1138]: time="2023-10-02T19:05:57.437733421Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.438825 env[1138]: time="2023-10-02T19:05:57.438793765Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.440518 env[1138]: time="2023-10-02T19:05:57.440481962Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.442186 env[1138]: time="2023-10-02T19:05:57.442157433Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.445293 env[1138]: time="2023-10-02T19:05:57.445264040Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.448526 env[1138]: time="2023-10-02T19:05:57.448497264Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.450903 env[1138]: time="2023-10-02T19:05:57.450878517Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.451523 env[1138]: time="2023-10-02T19:05:57.451501618Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.452170 env[1138]: time="2023-10-02T19:05:57.452145259Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.453040 env[1138]: time="2023-10-02T19:05:57.453006332Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.454010 env[1138]: time="2023-10-02T19:05:57.453987137Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:57.469678 env[1138]: time="2023-10-02T19:05:57.469596487Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:05:57.469678 env[1138]: time="2023-10-02T19:05:57.469636277Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:05:57.469678 env[1138]: time="2023-10-02T19:05:57.469653514Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:05:57.469991 env[1138]: time="2023-10-02T19:05:57.469958581Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/f7812d4a6443bd19a0f332a0acd58e1350dd795a9b20738909d1b8427e8e6261 pid=1513 runtime=io.containerd.runc.v2 Oct 2 19:05:57.470061 env[1138]: time="2023-10-02T19:05:57.470013553Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:05:57.470061 env[1138]: time="2023-10-02T19:05:57.470040898Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:05:57.470061 env[1138]: time="2023-10-02T19:05:57.470050886Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:05:57.470228 env[1138]: time="2023-10-02T19:05:57.470184270Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9 pid=1512 runtime=io.containerd.runc.v2 Oct 2 19:05:57.472548 env[1138]: time="2023-10-02T19:05:57.470914537Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:05:57.472548 env[1138]: time="2023-10-02T19:05:57.470944460Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:05:57.472548 env[1138]: time="2023-10-02T19:05:57.470955132Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:05:57.472548 env[1138]: time="2023-10-02T19:05:57.471090489Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/ef4b69561aeb7acece648cb0232177fb6e70ed8c95b1ca280881d995d73135e7 pid=1517 runtime=io.containerd.runc.v2 Oct 2 19:05:57.494536 systemd[1]: Started cri-containerd-300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9.scope. Oct 2 19:05:57.495414 systemd[1]: Started cri-containerd-f7812d4a6443bd19a0f332a0acd58e1350dd795a9b20738909d1b8427e8e6261.scope. Oct 2 19:05:57.513299 systemd[1]: Started cri-containerd-ef4b69561aeb7acece648cb0232177fb6e70ed8c95b1ca280881d995d73135e7.scope. Oct 2 19:05:57.531145 kernel: kauditd_printk_skb: 416 callbacks suppressed Oct 2 19:05:57.531221 kernel: audit: type=1400 audit(1696273557.528:556): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.535869 kernel: audit: type=1400 audit(1696273557.528:557): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.535923 kernel: audit: type=1400 audit(1696273557.528:558): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540411 kernel: audit: type=1400 audit(1696273557.528:559): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543172 kernel: audit: type=1400 audit(1696273557.528:560): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543259 kernel: audit: type=1400 audit(1696273557.528:561): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.548358 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Oct 2 19:05:57.548411 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Oct 2 19:05:57.548426 kernel: audit: audit_lost=1 audit_rate_limit=0 audit_backlog_limit=64 Oct 2 19:05:57.548439 kernel: audit: audit_lost=2 audit_rate_limit=0 audit_backlog_limit=64 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.529000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.529000 audit: BPF prog-id=67 op=LOAD Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.530000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.532000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.532000 audit: BPF prog-id=68 op=LOAD Oct 2 19:05:57.539000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.539000 audit[1543]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=1513 pid=1543 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.539000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637383132643461363434336264313961306633333261306163643538 Oct 2 19:05:57.539000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.539000 audit[1543]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=1513 pid=1543 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.539000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637383132643461363434336264313961306633333261306163643538 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.540000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.541000 audit: BPF prog-id=69 op=LOAD Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=1517 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.543000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6566346236393536316165623761636563653634386362303233323137 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=1517 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.543000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6566346236393536316165623761636563653634386362303233323137 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.543000 audit: BPF prog-id=70 op=LOAD Oct 2 19:05:57.543000 audit[1545]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=1517 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.543000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6566346236393536316165623761636563653634386362303233323137 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.544000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit: BPF prog-id=74 op=LOAD Oct 2 19:05:57.547000 audit[1542]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=1512 pid=1542 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.547000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330306639653666363034663236386138633662623239313865623433 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit: BPF prog-id=75 op=LOAD Oct 2 19:05:57.547000 audit[1542]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=1512 pid=1542 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.547000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330306639653666363034663236386138633662623239313865623433 Oct 2 19:05:57.547000 audit: BPF prog-id=75 op=UNLOAD Oct 2 19:05:57.547000 audit: BPF prog-id=74 op=UNLOAD Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { perfmon } for pid=1542 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1542]: AVC avc: denied { bpf } for pid=1542 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit: BPF prog-id=76 op=LOAD Oct 2 19:05:57.547000 audit[1542]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=1512 pid=1542 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.547000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330306639653666363034663236386138633662623239313865623433 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { perfmon } for pid=1543 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit[1543]: AVC avc: denied { bpf } for pid=1543 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.547000 audit: BPF prog-id=77 op=LOAD Oct 2 19:05:57.547000 audit[1543]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=1513 pid=1543 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.547000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637383132643461363434336264313961306633333261306163643538 Oct 2 19:05:57.544000 audit: BPF prog-id=71 op=LOAD Oct 2 19:05:57.544000 audit[1545]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=1517 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.544000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6566346236393536316165623761636563653634386362303233323137 Oct 2 19:05:57.550000 audit: BPF prog-id=71 op=UNLOAD Oct 2 19:05:57.550000 audit: BPF prog-id=70 op=UNLOAD Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { perfmon } for pid=1545 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit[1545]: AVC avc: denied { bpf } for pid=1545 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:57.551000 audit: BPF prog-id=78 op=LOAD Oct 2 19:05:57.551000 audit[1545]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=1517 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:57.551000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6566346236393536316165623761636563653634386362303233323137 Oct 2 19:05:57.553618 kubelet[1435]: E1002 19:05:57.552937 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:57.564894 env[1138]: time="2023-10-02T19:05:57.564851260Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-sxncd,Uid:c9b25d1d-41fb-4403-b1e0-5a6a132ec43e,Namespace:calico-system,Attempt:0,} returns sandbox id \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\"" Oct 2 19:05:57.565979 kubelet[1435]: E1002 19:05:57.565948 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:05:57.566526 env[1138]: time="2023-10-02T19:05:57.566487546Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-glzwp,Uid:b73dcb0c-286c-47ee-a459-c70e55b26ef9,Namespace:kube-system,Attempt:0,} returns sandbox id \"f7812d4a6443bd19a0f332a0acd58e1350dd795a9b20738909d1b8427e8e6261\"" Oct 2 19:05:57.567633 kubelet[1435]: E1002 19:05:57.567611 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:05:57.568531 env[1138]: time="2023-10-02T19:05:57.567617360Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.25.0\"" Oct 2 19:05:57.572951 env[1138]: time="2023-10-02T19:05:57.572921052Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:tigera-operator-8547bd6cc6-hgcvr,Uid:da1fd2d8-e142-4a78-ad2f-4ebc9b98cff2,Namespace:tigera-operator,Attempt:0,} returns sandbox id \"ef4b69561aeb7acece648cb0232177fb6e70ed8c95b1ca280881d995d73135e7\"" Oct 2 19:05:57.682196 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3647328602.mount: Deactivated successfully. Oct 2 19:05:58.553431 kubelet[1435]: E1002 19:05:58.553389 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:58.765486 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2764581449.mount: Deactivated successfully. Oct 2 19:05:58.825655 env[1138]: time="2023-10-02T19:05:58.825509683Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:58.826969 env[1138]: time="2023-10-02T19:05:58.826938761Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:125b9deae5a04d82056336c1aff8ab9c7ed64cdc224c7139c7433a3a29c21fc8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:58.828530 env[1138]: time="2023-10-02T19:05:58.828503726Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:58.829651 env[1138]: time="2023-10-02T19:05:58.829620351Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:182a323c25a3503be8c504892a12a55d99a42c3a582cb8e93a1ecc7c193a44c5,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:05:58.830610 env[1138]: time="2023-10-02T19:05:58.830575659Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.25.0\" returns image reference \"sha256:125b9deae5a04d82056336c1aff8ab9c7ed64cdc224c7139c7433a3a29c21fc8\"" Oct 2 19:05:58.831615 env[1138]: time="2023-10-02T19:05:58.831585611Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.2\"" Oct 2 19:05:58.833164 env[1138]: time="2023-10-02T19:05:58.833132147Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Oct 2 19:05:58.844261 env[1138]: time="2023-10-02T19:05:58.844220413Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48\"" Oct 2 19:05:58.845087 env[1138]: time="2023-10-02T19:05:58.845052349Z" level=info msg="StartContainer for \"9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48\"" Oct 2 19:05:58.861706 systemd[1]: Started cri-containerd-9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48.scope. Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=1512 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:58.893000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3966613033383963393639636365303234303430653031363661663263 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit: BPF prog-id=79 op=LOAD Oct 2 19:05:58.893000 audit[1621]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=1512 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:58.893000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3966613033383963393639636365303234303430653031363661663263 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit: BPF prog-id=80 op=LOAD Oct 2 19:05:58.893000 audit[1621]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=1512 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:58.893000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3966613033383963393639636365303234303430653031363661663263 Oct 2 19:05:58.893000 audit: BPF prog-id=80 op=UNLOAD Oct 2 19:05:58.893000 audit: BPF prog-id=79 op=UNLOAD Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:05:58.893000 audit: BPF prog-id=81 op=LOAD Oct 2 19:05:58.893000 audit[1621]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=1512 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:05:58.893000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3966613033383963393639636365303234303430653031363661663263 Oct 2 19:05:58.911397 env[1138]: time="2023-10-02T19:05:58.911327076Z" level=info msg="StartContainer for \"9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48\" returns successfully" Oct 2 19:05:58.913083 systemd[1]: cri-containerd-9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48.scope: Deactivated successfully. Oct 2 19:05:58.917000 audit: BPF prog-id=81 op=UNLOAD Oct 2 19:05:58.998585 env[1138]: time="2023-10-02T19:05:58.998538540Z" level=info msg="shim disconnected" id=9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48 Oct 2 19:05:58.998585 env[1138]: time="2023-10-02T19:05:58.998584814Z" level=warning msg="cleaning up after shim disconnected" id=9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48 namespace=k8s.io Oct 2 19:05:58.998791 env[1138]: time="2023-10-02T19:05:58.998598254Z" level=info msg="cleaning up dead shim" Oct 2 19:05:59.007070 env[1138]: time="2023-10-02T19:05:59.007019942Z" level=warning msg="cleanup warnings time=\"2023-10-02T19:05:59Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1661 runtime=io.containerd.runc.v2\n" Oct 2 19:05:59.553763 kubelet[1435]: E1002 19:05:59.553709 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:05:59.684288 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-9fa0389c969cce024040e0166af2c1bf69a0da850f2ece9d8852ef3274aaad48-rootfs.mount: Deactivated successfully. Oct 2 19:05:59.696448 kubelet[1435]: E1002 19:05:59.693487 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:00.198334 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount680329007.mount: Deactivated successfully. Oct 2 19:06:00.555139 kubelet[1435]: E1002 19:06:00.555028 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:00.628349 env[1138]: time="2023-10-02T19:06:00.628293076Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.28.2,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:00.630303 env[1138]: time="2023-10-02T19:06:00.630258938Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7da62c127fc0f2c3473babe4dd0fe1da874278c4e524a490b1781e3e0e6dddfa,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:00.631610 env[1138]: time="2023-10-02T19:06:00.631570383Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.28.2,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:00.633567 env[1138]: time="2023-10-02T19:06:00.633538014Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:41c8f92d1cd571e0e36af431f35c78379f84f5daf5b85d43014a9940d697afcf,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:00.634069 env[1138]: time="2023-10-02T19:06:00.633997705Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.2\" returns image reference \"sha256:7da62c127fc0f2c3473babe4dd0fe1da874278c4e524a490b1781e3e0e6dddfa\"" Oct 2 19:06:00.634627 env[1138]: time="2023-10-02T19:06:00.634558496Z" level=info msg="PullImage \"quay.io/tigera/operator:v1.29.0\"" Oct 2 19:06:00.636473 env[1138]: time="2023-10-02T19:06:00.636399872Z" level=info msg="CreateContainer within sandbox \"f7812d4a6443bd19a0f332a0acd58e1350dd795a9b20738909d1b8427e8e6261\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Oct 2 19:06:00.651950 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1955769188.mount: Deactivated successfully. Oct 2 19:06:00.660416 env[1138]: time="2023-10-02T19:06:00.660355802Z" level=info msg="CreateContainer within sandbox \"f7812d4a6443bd19a0f332a0acd58e1350dd795a9b20738909d1b8427e8e6261\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"5c76853d8afe98580fb7399cd2a2ab2bd99cb9636f57796958ebcf7918dafe42\"" Oct 2 19:06:00.661399 env[1138]: time="2023-10-02T19:06:00.661012790Z" level=info msg="StartContainer for \"5c76853d8afe98580fb7399cd2a2ab2bd99cb9636f57796958ebcf7918dafe42\"" Oct 2 19:06:00.682633 systemd[1]: Started cri-containerd-5c76853d8afe98580fb7399cd2a2ab2bd99cb9636f57796958ebcf7918dafe42.scope. Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=1513 pid=1686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.713000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563373638353364386166653938353830666237333939636432613261 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit: BPF prog-id=82 op=LOAD Oct 2 19:06:00.713000 audit[1686]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=1513 pid=1686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.713000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563373638353364386166653938353830666237333939636432613261 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit: BPF prog-id=83 op=LOAD Oct 2 19:06:00.713000 audit[1686]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=1513 pid=1686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.713000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563373638353364386166653938353830666237333939636432613261 Oct 2 19:06:00.713000 audit: BPF prog-id=83 op=UNLOAD Oct 2 19:06:00.713000 audit: BPF prog-id=82 op=UNLOAD Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { perfmon } for pid=1686 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit[1686]: AVC avc: denied { bpf } for pid=1686 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:00.713000 audit: BPF prog-id=84 op=LOAD Oct 2 19:06:00.713000 audit[1686]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=1513 pid=1686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.713000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563373638353364386166653938353830666237333939636432613261 Oct 2 19:06:00.738945 env[1138]: time="2023-10-02T19:06:00.736616493Z" level=info msg="StartContainer for \"5c76853d8afe98580fb7399cd2a2ab2bd99cb9636f57796958ebcf7918dafe42\" returns successfully" Oct 2 19:06:00.853000 audit[1738]: NETFILTER_CFG table=mangle:14 family=10 entries=1 op=nft_register_chain pid=1738 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:00.853000 audit[1738]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe4b052d0 a2=0 a3=ffffab0926c0 items=0 ppid=1696 pid=1738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.853000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Oct 2 19:06:00.853000 audit[1737]: NETFILTER_CFG table=mangle:15 family=2 entries=1 op=nft_register_chain pid=1737 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.853000 audit[1737]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe3d5dbe0 a2=0 a3=ffffb99136c0 items=0 ppid=1696 pid=1737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.853000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Oct 2 19:06:00.854000 audit[1741]: NETFILTER_CFG table=nat:16 family=10 entries=1 op=nft_register_chain pid=1741 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:00.854000 audit[1741]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffcd786580 a2=0 a3=ffffa07ce6c0 items=0 ppid=1696 pid=1741 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.854000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Oct 2 19:06:00.856000 audit[1743]: NETFILTER_CFG table=nat:17 family=2 entries=1 op=nft_register_chain pid=1743 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.856000 audit[1743]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff9f49b50 a2=0 a3=ffff9b2946c0 items=0 ppid=1696 pid=1743 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.856000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Oct 2 19:06:00.857000 audit[1742]: NETFILTER_CFG table=filter:18 family=10 entries=1 op=nft_register_chain pid=1742 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:00.857000 audit[1742]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc4d9b340 a2=0 a3=ffff890636c0 items=0 ppid=1696 pid=1742 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.857000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Oct 2 19:06:00.858000 audit[1744]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_chain pid=1744 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.858000 audit[1744]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff30601a0 a2=0 a3=ffffb25bc6c0 items=0 ppid=1696 pid=1744 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.858000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Oct 2 19:06:00.954000 audit[1745]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=1745 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.954000 audit[1745]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffdc029990 a2=0 a3=ffff9643b6c0 items=0 ppid=1696 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.954000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Oct 2 19:06:00.964000 audit[1747]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=1747 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.964000 audit[1747]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffd0e8f2c0 a2=0 a3=ffffa87836c0 items=0 ppid=1696 pid=1747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.964000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Oct 2 19:06:00.968000 audit[1750]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=1750 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.968000 audit[1750]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=fffff84ee940 a2=0 a3=ffffbe3d46c0 items=0 ppid=1696 pid=1750 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.968000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Oct 2 19:06:00.970000 audit[1751]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=1751 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.970000 audit[1751]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffcd22dd90 a2=0 a3=ffffab7426c0 items=0 ppid=1696 pid=1751 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.970000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Oct 2 19:06:00.975000 audit[1753]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=1753 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.975000 audit[1753]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffffb5838d0 a2=0 a3=ffff81dfa6c0 items=0 ppid=1696 pid=1753 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.975000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Oct 2 19:06:00.976000 audit[1754]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=1754 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.976000 audit[1754]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd3642780 a2=0 a3=ffffada906c0 items=0 ppid=1696 pid=1754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.976000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Oct 2 19:06:00.979000 audit[1756]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=1756 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.979000 audit[1756]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffc98a6e00 a2=0 a3=ffffa619a6c0 items=0 ppid=1696 pid=1756 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.979000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Oct 2 19:06:00.985000 audit[1759]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=1759 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.985000 audit[1759]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffe5202c40 a2=0 a3=ffffa0f9f6c0 items=0 ppid=1696 pid=1759 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.985000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Oct 2 19:06:00.987000 audit[1760]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=1760 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.987000 audit[1760]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd1162630 a2=0 a3=ffffb68d36c0 items=0 ppid=1696 pid=1760 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.987000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Oct 2 19:06:00.990000 audit[1762]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=1762 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.990000 audit[1762]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffe52e7010 a2=0 a3=ffffa7c1f6c0 items=0 ppid=1696 pid=1762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.990000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Oct 2 19:06:00.992000 audit[1763]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=1763 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.992000 audit[1763]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd5f676f0 a2=0 a3=ffff99fb46c0 items=0 ppid=1696 pid=1763 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.992000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Oct 2 19:06:00.994000 audit[1765]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=1765 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.994000 audit[1765]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffee166570 a2=0 a3=ffff96f396c0 items=0 ppid=1696 pid=1765 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.994000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Oct 2 19:06:00.998000 audit[1768]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=1768 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:00.998000 audit[1768]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffeaaa9e30 a2=0 a3=ffff8a3dc6c0 items=0 ppid=1696 pid=1768 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:00.998000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Oct 2 19:06:01.004000 audit[1771]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=1771 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.004000 audit[1771]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffffe94dee0 a2=0 a3=ffffb16256c0 items=0 ppid=1696 pid=1771 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.004000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Oct 2 19:06:01.005000 audit[1772]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=1772 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.005000 audit[1772]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe6c37060 a2=0 a3=ffff8788f6c0 items=0 ppid=1696 pid=1772 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.005000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Oct 2 19:06:01.007000 audit[1774]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=1774 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.007000 audit[1774]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=fffffd15fec0 a2=0 a3=ffffac70f6c0 items=0 ppid=1696 pid=1774 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.007000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Oct 2 19:06:01.035000 audit[1779]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=1779 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.035000 audit[1779]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffc70638b0 a2=0 a3=ffff9aa796c0 items=0 ppid=1696 pid=1779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.035000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Oct 2 19:06:01.037000 audit[1780]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=1780 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.037000 audit[1780]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff00185e0 a2=0 a3=ffff812166c0 items=0 ppid=1696 pid=1780 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.037000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Oct 2 19:06:01.040000 audit[1782]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=1782 subj=system_u:system_r:kernel_t:s0 comm="iptables" Oct 2 19:06:01.040000 audit[1782]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffee8d3310 a2=0 a3=ffff959266c0 items=0 ppid=1696 pid=1782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.040000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Oct 2 19:06:01.055000 audit[1788]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=1788 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:01.055000 audit[1788]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffd308b230 a2=0 a3=ffff88c036c0 items=0 ppid=1696 pid=1788 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.055000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:01.071000 audit[1788]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=1788 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:01.071000 audit[1788]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=24988 a0=3 a1=ffffd308b230 a2=0 a3=ffff88c036c0 items=0 ppid=1696 pid=1788 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.071000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:01.083000 audit[1796]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=1796 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.083000 audit[1796]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=fffffaafab40 a2=0 a3=ffff900e46c0 items=0 ppid=1696 pid=1796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.083000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Oct 2 19:06:01.086000 audit[1798]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=1798 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.086000 audit[1798]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffd1077740 a2=0 a3=ffffa74ae6c0 items=0 ppid=1696 pid=1798 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.086000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Oct 2 19:06:01.090000 audit[1801]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=1801 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.090000 audit[1801]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe1e09d90 a2=0 a3=ffffaf4746c0 items=0 ppid=1696 pid=1801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.090000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Oct 2 19:06:01.091000 audit[1802]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=1802 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.091000 audit[1802]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff6c3a2c0 a2=0 a3=ffff8cb486c0 items=0 ppid=1696 pid=1802 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.091000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Oct 2 19:06:01.095000 audit[1804]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=1804 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.095000 audit[1804]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffcdb68e50 a2=0 a3=ffffbedcd6c0 items=0 ppid=1696 pid=1804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.095000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Oct 2 19:06:01.096000 audit[1805]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=1805 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.096000 audit[1805]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff72a4110 a2=0 a3=ffffb7f5d6c0 items=0 ppid=1696 pid=1805 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.096000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Oct 2 19:06:01.100000 audit[1807]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=1807 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.100000 audit[1807]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffc909bdd0 a2=0 a3=ffffbf55e6c0 items=0 ppid=1696 pid=1807 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.100000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Oct 2 19:06:01.104000 audit[1810]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=1810 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.104000 audit[1810]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffe5ade4b0 a2=0 a3=ffff9596d6c0 items=0 ppid=1696 pid=1810 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.104000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Oct 2 19:06:01.106000 audit[1811]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=1811 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.106000 audit[1811]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffa6f2da0 a2=0 a3=ffffbc0d56c0 items=0 ppid=1696 pid=1811 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.106000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Oct 2 19:06:01.109000 audit[1813]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=1813 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.109000 audit[1813]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd1c97a50 a2=0 a3=ffffb63cc6c0 items=0 ppid=1696 pid=1813 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.109000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Oct 2 19:06:01.111000 audit[1814]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=1814 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.111000 audit[1814]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff013cd00 a2=0 a3=ffff8cec66c0 items=0 ppid=1696 pid=1814 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.111000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Oct 2 19:06:01.114000 audit[1816]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=1816 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.114000 audit[1816]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffdad6bc80 a2=0 a3=ffff882996c0 items=0 ppid=1696 pid=1816 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.114000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Oct 2 19:06:01.120000 audit[1819]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=1819 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.120000 audit[1819]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffee340ef0 a2=0 a3=ffff94a296c0 items=0 ppid=1696 pid=1819 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.120000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Oct 2 19:06:01.127000 audit[1822]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=1822 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.127000 audit[1822]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffd71c7d60 a2=0 a3=ffffb6daf6c0 items=0 ppid=1696 pid=1822 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.127000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Oct 2 19:06:01.128000 audit[1823]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=1823 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.128000 audit[1823]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffc0488320 a2=0 a3=ffffb4ae76c0 items=0 ppid=1696 pid=1823 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.128000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Oct 2 19:06:01.131000 audit[1825]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=1825 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.131000 audit[1825]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffc6ac7930 a2=0 a3=ffff9fd1e6c0 items=0 ppid=1696 pid=1825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.131000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Oct 2 19:06:01.134000 audit[1828]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=1828 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.134000 audit[1828]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffe9cb2780 a2=0 a3=ffffb9e546c0 items=0 ppid=1696 pid=1828 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.134000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Oct 2 19:06:01.137000 audit[1829]: NETFILTER_CFG table=nat:58 family=10 entries=1 op=nft_register_chain pid=1829 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.137000 audit[1829]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc31cb080 a2=0 a3=ffffa96956c0 items=0 ppid=1696 pid=1829 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.137000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Oct 2 19:06:01.140000 audit[1831]: NETFILTER_CFG table=nat:59 family=10 entries=2 op=nft_register_chain pid=1831 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.140000 audit[1831]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=fffffe03cfc0 a2=0 a3=ffff92a726c0 items=0 ppid=1696 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.140000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Oct 2 19:06:01.142000 audit[1832]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_chain pid=1832 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.142000 audit[1832]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff17ab430 a2=0 a3=ffffb83546c0 items=0 ppid=1696 pid=1832 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.142000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Oct 2 19:06:01.147000 audit[1834]: NETFILTER_CFG table=filter:61 family=10 entries=1 op=nft_register_rule pid=1834 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.147000 audit[1834]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffcae21730 a2=0 a3=ffff8be396c0 items=0 ppid=1696 pid=1834 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.147000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Oct 2 19:06:01.151000 audit[1837]: NETFILTER_CFG table=filter:62 family=10 entries=1 op=nft_register_rule pid=1837 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Oct 2 19:06:01.151000 audit[1837]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd7a01410 a2=0 a3=ffffaf4ac6c0 items=0 ppid=1696 pid=1837 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.151000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Oct 2 19:06:01.154000 audit[1839]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=1839 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Oct 2 19:06:01.154000 audit[1839]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=ffffc8ea8270 a2=0 a3=ffffbe7286c0 items=0 ppid=1696 pid=1839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.154000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:01.154000 audit[1839]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=1839 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Oct 2 19:06:01.154000 audit[1839]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=ffffc8ea8270 a2=0 a3=ffffbe7286c0 items=0 ppid=1696 pid=1839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:01.154000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:01.520490 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount50158206.mount: Deactivated successfully. Oct 2 19:06:01.557905 kubelet[1435]: E1002 19:06:01.557855 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:01.701950 kubelet[1435]: E1002 19:06:01.701923 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:02.091782 env[1138]: time="2023-10-02T19:06:02.091734118Z" level=info msg="ImageCreate event &ImageCreate{Name:quay.io/tigera/operator:v1.29.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:02.093027 env[1138]: time="2023-10-02T19:06:02.092997162Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:2bfa083ce51f1c757f20693cfea8ad121e2748f96a90fef52f087057eac59214,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:02.094526 env[1138]: time="2023-10-02T19:06:02.094500282Z" level=info msg="ImageUpdate event &ImageUpdate{Name:quay.io/tigera/operator:v1.29.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:02.096005 env[1138]: time="2023-10-02T19:06:02.095979439Z" level=info msg="ImageCreate event &ImageCreate{Name:quay.io/tigera/operator@sha256:89eef35e1bbe8c88792ce69c3f3f38fb9838e58602c570524350b5f3ab127582,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:02.097330 env[1138]: time="2023-10-02T19:06:02.097299281Z" level=info msg="PullImage \"quay.io/tigera/operator:v1.29.0\" returns image reference \"sha256:2bfa083ce51f1c757f20693cfea8ad121e2748f96a90fef52f087057eac59214\"" Oct 2 19:06:02.097936 env[1138]: time="2023-10-02T19:06:02.097914345Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.25.0\"" Oct 2 19:06:02.099296 env[1138]: time="2023-10-02T19:06:02.099252530Z" level=info msg="CreateContainer within sandbox \"ef4b69561aeb7acece648cb0232177fb6e70ed8c95b1ca280881d995d73135e7\" for container &ContainerMetadata{Name:tigera-operator,Attempt:0,}" Oct 2 19:06:02.110211 env[1138]: time="2023-10-02T19:06:02.110162888Z" level=info msg="CreateContainer within sandbox \"ef4b69561aeb7acece648cb0232177fb6e70ed8c95b1ca280881d995d73135e7\" for &ContainerMetadata{Name:tigera-operator,Attempt:0,} returns container id \"914053cf87d9e21ba2ed4178ea0c71548c1d4f976e50d8dcb27452d4013e8440\"" Oct 2 19:06:02.110679 env[1138]: time="2023-10-02T19:06:02.110606956Z" level=info msg="StartContainer for \"914053cf87d9e21ba2ed4178ea0c71548c1d4f976e50d8dcb27452d4013e8440\"" Oct 2 19:06:02.128317 systemd[1]: Started cri-containerd-914053cf87d9e21ba2ed4178ea0c71548c1d4f976e50d8dcb27452d4013e8440.scope. Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit: BPF prog-id=85 op=LOAD Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=1517 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:02.153000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931343035336366383764396532316261326564343137386561306337 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=1517 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:02.153000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931343035336366383764396532316261326564343137386561306337 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit: BPF prog-id=86 op=LOAD Oct 2 19:06:02.153000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=1517 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:02.153000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931343035336366383764396532316261326564343137386561306337 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.153000 audit: BPF prog-id=87 op=LOAD Oct 2 19:06:02.153000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=1517 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:02.153000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931343035336366383764396532316261326564343137386561306337 Oct 2 19:06:02.154000 audit: BPF prog-id=87 op=UNLOAD Oct 2 19:06:02.154000 audit: BPF prog-id=86 op=UNLOAD Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:02.154000 audit: BPF prog-id=88 op=LOAD Oct 2 19:06:02.154000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=1517 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:02.154000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931343035336366383764396532316261326564343137386561306337 Oct 2 19:06:02.169718 env[1138]: time="2023-10-02T19:06:02.169667543Z" level=info msg="StartContainer for \"914053cf87d9e21ba2ed4178ea0c71548c1d4f976e50d8dcb27452d4013e8440\" returns successfully" Oct 2 19:06:02.558136 kubelet[1435]: E1002 19:06:02.558019 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:02.705198 kubelet[1435]: E1002 19:06:02.705165 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:02.723063 kubelet[1435]: I1002 19:06:02.723014 1435 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-glzwp" podStartSLOduration=3.657743739 podCreationTimestamp="2023-10-02 19:05:56 +0000 UTC" firstStartedPulling="2023-10-02 19:05:57.569157917 +0000 UTC m=+3.817306876" lastFinishedPulling="2023-10-02 19:06:00.63437703 +0000 UTC m=+6.882525989" observedRunningTime="2023-10-02 19:06:01.714511292 +0000 UTC m=+7.962660251" watchObservedRunningTime="2023-10-02 19:06:02.722962852 +0000 UTC m=+8.971111811" Oct 2 19:06:02.723230 kubelet[1435]: I1002 19:06:02.723121 1435 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="tigera-operator/tigera-operator-8547bd6cc6-hgcvr" podStartSLOduration=2.199291666 podCreationTimestamp="2023-10-02 19:05:56 +0000 UTC" firstStartedPulling="2023-10-02 19:05:57.573875236 +0000 UTC m=+3.822024195" lastFinishedPulling="2023-10-02 19:06:02.097687715 +0000 UTC m=+8.345836674" observedRunningTime="2023-10-02 19:06:02.722776964 +0000 UTC m=+8.970925923" watchObservedRunningTime="2023-10-02 19:06:02.723104145 +0000 UTC m=+8.971253104" Oct 2 19:06:03.169744 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3969864138.mount: Deactivated successfully. Oct 2 19:06:03.560726 kubelet[1435]: E1002 19:06:03.560610 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:04.561351 kubelet[1435]: E1002 19:06:04.561305 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:04.986857 env[1138]: time="2023-10-02T19:06:04.986262318Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:04.987869 env[1138]: time="2023-10-02T19:06:04.987646375Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:0bb8d6f033a0548573ff857c26574d89a8ad4b691aa88a32eddf0c7db06599ef,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:04.988995 env[1138]: time="2023-10-02T19:06:04.988949215Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:04.990689 env[1138]: time="2023-10-02T19:06:04.990648034Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:34bf454be8cd5b9a35ab29c2479ff68a26497c2c87eb606e4bfe57c7fbeeff35,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:04.990901 env[1138]: time="2023-10-02T19:06:04.990879251Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.25.0\" returns image reference \"sha256:0bb8d6f033a0548573ff857c26574d89a8ad4b691aa88a32eddf0c7db06599ef\"" Oct 2 19:06:04.995212 env[1138]: time="2023-10-02T19:06:04.995182227Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Oct 2 19:06:05.017476 env[1138]: time="2023-10-02T19:06:05.017429341Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3\"" Oct 2 19:06:05.020864 env[1138]: time="2023-10-02T19:06:05.017984479Z" level=info msg="StartContainer for \"2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3\"" Oct 2 19:06:05.039954 systemd[1]: Started cri-containerd-2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3.scope. Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.079660 kernel: kauditd_printk_skb: 502 callbacks suppressed Oct 2 19:06:05.079742 kernel: audit: type=1400 audit(1696273565.077:686): avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.082132 kernel: audit: type=1300 audit(1696273565.077:686): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=1512 pid=1888 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:05.077000 audit[1888]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=1512 pid=1888 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:05.077000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266306133613134346466663636303532626238623838656465393432 Oct 2 19:06:05.089019 kernel: audit: type=1327 audit(1696273565.077:686): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266306133613134346466663636303532626238623838656465393432 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.094657 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.094735 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.094761 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.099012 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.099090 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.102411 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.106030 kernel: audit: type=1400 audit(1696273565.077:687): avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.077000 audit: BPF prog-id=89 op=LOAD Oct 2 19:06:05.077000 audit[1888]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001158e0 a2=78 a3=0 items=0 ppid=1512 pid=1888 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:05.077000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266306133613134346466663636303532626238623838656465393432 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.078000 audit: BPF prog-id=90 op=LOAD Oct 2 19:06:05.078000 audit[1888]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000115670 a2=78 a3=0 items=0 ppid=1512 pid=1888 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:05.078000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266306133613134346466663636303532626238623838656465393432 Oct 2 19:06:05.081000 audit: BPF prog-id=90 op=UNLOAD Oct 2 19:06:05.081000 audit: BPF prog-id=89 op=UNLOAD Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { perfmon } for pid=1888 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit[1888]: AVC avc: denied { bpf } for pid=1888 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:05.081000 audit: BPF prog-id=91 op=LOAD Oct 2 19:06:05.081000 audit[1888]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000115b40 a2=78 a3=0 items=0 ppid=1512 pid=1888 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:05.081000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266306133613134346466663636303532626238623838656465393432 Oct 2 19:06:05.119984 env[1138]: time="2023-10-02T19:06:05.119939198Z" level=info msg="StartContainer for \"2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3\" returns successfully" Oct 2 19:06:05.561641 kubelet[1435]: E1002 19:06:05.561556 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:05.643248 env[1138]: time="2023-10-02T19:06:05.643175472Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Oct 2 19:06:05.645610 systemd[1]: cri-containerd-2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3.scope: Deactivated successfully. Oct 2 19:06:05.653000 audit: BPF prog-id=91 op=UNLOAD Oct 2 19:06:05.711093 kubelet[1435]: E1002 19:06:05.711026 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:05.723335 kubelet[1435]: I1002 19:06:05.713784 1435 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Oct 2 19:06:05.749040 kubelet[1435]: I1002 19:06:05.748180 1435 topology_manager.go:215] "Topology Admit Handler" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" podNamespace="calico-system" podName="csi-node-driver-gvdxl" Oct 2 19:06:05.756796 systemd[1]: Created slice kubepods-besteffort-pod7cfca65b_434a_4b72_810f_e6a8f69cec1d.slice. Oct 2 19:06:05.847069 kubelet[1435]: I1002 19:06:05.846695 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/7cfca65b-434a-4b72-810f-e6a8f69cec1d-socket-dir\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.847069 kubelet[1435]: I1002 19:06:05.846741 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-vfpg2\" (UniqueName: \"kubernetes.io/projected/7cfca65b-434a-4b72-810f-e6a8f69cec1d-kube-api-access-vfpg2\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.847069 kubelet[1435]: I1002 19:06:05.846763 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/7cfca65b-434a-4b72-810f-e6a8f69cec1d-registration-dir\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.847069 kubelet[1435]: I1002 19:06:05.846783 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"etccalico\" (UniqueName: \"kubernetes.io/host-path/7cfca65b-434a-4b72-810f-e6a8f69cec1d-etccalico\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.847069 kubelet[1435]: I1002 19:06:05.846804 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/7cfca65b-434a-4b72-810f-e6a8f69cec1d-varrun\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.847319 kubelet[1435]: I1002 19:06:05.846823 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/7cfca65b-434a-4b72-810f-e6a8f69cec1d-kubelet-dir\") pod \"csi-node-driver-gvdxl\" (UID: \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\") " pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:05.943313 env[1138]: time="2023-10-02T19:06:05.943265768Z" level=info msg="shim disconnected" id=2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3 Oct 2 19:06:05.943313 env[1138]: time="2023-10-02T19:06:05.943311876Z" level=warning msg="cleaning up after shim disconnected" id=2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3 namespace=k8s.io Oct 2 19:06:05.943513 env[1138]: time="2023-10-02T19:06:05.943323182Z" level=info msg="cleaning up dead shim" Oct 2 19:06:05.961277 env[1138]: time="2023-10-02T19:06:05.961229372Z" level=warning msg="cleanup warnings time=\"2023-10-02T19:06:05Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1937 runtime=io.containerd.runc.v2\n" Oct 2 19:06:06.008944 systemd[1]: run-containerd-runc-k8s.io-2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3-runc.W0uSfn.mount: Deactivated successfully. Oct 2 19:06:06.009036 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-2f0a3a144dff66052bb8b88ede9429ce9b0737a1d71d36c9d39c7fc4da2a1da3-rootfs.mount: Deactivated successfully. Oct 2 19:06:06.060050 env[1138]: time="2023-10-02T19:06:06.060009314Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-gvdxl,Uid:7cfca65b-434a-4b72-810f-e6a8f69cec1d,Namespace:calico-system,Attempt:0,}" Oct 2 19:06:06.141362 env[1138]: time="2023-10-02T19:06:06.140675565Z" level=error msg="Failed to destroy network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:06.141955 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4-shm.mount: Deactivated successfully. Oct 2 19:06:06.142523 env[1138]: time="2023-10-02T19:06:06.142352477Z" level=error msg="encountered an error cleaning up failed sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:06.142523 env[1138]: time="2023-10-02T19:06:06.142410275Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-gvdxl,Uid:7cfca65b-434a-4b72-810f-e6a8f69cec1d,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:06.142750 kubelet[1435]: E1002 19:06:06.142726 1435 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:06.142812 kubelet[1435]: E1002 19:06:06.142800 1435 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:06.142847 kubelet[1435]: E1002 19:06:06.142824 1435 kuberuntime_manager.go:1119] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-gvdxl" Oct 2 19:06:06.142890 kubelet[1435]: E1002 19:06:06.142879 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-gvdxl_calico-system(7cfca65b-434a-4b72-810f-e6a8f69cec1d)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-gvdxl_calico-system(7cfca65b-434a-4b72-810f-e6a8f69cec1d)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-gvdxl" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" Oct 2 19:06:06.562598 kubelet[1435]: E1002 19:06:06.562075 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:06.717384 kubelet[1435]: I1002 19:06:06.717349 1435 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:06.718076 env[1138]: time="2023-10-02T19:06:06.718037913Z" level=info msg="StopPodSandbox for \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\"" Oct 2 19:06:06.720211 kubelet[1435]: E1002 19:06:06.720180 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:06.721141 env[1138]: time="2023-10-02T19:06:06.721107074Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.25.0\"" Oct 2 19:06:06.760131 env[1138]: time="2023-10-02T19:06:06.759915058Z" level=error msg="StopPodSandbox for \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\" failed" error="failed to destroy network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:06.760272 kubelet[1435]: E1002 19:06:06.760196 1435 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:06.760272 kubelet[1435]: E1002 19:06:06.760260 1435 kuberuntime_manager.go:1315] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4"} Oct 2 19:06:06.760956 kubelet[1435]: E1002 19:06:06.760293 1435 kuberuntime_manager.go:1028] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Oct 2 19:06:06.760956 kubelet[1435]: E1002 19:06:06.760318 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"7cfca65b-434a-4b72-810f-e6a8f69cec1d\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-gvdxl" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" Oct 2 19:06:07.089516 kubelet[1435]: I1002 19:06:07.089437 1435 topology_manager.go:215] "Topology Admit Handler" podUID="2c0f780b-e71e-4a86-bc8a-5471d011bcbf" podNamespace="default" podName="nginx-deployment-6d5f899847-8cqbs" Oct 2 19:06:07.093894 systemd[1]: Created slice kubepods-besteffort-pod2c0f780b_e71e_4a86_bc8a_5471d011bcbf.slice. Oct 2 19:06:07.153952 kubelet[1435]: I1002 19:06:07.153909 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-d6z5h\" (UniqueName: \"kubernetes.io/projected/2c0f780b-e71e-4a86-bc8a-5471d011bcbf-kube-api-access-d6z5h\") pod \"nginx-deployment-6d5f899847-8cqbs\" (UID: \"2c0f780b-e71e-4a86-bc8a-5471d011bcbf\") " pod="default/nginx-deployment-6d5f899847-8cqbs" Oct 2 19:06:07.397142 env[1138]: time="2023-10-02T19:06:07.396860966Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-8cqbs,Uid:2c0f780b-e71e-4a86-bc8a-5471d011bcbf,Namespace:default,Attempt:0,}" Oct 2 19:06:07.473891 env[1138]: time="2023-10-02T19:06:07.473831839Z" level=error msg="Failed to destroy network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:07.474394 env[1138]: time="2023-10-02T19:06:07.474349285Z" level=error msg="encountered an error cleaning up failed sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:07.474531 env[1138]: time="2023-10-02T19:06:07.474502760Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-8cqbs,Uid:2c0f780b-e71e-4a86-bc8a-5471d011bcbf,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:07.475190 kubelet[1435]: E1002 19:06:07.474830 1435 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:07.475190 kubelet[1435]: E1002 19:06:07.474886 1435 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-8cqbs" Oct 2 19:06:07.475190 kubelet[1435]: E1002 19:06:07.474906 1435 kuberuntime_manager.go:1119] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-8cqbs" Oct 2 19:06:07.475431 kubelet[1435]: E1002 19:06:07.474954 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-6d5f899847-8cqbs_default(2c0f780b-e71e-4a86-bc8a-5471d011bcbf)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-6d5f899847-8cqbs_default(2c0f780b-e71e-4a86-bc8a-5471d011bcbf)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-8cqbs" podUID="2c0f780b-e71e-4a86-bc8a-5471d011bcbf" Oct 2 19:06:07.475223 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c-shm.mount: Deactivated successfully. Oct 2 19:06:07.563034 kubelet[1435]: E1002 19:06:07.562971 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:07.733325 kubelet[1435]: I1002 19:06:07.732895 1435 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:07.733716 env[1138]: time="2023-10-02T19:06:07.733677842Z" level=info msg="StopPodSandbox for \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\"" Oct 2 19:06:07.814624 env[1138]: time="2023-10-02T19:06:07.814558999Z" level=error msg="StopPodSandbox for \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\" failed" error="failed to destroy network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Oct 2 19:06:07.815016 kubelet[1435]: E1002 19:06:07.814994 1435 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:07.815090 kubelet[1435]: E1002 19:06:07.815039 1435 kuberuntime_manager.go:1315] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c"} Oct 2 19:06:07.815090 kubelet[1435]: E1002 19:06:07.815080 1435 kuberuntime_manager.go:1028] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"2c0f780b-e71e-4a86-bc8a-5471d011bcbf\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Oct 2 19:06:07.815191 kubelet[1435]: E1002 19:06:07.815119 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"2c0f780b-e71e-4a86-bc8a-5471d011bcbf\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-8cqbs" podUID="2c0f780b-e71e-4a86-bc8a-5471d011bcbf" Oct 2 19:06:08.565606 kubelet[1435]: E1002 19:06:08.565559 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:09.566270 kubelet[1435]: E1002 19:06:09.566229 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:09.947794 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount561466522.mount: Deactivated successfully. Oct 2 19:06:10.126899 env[1138]: time="2023-10-02T19:06:10.126837569Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:10.128824 env[1138]: time="2023-10-02T19:06:10.128758996Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:8a2dff14388de51338e7468b834f0b37232379ce3cd97ac3c4a07b110a41ad00,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:10.130466 env[1138]: time="2023-10-02T19:06:10.130431645Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.25.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:10.131586 env[1138]: time="2023-10-02T19:06:10.131550628Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:e898f4b7b55c908c88dad008ae939024e71ed93c5effbb10cca891b658b2f001,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:10.131980 env[1138]: time="2023-10-02T19:06:10.131946023Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.25.0\" returns image reference \"sha256:8a2dff14388de51338e7468b834f0b37232379ce3cd97ac3c4a07b110a41ad00\"" Oct 2 19:06:10.134332 env[1138]: time="2023-10-02T19:06:10.134298608Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Oct 2 19:06:10.150729 env[1138]: time="2023-10-02T19:06:10.150679757Z" level=info msg="CreateContainer within sandbox \"300f9e6f604f268a8c6bb2918eb43cf834b644e917c1ec311917052c4826dcd9\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911\"" Oct 2 19:06:10.151386 env[1138]: time="2023-10-02T19:06:10.151348600Z" level=info msg="StartContainer for \"c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911\"" Oct 2 19:06:10.172564 systemd[1]: Started cri-containerd-c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911.scope. Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203866 kernel: kauditd_printk_skb: 34 callbacks suppressed Oct 2 19:06:10.203928 kernel: audit: type=1400 audit(1696273570.202:693): avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=1512 pid=2082 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:10.211353 kernel: audit: type=1300 audit(1696273570.202:693): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=1512 pid=2082 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:10.211440 kernel: audit: type=1327 audit(1696273570.202:693): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6330353061613231363766663836623863636166623637316531666664 Oct 2 19:06:10.202000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6330353061613231363766663836623863636166623637316531666664 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.216914 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.216979 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.221814 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.221901 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.225156 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.229478 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.229565 kernel: audit: type=1400 audit(1696273570.202:694): avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.202000 audit: BPF prog-id=92 op=LOAD Oct 2 19:06:10.202000 audit[2082]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=1512 pid=2082 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:10.202000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6330353061613231363766663836623863636166623637316531666664 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.203000 audit: BPF prog-id=93 op=LOAD Oct 2 19:06:10.203000 audit[2082]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=1512 pid=2082 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:10.203000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6330353061613231363766663836623863636166623637316531666664 Oct 2 19:06:10.207000 audit: BPF prog-id=93 op=UNLOAD Oct 2 19:06:10.207000 audit: BPF prog-id=92 op=UNLOAD Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { perfmon } for pid=2082 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit[2082]: AVC avc: denied { bpf } for pid=2082 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:10.207000 audit: BPF prog-id=94 op=LOAD Oct 2 19:06:10.207000 audit[2082]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=1512 pid=2082 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:10.207000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6330353061613231363766663836623863636166623637316531666664 Oct 2 19:06:10.235331 env[1138]: time="2023-10-02T19:06:10.235279615Z" level=info msg="StartContainer for \"c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911\" returns successfully" Oct 2 19:06:10.363344 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Oct 2 19:06:10.363455 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Oct 2 19:06:10.566915 kubelet[1435]: E1002 19:06:10.566795 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:10.741562 kubelet[1435]: E1002 19:06:10.741330 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:10.761664 kubelet[1435]: I1002 19:06:10.761628 1435 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-sxncd" podStartSLOduration=2.1962985489999998 podCreationTimestamp="2023-10-02 19:05:56 +0000 UTC" firstStartedPulling="2023-10-02 19:05:57.566924184 +0000 UTC m=+3.815073143" lastFinishedPulling="2023-10-02 19:06:10.132204573 +0000 UTC m=+16.380353533" observedRunningTime="2023-10-02 19:06:10.760228678 +0000 UTC m=+17.008377637" watchObservedRunningTime="2023-10-02 19:06:10.761578939 +0000 UTC m=+17.009727858" Oct 2 19:06:10.947883 systemd[1]: run-containerd-runc-k8s.io-c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911-runc.ecF1qm.mount: Deactivated successfully. Oct 2 19:06:11.567275 kubelet[1435]: E1002 19:06:11.567229 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:11.734000 audit[2225]: AVC avc: denied { write } for pid=2225 comm="tee" name="fd" dev="proc" ino=14132 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.734000 audit[2225]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffdb4e984 a2=241 a3=1b6 items=1 ppid=2168 pid=2225 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.734000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Oct 2 19:06:11.734000 audit: PATH item=0 name="/dev/fd/63" inode=14129 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.734000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.742887 kubelet[1435]: E1002 19:06:11.742842 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:11.741000 audit[2234]: AVC avc: denied { write } for pid=2234 comm="tee" name="fd" dev="proc" ino=15425 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.741000 audit[2234]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd4ae2993 a2=241 a3=1b6 items=1 ppid=2174 pid=2234 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.741000 audit: CWD cwd="/etc/service/enabled/bird6/log" Oct 2 19:06:11.741000 audit: PATH item=0 name="/dev/fd/63" inode=15419 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.741000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.750000 audit[2238]: AVC avc: denied { write } for pid=2238 comm="tee" name="fd" dev="proc" ino=14138 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.750000 audit[2238]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff258c995 a2=241 a3=1b6 items=1 ppid=2178 pid=2238 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.750000 audit: CWD cwd="/etc/service/enabled/cni/log" Oct 2 19:06:11.750000 audit: PATH item=0 name="/dev/fd/63" inode=13231 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.750000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.759000 audit[2249]: AVC avc: denied { write } for pid=2249 comm="tee" name="fd" dev="proc" ino=15429 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.759000 audit[2249]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffcbd40993 a2=241 a3=1b6 items=1 ppid=2184 pid=2249 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.759000 audit: CWD cwd="/etc/service/enabled/confd/log" Oct 2 19:06:11.759000 audit: PATH item=0 name="/dev/fd/63" inode=14746 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.759000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.761000 audit[2247]: AVC avc: denied { write } for pid=2247 comm="tee" name="fd" dev="proc" ino=14142 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.774000 audit[2241]: AVC avc: denied { write } for pid=2241 comm="tee" name="fd" dev="proc" ino=14145 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.761000 audit[2247]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc9bc0983 a2=241 a3=1b6 items=1 ppid=2180 pid=2247 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.761000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Oct 2 19:06:11.761000 audit: PATH item=0 name="/dev/fd/63" inode=14745 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.761000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.774000 audit[2241]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd2b88994 a2=241 a3=1b6 items=1 ppid=2169 pid=2241 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.774000 audit: CWD cwd="/etc/service/enabled/bird/log" Oct 2 19:06:11.774000 audit: PATH item=0 name="/dev/fd/63" inode=13232 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.774000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.780000 audit[2236]: AVC avc: denied { write } for pid=2236 comm="tee" name="fd" dev="proc" ino=13250 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Oct 2 19:06:11.780000 audit[2236]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffe0aa993 a2=241 a3=1b6 items=1 ppid=2176 pid=2236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:11.780000 audit: CWD cwd="/etc/service/enabled/felix/log" Oct 2 19:06:11.780000 audit: PATH item=0 name="/dev/fd/63" inode=15422 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Oct 2 19:06:11.780000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Oct 2 19:06:11.790366 systemd[1]: run-containerd-runc-k8s.io-c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911-runc.WZrCA7.mount: Deactivated successfully. Oct 2 19:06:11.897171 kernel: Initializing XFRM netlink socket Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit: BPF prog-id=95 op=LOAD Oct 2 19:06:12.007000 audit[2343]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe8c975c8 a2=70 a3=0 items=0 ppid=2177 pid=2343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.007000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Oct 2 19:06:12.007000 audit: BPF prog-id=95 op=UNLOAD Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit: BPF prog-id=96 op=LOAD Oct 2 19:06:12.007000 audit[2343]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe8c975c8 a2=70 a3=4a174c items=0 ppid=2177 pid=2343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.007000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Oct 2 19:06:12.007000 audit: BPF prog-id=96 op=UNLOAD Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=ffffe8c975f8 a2=70 a3=2f31879f items=0 ppid=2177 pid=2343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.007000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { perfmon } for pid=2343 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit[2343]: AVC avc: denied { bpf } for pid=2343 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.007000 audit: BPF prog-id=97 op=LOAD Oct 2 19:06:12.007000 audit[2343]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffe8c97548 a2=70 a3=2f3187b9 items=0 ppid=2177 pid=2343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.007000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Oct 2 19:06:12.012000 audit[2347]: AVC avc: denied { bpf } for pid=2347 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.012000 audit[2347]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd575af68 a2=70 a3=0 items=0 ppid=2177 pid=2347 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.012000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Oct 2 19:06:12.012000 audit[2347]: AVC avc: denied { bpf } for pid=2347 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:12.012000 audit[2347]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd575ae48 a2=70 a3=2 items=0 ppid=2177 pid=2347 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.012000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Oct 2 19:06:12.020000 audit: BPF prog-id=97 op=UNLOAD Oct 2 19:06:12.104000 audit[2374]: NETFILTER_CFG table=mangle:65 family=2 entries=19 op=nft_register_chain pid=2374 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:12.104000 audit[2374]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=ffffde903340 a2=0 a3=ffffb464dfa0 items=0 ppid=2177 pid=2374 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.104000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:12.108000 audit[2373]: NETFILTER_CFG table=raw:66 family=2 entries=19 op=nft_register_chain pid=2373 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:12.108000 audit[2373]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffdf22b300 a2=0 a3=ffffa855efa0 items=0 ppid=2177 pid=2373 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.108000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:12.110000 audit[2375]: NETFILTER_CFG table=nat:67 family=2 entries=16 op=nft_register_chain pid=2375 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:12.110000 audit[2375]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=ffffe6340020 a2=0 a3=ffff83279fa0 items=0 ppid=2177 pid=2375 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.110000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:12.113000 audit[2379]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2379 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:12.113000 audit[2379]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18472 a0=3 a1=ffffc01e3c10 a2=0 a3=ffffb175efa0 items=0 ppid=2177 pid=2379 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:12.113000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:12.567815 kubelet[1435]: E1002 19:06:12.567758 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:12.744534 kubelet[1435]: E1002 19:06:12.744508 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:12.759143 systemd[1]: run-containerd-runc-k8s.io-c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911-runc.xVeFnG.mount: Deactivated successfully. Oct 2 19:06:12.908454 systemd-networkd[1044]: vxlan.calico: Link UP Oct 2 19:06:12.908459 systemd-networkd[1044]: vxlan.calico: Gained carrier Oct 2 19:06:13.568579 kubelet[1435]: E1002 19:06:13.568532 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:14.550790 kubelet[1435]: E1002 19:06:14.550726 1435 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:14.558238 systemd-networkd[1044]: vxlan.calico: Gained IPv6LL Oct 2 19:06:14.568921 kubelet[1435]: E1002 19:06:14.568884 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:15.569367 kubelet[1435]: E1002 19:06:15.569322 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:16.570127 kubelet[1435]: E1002 19:06:16.569677 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:17.476997 systemd[1]: run-containerd-runc-k8s.io-c050aa2167ff86b8ccafb671e1ffd60e1dfdfd00ffca99ce246395c28c98b911-runc.k5RtPq.mount: Deactivated successfully. Oct 2 19:06:17.542804 kubelet[1435]: E1002 19:06:17.542777 1435 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Oct 2 19:06:17.571351 kubelet[1435]: E1002 19:06:17.569804 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:17.676264 env[1138]: time="2023-10-02T19:06:17.676214139Z" level=info msg="StopPodSandbox for \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\"" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.726 [INFO][2478] k8s.go 576: Cleaning up netns ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.726 [INFO][2478] dataplane_linux.go 524: Deleting workload's device in netns. ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" iface="eth0" netns="/var/run/netns/cni-4bc5258a-9bc0-67ca-7591-688e5ef19515" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.727 [INFO][2478] dataplane_linux.go 535: Entered netns, deleting veth. ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" iface="eth0" netns="/var/run/netns/cni-4bc5258a-9bc0-67ca-7591-688e5ef19515" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.727 [INFO][2478] dataplane_linux.go 562: Workload's veth was already gone. Nothing to do. ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" iface="eth0" netns="/var/run/netns/cni-4bc5258a-9bc0-67ca-7591-688e5ef19515" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.727 [INFO][2478] k8s.go 583: Releasing IP address(es) ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.727 [INFO][2478] utils.go 196: Calico CNI releasing IP address ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.791 [INFO][2485] ipam_plugin.go 416: Releasing address using handleID ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" HandleID="k8s-pod-network.4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.811590 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:17.811590 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.804 [WARNING][2485] ipam_plugin.go 433: Asked to release address but it doesn't exist. Ignoring ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" HandleID="k8s-pod-network.4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.804 [INFO][2485] ipam_plugin.go 444: Releasing address using workloadID ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" HandleID="k8s-pod-network.4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.811590 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:17.811590 env[1138]: 2023-10-02 19:06:17.810 [INFO][2478] k8s.go 589: Teardown processing complete. ContainerID="4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4" Oct 2 19:06:17.812764 systemd[1]: run-netns-cni\x2d4bc5258a\x2d9bc0\x2d67ca\x2d7591\x2d688e5ef19515.mount: Deactivated successfully. Oct 2 19:06:17.812990 env[1138]: time="2023-10-02T19:06:17.812953300Z" level=info msg="TearDown network for sandbox \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\" successfully" Oct 2 19:06:17.813071 env[1138]: time="2023-10-02T19:06:17.813054548Z" level=info msg="StopPodSandbox for \"4707876f896905b01e722171c83559e98931c442806ba51780ffba92bfdc4fe4\" returns successfully" Oct 2 19:06:17.814127 env[1138]: time="2023-10-02T19:06:17.814060983Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-gvdxl,Uid:7cfca65b-434a-4b72-810f-e6a8f69cec1d,Namespace:calico-system,Attempt:1,}" Oct 2 19:06:17.969251 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Oct 2 19:06:17.969361 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali9f14e7b2f9b: link becomes ready Oct 2 19:06:17.977407 systemd-networkd[1044]: cali9f14e7b2f9b: Link UP Oct 2 19:06:17.977412 systemd-networkd[1044]: cali9f14e7b2f9b: Gained carrier Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.881 [INFO][2492] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.99-k8s-csi--node--driver--gvdxl-eth0 csi-node-driver- calico-system 7cfca65b-434a-4b72-810f-e6a8f69cec1d 1286 0 2023-10-02 19:06:05 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:6b49688c47 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.99 csi-node-driver-gvdxl eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali9f14e7b2f9b [] []}} ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.882 [INFO][2492] k8s.go 74: Extracted identifiers for CmdAddK8s ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.918 [INFO][2505] ipam_plugin.go 229: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" HandleID="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.933 [INFO][2505] ipam_plugin.go 269: Auto assigning IP ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" HandleID="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000446ad0), Attrs:map[string]string{"namespace":"calico-system", "node":"10.0.0.99", "pod":"csi-node-driver-gvdxl", "timestamp":"2023-10-02 19:06:17.918615277 +0000 UTC"}, Hostname:"10.0.0.99", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Oct 2 19:06:17.989977 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:17.989977 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.933 [INFO][2505] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.99' Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.937 [INFO][2505] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.943 [INFO][2505] ipam.go 372: Looking up existing affinities for host host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.949 [INFO][2505] ipam.go 489: Trying affinity for 192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.951 [INFO][2505] ipam.go 155: Attempting to load block cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.953 [INFO][2505] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.953 [INFO][2505] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.72.128/26 handle="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.955 [INFO][2505] ipam.go 1682: Creating new handle: k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.958 [INFO][2505] ipam.go 1203: Writing block in order to claim IPs block=192.168.72.128/26 handle="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.964 [INFO][2505] ipam.go 1216: Successfully claimed IPs: [192.168.72.129/26] block=192.168.72.128/26 handle="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.964 [INFO][2505] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.72.129/26] handle="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" host="10.0.0.99" Oct 2 19:06:17.989977 env[1138]: time="2023-10-02T19:06:17Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:17.989977 env[1138]: 2023-10-02 19:06:17.964 [INFO][2505] ipam_plugin.go 287: Calico CNI IPAM assigned addresses IPv4=[192.168.72.129/26] IPv6=[] ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" HandleID="k8s-pod-network.47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Workload="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.966 [INFO][2492] k8s.go 383: Populated endpoint ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-csi--node--driver--gvdxl-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"7cfca65b-434a-4b72-810f-e6a8f69cec1d", ResourceVersion:"1286", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 5, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"6b49688c47", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"", Pod:"csi-node-driver-gvdxl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.72.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9f14e7b2f9b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.966 [INFO][2492] k8s.go 384: Calico CNI using IPs: [192.168.72.129/32] ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.966 [INFO][2492] dataplane_linux.go 68: Setting the host side veth name to cali9f14e7b2f9b ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.969 [INFO][2492] dataplane_linux.go 473: Disabling IPv4 forwarding ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.979 [INFO][2492] k8s.go 411: Added Mac, interface name, and active container ID to endpoint ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-csi--node--driver--gvdxl-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"7cfca65b-434a-4b72-810f-e6a8f69cec1d", ResourceVersion:"1286", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 5, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"6b49688c47", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e", Pod:"csi-node-driver-gvdxl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.72.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9f14e7b2f9b", MAC:"f2:23:96:fd:fb:4d", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:17.990567 env[1138]: 2023-10-02 19:06:17.986 [INFO][2492] k8s.go 489: Wrote updated endpoint to datastore ContainerID="47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e" Namespace="calico-system" Pod="csi-node-driver-gvdxl" WorkloadEndpoint="10.0.0.99-k8s-csi--node--driver--gvdxl-eth0" Oct 2 19:06:18.005895 env[1138]: time="2023-10-02T19:06:18.005829750Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:06:18.004000 audit[2537]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=2537 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:18.006134 env[1138]: time="2023-10-02T19:06:18.005907022Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:06:18.006134 env[1138]: time="2023-10-02T19:06:18.005932873Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:06:18.006134 env[1138]: time="2023-10-02T19:06:18.006084776Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e pid=2536 runtime=io.containerd.runc.v2 Oct 2 19:06:18.006685 kernel: kauditd_printk_skb: 129 callbacks suppressed Oct 2 19:06:18.006739 kernel: audit: type=1325 audit(1696273578.004:719): table=filter:69 family=2 entries=36 op=nft_register_chain pid=2537 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:18.004000 audit[2537]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=ffffceadf010 a2=0 a3=ffff955bffa0 items=0 ppid=2177 pid=2537 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.014507 kernel: audit: type=1300 audit(1696273578.004:719): arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=ffffceadf010 a2=0 a3=ffff955bffa0 items=0 ppid=2177 pid=2537 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.014600 kernel: audit: type=1327 audit(1696273578.004:719): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:18.004000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:18.022654 systemd[1]: Started cri-containerd-47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e.scope. Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.051083 kernel: audit: type=1400 audit(1696273578.045:720): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.051183 kernel: audit: type=1400 audit(1696273578.045:721): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.051209 kernel: audit: type=1400 audit(1696273578.045:722): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.056194 kernel: audit: type=1400 audit(1696273578.045:723): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.056257 kernel: audit: type=1400 audit(1696273578.045:724): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.061472 kernel: audit: type=1400 audit(1696273578.045:725): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.061522 kernel: audit: type=1400 audit(1696273578.045:726): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit: BPF prog-id=98 op=LOAD Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2536 pid=2546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437623231663238376335656436303965636364313430336565616532 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2536 pid=2546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437623231663238376335656436303965636364313430336565616532 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.048000 audit: BPF prog-id=99 op=LOAD Oct 2 19:06:18.048000 audit[2546]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2536 pid=2546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437623231663238376335656436303965636364313430336565616532 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.050000 audit: BPF prog-id=100 op=LOAD Oct 2 19:06:18.050000 audit[2546]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2536 pid=2546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.050000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437623231663238376335656436303965636364313430336565616532 Oct 2 19:06:18.053000 audit: BPF prog-id=100 op=UNLOAD Oct 2 19:06:18.053000 audit: BPF prog-id=99 op=UNLOAD Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { perfmon } for pid=2546 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit[2546]: AVC avc: denied { bpf } for pid=2546 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.053000 audit: BPF prog-id=101 op=LOAD Oct 2 19:06:18.053000 audit[2546]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2536 pid=2546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.053000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437623231663238376335656436303965636364313430336565616532 Oct 2 19:06:18.064093 systemd-resolved[1084]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Oct 2 19:06:18.088892 env[1138]: time="2023-10-02T19:06:18.088848748Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-gvdxl,Uid:7cfca65b-434a-4b72-810f-e6a8f69cec1d,Namespace:calico-system,Attempt:1,} returns sandbox id \"47b21f287c5ed609eccd1403eeae230f6bc209d398587f60bf889128eb41710e\"" Oct 2 19:06:18.090799 env[1138]: time="2023-10-02T19:06:18.090767140Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.25.0\"" Oct 2 19:06:18.235499 env[1138]: time="2023-10-02T19:06:18.235422308Z" level=info msg="trying next host" error="failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" host=ghcr.io Oct 2 19:06:18.236245 env[1138]: time="2023-10-02T19:06:18.236195907Z" level=error msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.25.0\" failed" error="failed to pull and unpack image \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" Oct 2 19:06:18.236486 kubelet[1435]: E1002 19:06:18.236449 1435 remote_image.go:180] "PullImage from image service failed" err="rpc error: code = Unknown desc = failed to pull and unpack image \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/csi:v3.25.0" Oct 2 19:06:18.236540 kubelet[1435]: E1002 19:06:18.236502 1435 kuberuntime_image.go:53] "Failed to pull image" err="failed to pull and unpack image \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/csi:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/csi:v3.25.0" Oct 2 19:06:18.236903 kubelet[1435]: E1002 19:06:18.236860 1435 kuberuntime_manager.go:1209] container &Container{Name:calico-csi,Image:ghcr.io/flatcar/calico/csi:v3.25.0,Command:[],Args:[--nodeid=$(KUBE_NODE_NAME) --loglevel=$(LOG_LEVEL)],WorkingDir:,Ports:[]ContainerPort{},Env:[]EnvVar{EnvVar{Name:LOG_LEVEL,Value:warn,ValueFrom:nil,},EnvVar{Name:KUBE_NODE_NAME,Value:,ValueFrom:&EnvVarSource{FieldRef:&ObjectFieldSelector{APIVersion:v1,FieldPath:spec.nodeName,},ResourceFieldRef:nil,ConfigMapKeyRef:nil,SecretKeyRef:nil,},},},Resources:ResourceRequirements{Limits:ResourceList{},Requests:ResourceList{},Claims:[]ResourceClaim{},},VolumeMounts:[]VolumeMount{VolumeMount{Name:varrun,ReadOnly:false,MountPath:/var/run,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:etccalico,ReadOnly:false,MountPath:/etc/calico,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:socket-dir,ReadOnly:false,MountPath:/csi,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:kubelet-dir,ReadOnly:false,MountPath:/var/lib/kubelet,SubPath:,MountPropagation:*Bidirectional,SubPathExpr:,},VolumeMount{Name:kube-api-access-vfpg2,ReadOnly:true,MountPath:/var/run/secrets/kubernetes.io/serviceaccount,SubPath:,MountPropagation:nil,SubPathExpr:,},},LivenessProbe:nil,ReadinessProbe:nil,Lifecycle:nil,TerminationMessagePath:/dev/termination-log,ImagePullPolicy:IfNotPresent,SecurityContext:&SecurityContext{Capabilities:nil,Privileged:*true,SELinuxOptions:nil,RunAsUser:nil,RunAsNonRoot:nil,ReadOnlyRootFilesystem:nil,AllowPrivilegeEscalation:nil,RunAsGroup:nil,ProcMount:nil,WindowsOptions:nil,SeccompProfile:nil,},Stdin:false,StdinOnce:false,TTY:false,EnvFrom:[]EnvFromSource{},TerminationMessagePolicy:File,VolumeDevices:[]VolumeDevice{},StartupProbe:nil,ResizePolicy:[]ContainerResizePolicy{},RestartPolicy:nil,} start failed in pod csi-node-driver-gvdxl_calico-system(7cfca65b-434a-4b72-810f-e6a8f69cec1d): ErrImagePull: failed to pull and unpack image "ghcr.io/flatcar/calico/csi:v3.25.0": failed to resolve reference "ghcr.io/flatcar/calico/csi:v3.25.0": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden Oct 2 19:06:18.237670 env[1138]: time="2023-10-02T19:06:18.237635622Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\"" Oct 2 19:06:18.383733 env[1138]: time="2023-10-02T19:06:18.383514814Z" level=info msg="trying next host" error="failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" host=ghcr.io Oct 2 19:06:18.384614 env[1138]: time="2023-10-02T19:06:18.384422349Z" level=error msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\" failed" error="failed to pull and unpack image \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" Oct 2 19:06:18.384751 kubelet[1435]: E1002 19:06:18.384667 1435 remote_image.go:180] "PullImage from image service failed" err="rpc error: code = Unknown desc = failed to pull and unpack image \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0" Oct 2 19:06:18.384751 kubelet[1435]: E1002 19:06:18.384728 1435 kuberuntime_image.go:53] "Failed to pull image" err="failed to pull and unpack image \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0" Oct 2 19:06:18.384751 kubelet[1435]: E1002 19:06:18.384824 1435 kuberuntime_manager.go:1209] container &Container{Name:csi-node-driver-registrar,Image:ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0,Command:[],Args:[--v=5 --csi-address=$(ADDRESS) --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH)],WorkingDir:,Ports:[]ContainerPort{},Env:[]EnvVar{EnvVar{Name:ADDRESS,Value:/csi/csi.sock,ValueFrom:nil,},EnvVar{Name:DRIVER_REG_SOCK_PATH,Value:/var/lib/kubelet/plugins/csi.tigera.io/csi.sock,ValueFrom:nil,},EnvVar{Name:KUBE_NODE_NAME,Value:,ValueFrom:&EnvVarSource{FieldRef:&ObjectFieldSelector{APIVersion:v1,FieldPath:spec.nodeName,},ResourceFieldRef:nil,ConfigMapKeyRef:nil,SecretKeyRef:nil,},},},Resources:ResourceRequirements{Limits:ResourceList{},Requests:ResourceList{},Claims:[]ResourceClaim{},},VolumeMounts:[]VolumeMount{VolumeMount{Name:socket-dir,ReadOnly:false,MountPath:/csi,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:registration-dir,ReadOnly:false,MountPath:/registration,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:kube-api-access-vfpg2,ReadOnly:true,MountPath:/var/run/secrets/kubernetes.io/serviceaccount,SubPath:,MountPropagation:nil,SubPathExpr:,},},LivenessProbe:nil,ReadinessProbe:nil,Lifecycle:nil,TerminationMessagePath:/dev/termination-log,ImagePullPolicy:IfNotPresent,SecurityContext:&SecurityContext{Capabilities:nil,Privileged:*true,SELinuxOptions:nil,RunAsUser:nil,RunAsNonRoot:nil,ReadOnlyRootFilesystem:nil,AllowPrivilegeEscalation:nil,RunAsGroup:nil,ProcMount:nil,WindowsOptions:nil,SeccompProfile:nil,},Stdin:false,StdinOnce:false,TTY:false,EnvFrom:[]EnvFromSource{},TerminationMessagePolicy:File,VolumeDevices:[]VolumeDevice{},StartupProbe:nil,ResizePolicy:[]ContainerResizePolicy{},RestartPolicy:nil,} start failed in pod csi-node-driver-gvdxl_calico-system(7cfca65b-434a-4b72-810f-e6a8f69cec1d): ErrImagePull: failed to pull and unpack image "ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0": failed to resolve reference "ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden Oct 2 19:06:18.385252 kubelet[1435]: E1002 19:06:18.384893 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="[failed to \"StartContainer\" for \"calico-csi\" with ErrImagePull: \"failed to pull and unpack image \\\"ghcr.io/flatcar/calico/csi:v3.25.0\\\": failed to resolve reference \\\"ghcr.io/flatcar/calico/csi:v3.25.0\\\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden\", failed to \"StartContainer\" for \"csi-node-driver-registrar\" with ErrImagePull: \"failed to pull and unpack image \\\"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\\\": failed to resolve reference \\\"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\\\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden\"]" pod="calico-system/csi-node-driver-gvdxl" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" Oct 2 19:06:18.570483 kubelet[1435]: E1002 19:06:18.570438 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:18.675814 env[1138]: time="2023-10-02T19:06:18.675688211Z" level=info msg="StopPodSandbox for \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\"" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.717 [INFO][2586] k8s.go 576: Cleaning up netns ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.718 [INFO][2586] dataplane_linux.go 524: Deleting workload's device in netns. ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" iface="eth0" netns="/var/run/netns/cni-5aa2157e-2f11-3cf1-46d3-58e8cfe1e852" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.718 [INFO][2586] dataplane_linux.go 535: Entered netns, deleting veth. ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" iface="eth0" netns="/var/run/netns/cni-5aa2157e-2f11-3cf1-46d3-58e8cfe1e852" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.718 [INFO][2586] dataplane_linux.go 562: Workload's veth was already gone. Nothing to do. ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" iface="eth0" netns="/var/run/netns/cni-5aa2157e-2f11-3cf1-46d3-58e8cfe1e852" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.718 [INFO][2586] k8s.go 583: Releasing IP address(es) ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.718 [INFO][2586] utils.go 196: Calico CNI releasing IP address ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.738 [INFO][2593] ipam_plugin.go 416: Releasing address using handleID ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" HandleID="k8s-pod-network.e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.752865 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:18.752865 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.748 [WARNING][2593] ipam_plugin.go 433: Asked to release address but it doesn't exist. Ignoring ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" HandleID="k8s-pod-network.e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.748 [INFO][2593] ipam_plugin.go 444: Releasing address using workloadID ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" HandleID="k8s-pod-network.e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.752865 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:18.752865 env[1138]: 2023-10-02 19:06:18.751 [INFO][2586] k8s.go 589: Teardown processing complete. ContainerID="e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c" Oct 2 19:06:18.754414 env[1138]: time="2023-10-02T19:06:18.754363216Z" level=info msg="TearDown network for sandbox \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\" successfully" Oct 2 19:06:18.754414 env[1138]: time="2023-10-02T19:06:18.754406994Z" level=info msg="StopPodSandbox for \"e4da6f3dd23aa85bb82d2e67373e4299dbbd20c79396805d57e62e53b9e4199c\" returns successfully" Oct 2 19:06:18.755124 env[1138]: time="2023-10-02T19:06:18.755080592Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-8cqbs,Uid:2c0f780b-e71e-4a86-bc8a-5471d011bcbf,Namespace:default,Attempt:1,}" Oct 2 19:06:18.755345 systemd[1]: run-netns-cni\x2d5aa2157e\x2d2f11\x2d3cf1\x2d46d3\x2d58e8cfe1e852.mount: Deactivated successfully. Oct 2 19:06:18.760649 kubelet[1435]: E1002 19:06:18.760611 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="[failed to \"StartContainer\" for \"calico-csi\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/csi:v3.25.0\\\"\", failed to \"StartContainer\" for \"csi-node-driver-registrar\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\\\"\"]" pod="calico-system/csi-node-driver-gvdxl" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" Oct 2 19:06:18.872143 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): caliadf802b2f61: link becomes ready Oct 2 19:06:18.883532 systemd-networkd[1044]: caliadf802b2f61: Link UP Oct 2 19:06:18.883538 systemd-networkd[1044]: caliadf802b2f61: Gained carrier Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.805 [INFO][2600] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0 nginx-deployment-6d5f899847- default 2c0f780b-e71e-4a86-bc8a-5471d011bcbf 1298 0 2023-10-02 19:06:07 +0000 UTC map[app:nginx pod-template-hash:6d5f899847 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.99 nginx-deployment-6d5f899847-8cqbs eth0 default [] [] [kns.default ksa.default.default] caliadf802b2f61 [] []}} ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.805 [INFO][2600] k8s.go 74: Extracted identifiers for CmdAddK8s ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.831 [INFO][2615] ipam_plugin.go 229: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" HandleID="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.844 [INFO][2615] ipam_plugin.go 269: Auto assigning IP ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" HandleID="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40000b5000), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.99", "pod":"nginx-deployment-6d5f899847-8cqbs", "timestamp":"2023-10-02 19:06:18.831405066 +0000 UTC"}, Hostname:"10.0.0.99", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Oct 2 19:06:18.891623 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:18.891623 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.844 [INFO][2615] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.99' Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.845 [INFO][2615] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.849 [INFO][2615] ipam.go 372: Looking up existing affinities for host host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.853 [INFO][2615] ipam.go 489: Trying affinity for 192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.855 [INFO][2615] ipam.go 155: Attempting to load block cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.858 [INFO][2615] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.858 [INFO][2615] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.72.128/26 handle="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.859 [INFO][2615] ipam.go 1682: Creating new handle: k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032 Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.863 [INFO][2615] ipam.go 1203: Writing block in order to claim IPs block=192.168.72.128/26 handle="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.867 [INFO][2615] ipam.go 1216: Successfully claimed IPs: [192.168.72.130/26] block=192.168.72.128/26 handle="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.867 [INFO][2615] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.72.130/26] handle="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" host="10.0.0.99" Oct 2 19:06:18.891623 env[1138]: time="2023-10-02T19:06:18Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:18.891623 env[1138]: 2023-10-02 19:06:18.867 [INFO][2615] ipam_plugin.go 287: Calico CNI IPAM assigned addresses IPv4=[192.168.72.130/26] IPv6=[] ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" HandleID="k8s-pod-network.84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Workload="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.869 [INFO][2600] k8s.go 383: Populated endpoint ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"2c0f780b-e71e-4a86-bc8a-5471d011bcbf", ResourceVersion:"1298", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"", Pod:"nginx-deployment-6d5f899847-8cqbs", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.72.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"caliadf802b2f61", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.869 [INFO][2600] k8s.go 384: Calico CNI using IPs: [192.168.72.130/32] ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.869 [INFO][2600] dataplane_linux.go 68: Setting the host side veth name to caliadf802b2f61 ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.871 [INFO][2600] dataplane_linux.go 473: Disabling IPv4 forwarding ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.883 [INFO][2600] k8s.go 411: Added Mac, interface name, and active container ID to endpoint ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"2c0f780b-e71e-4a86-bc8a-5471d011bcbf", ResourceVersion:"1298", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032", Pod:"nginx-deployment-6d5f899847-8cqbs", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.72.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"caliadf802b2f61", MAC:"62:90:e4:16:af:16", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:18.892408 env[1138]: 2023-10-02 19:06:18.889 [INFO][2600] k8s.go 489: Wrote updated endpoint to datastore ContainerID="84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032" Namespace="default" Pod="nginx-deployment-6d5f899847-8cqbs" WorkloadEndpoint="10.0.0.99-k8s-nginx--deployment--6d5f899847--8cqbs-eth0" Oct 2 19:06:18.905250 env[1138]: time="2023-10-02T19:06:18.905159118Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:06:18.905250 env[1138]: time="2023-10-02T19:06:18.905208899Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:06:18.905250 env[1138]: time="2023-10-02T19:06:18.905218863Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:06:18.905384 env[1138]: time="2023-10-02T19:06:18.905349277Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032 pid=2646 runtime=io.containerd.runc.v2 Oct 2 19:06:18.905000 audit[2651]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=2651 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:18.905000 audit[2651]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=fffff5cfeda0 a2=0 a3=ffff9ad88fa0 items=0 ppid=2177 pid=2651 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.905000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:18.917677 systemd[1]: Started cri-containerd-84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032.scope. Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.935000 audit: BPF prog-id=102 op=LOAD Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2646 pid=2655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834383233323334643161613862383861643166343633383664613564 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2646 pid=2655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834383233323334643161613862383861643166343633383664613564 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit: BPF prog-id=103 op=LOAD Oct 2 19:06:18.936000 audit[2655]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2646 pid=2655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834383233323334643161613862383861643166343633383664613564 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit: BPF prog-id=104 op=LOAD Oct 2 19:06:18.936000 audit[2655]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2646 pid=2655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834383233323334643161613862383861643166343633383664613564 Oct 2 19:06:18.936000 audit: BPF prog-id=104 op=UNLOAD Oct 2 19:06:18.936000 audit: BPF prog-id=103 op=UNLOAD Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { perfmon } for pid=2655 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit[2655]: AVC avc: denied { bpf } for pid=2655 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:18.936000 audit: BPF prog-id=105 op=LOAD Oct 2 19:06:18.936000 audit[2655]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2646 pid=2655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:18.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834383233323334643161613862383861643166343633383664613564 Oct 2 19:06:18.938261 systemd-resolved[1084]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Oct 2 19:06:18.955051 env[1138]: time="2023-10-02T19:06:18.954993935Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-8cqbs,Uid:2c0f780b-e71e-4a86-bc8a-5471d011bcbf,Namespace:default,Attempt:1,} returns sandbox id \"84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032\"" Oct 2 19:06:18.956617 env[1138]: time="2023-10-02T19:06:18.956589674Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Oct 2 19:06:19.486353 systemd-networkd[1044]: cali9f14e7b2f9b: Gained IPv6LL Oct 2 19:06:19.571544 kubelet[1435]: E1002 19:06:19.571497 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:19.763803 kubelet[1435]: E1002 19:06:19.763619 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="[failed to \"StartContainer\" for \"calico-csi\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/csi:v3.25.0\\\"\", failed to \"StartContainer\" for \"csi-node-driver-registrar\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/node-driver-registrar:v3.25.0\\\"\"]" pod="calico-system/csi-node-driver-gvdxl" podUID="7cfca65b-434a-4b72-810f-e6a8f69cec1d" Oct 2 19:06:20.510309 systemd-networkd[1044]: caliadf802b2f61: Gained IPv6LL Oct 2 19:06:20.572007 kubelet[1435]: E1002 19:06:20.571969 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:21.572284 kubelet[1435]: E1002 19:06:21.572242 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:22.044196 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3564535123.mount: Deactivated successfully. Oct 2 19:06:22.572603 kubelet[1435]: E1002 19:06:22.572548 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:22.981435 env[1138]: time="2023-10-02T19:06:22.981382090Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:22.982512 env[1138]: time="2023-10-02T19:06:22.982489883Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7a57d753be2d9e69d7787326e21137e5f57448955d7294cea9891e593fc97821,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:22.984079 env[1138]: time="2023-10-02T19:06:22.984053126Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:22.986341 env[1138]: time="2023-10-02T19:06:22.986318247Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:637f6b877b0a51c456b44ec74046864b5131a87cb1c4536f11170201073027cf,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Oct 2 19:06:22.986968 env[1138]: time="2023-10-02T19:06:22.986938863Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:7a57d753be2d9e69d7787326e21137e5f57448955d7294cea9891e593fc97821\"" Oct 2 19:06:22.989180 env[1138]: time="2023-10-02T19:06:22.989150409Z" level=info msg="CreateContainer within sandbox \"84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Oct 2 19:06:22.997742 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1627965763.mount: Deactivated successfully. Oct 2 19:06:23.000741 env[1138]: time="2023-10-02T19:06:23.000706481Z" level=info msg="CreateContainer within sandbox \"84823234d1aa8b88ad1f46386da5d349b1be1a886e935b25b7c218c414776032\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"588736ed41852db2358d2e5f76314d2d1acfa84815b51cedb8df371eae5e5281\"" Oct 2 19:06:23.001438 env[1138]: time="2023-10-02T19:06:23.001408835Z" level=info msg="StartContainer for \"588736ed41852db2358d2e5f76314d2d1acfa84815b51cedb8df371eae5e5281\"" Oct 2 19:06:23.019575 systemd[1]: Started cri-containerd-588736ed41852db2358d2e5f76314d2d1acfa84815b51cedb8df371eae5e5281.scope. Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.044309 kernel: kauditd_printk_skb: 110 callbacks suppressed Oct 2 19:06:23.044343 kernel: audit: type=1400 audit(1696273583.042:757): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.049076 kernel: audit: type=1400 audit(1696273583.042:758): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.051523 kernel: audit: type=1400 audit(1696273583.042:759): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.051558 kernel: audit: type=1400 audit(1696273583.042:760): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.056325 kernel: audit: type=1400 audit(1696273583.042:761): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.056366 kernel: audit: type=1400 audit(1696273583.042:762): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.061107 kernel: audit: type=1400 audit(1696273583.042:763): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.063976 kernel: audit: type=1400 audit(1696273583.042:764): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.042000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.066476 kernel: audit: type=1400 audit(1696273583.042:765): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.066539 kernel: audit: type=1400 audit(1696273583.043:766): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit: BPF prog-id=106 op=LOAD Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=2646 pid=2701 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:23.043000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3538383733366564343138353264623233353864326535663736333134 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=2646 pid=2701 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:23.043000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3538383733366564343138353264623233353864326535663736333134 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.043000 audit: BPF prog-id=107 op=LOAD Oct 2 19:06:23.043000 audit[2701]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=2646 pid=2701 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:23.043000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3538383733366564343138353264623233353864326535663736333134 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.045000 audit: BPF prog-id=108 op=LOAD Oct 2 19:06:23.045000 audit[2701]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=2646 pid=2701 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:23.045000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3538383733366564343138353264623233353864326535663736333134 Oct 2 19:06:23.047000 audit: BPF prog-id=108 op=UNLOAD Oct 2 19:06:23.048000 audit: BPF prog-id=107 op=UNLOAD Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { perfmon } for pid=2701 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit[2701]: AVC avc: denied { bpf } for pid=2701 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:23.048000 audit: BPF prog-id=109 op=LOAD Oct 2 19:06:23.048000 audit[2701]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=2646 pid=2701 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:23.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3538383733366564343138353264623233353864326535663736333134 Oct 2 19:06:23.079465 env[1138]: time="2023-10-02T19:06:23.079414231Z" level=info msg="StartContainer for \"588736ed41852db2358d2e5f76314d2d1acfa84815b51cedb8df371eae5e5281\" returns successfully" Oct 2 19:06:23.572706 kubelet[1435]: E1002 19:06:23.572659 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:23.782994 kubelet[1435]: I1002 19:06:23.782953 1435 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-6d5f899847-8cqbs" podStartSLOduration=12.751834296 podCreationTimestamp="2023-10-02 19:06:07 +0000 UTC" firstStartedPulling="2023-10-02 19:06:18.956162057 +0000 UTC m=+25.204310976" lastFinishedPulling="2023-10-02 19:06:22.98724527 +0000 UTC m=+29.235394229" observedRunningTime="2023-10-02 19:06:23.782678965 +0000 UTC m=+30.030827924" watchObservedRunningTime="2023-10-02 19:06:23.782917549 +0000 UTC m=+30.031066508" Oct 2 19:06:24.449000 audit[2751]: NETFILTER_CFG table=filter:71 family=2 entries=9 op=nft_register_rule pid=2751 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:24.449000 audit[2751]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffe8ca34e0 a2=0 a3=ffff9a79f6c0 items=0 ppid=1696 pid=2751 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:24.449000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:24.457342 kubelet[1435]: I1002 19:06:24.457309 1435 topology_manager.go:215] "Topology Admit Handler" podUID="89018a8f-060c-4201-8603-95eb2e3d42a1" podNamespace="calico-apiserver" podName="calico-apiserver-76cff89df8-85t5x" Oct 2 19:06:24.450000 audit[2751]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=2751 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:24.450000 audit[2751]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe8ca34e0 a2=0 a3=ffff9a79f6c0 items=0 ppid=1696 pid=2751 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:24.450000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:24.461733 systemd[1]: Created slice kubepods-besteffort-pod89018a8f_060c_4201_8603_95eb2e3d42a1.slice. Oct 2 19:06:24.463000 audit[2755]: NETFILTER_CFG table=filter:73 family=2 entries=10 op=nft_register_rule pid=2755 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:24.463000 audit[2755]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=fffff716e550 a2=0 a3=ffffaa5d26c0 items=0 ppid=1696 pid=2755 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:24.463000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:24.464000 audit[2755]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=2755 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:24.464000 audit[2755]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=fffff716e550 a2=0 a3=ffffaa5d26c0 items=0 ppid=1696 pid=2755 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:24.464000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:24.472807 kubelet[1435]: I1002 19:06:24.472769 1435 topology_manager.go:215] "Topology Admit Handler" podUID="80134fb9-487d-4ffd-b024-b4ae3e2662b3" podNamespace="calico-apiserver" podName="calico-apiserver-76cff89df8-s5vbn" Oct 2 19:06:24.477449 systemd[1]: Created slice kubepods-besteffort-pod80134fb9_487d_4ffd_b024_b4ae3e2662b3.slice. Oct 2 19:06:24.557272 kubelet[1435]: I1002 19:06:24.557235 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-pqvkb\" (UniqueName: \"kubernetes.io/projected/89018a8f-060c-4201-8603-95eb2e3d42a1-kube-api-access-pqvkb\") pod \"calico-apiserver-76cff89df8-85t5x\" (UID: \"89018a8f-060c-4201-8603-95eb2e3d42a1\") " pod="calico-apiserver/calico-apiserver-76cff89df8-85t5x" Oct 2 19:06:24.557272 kubelet[1435]: I1002 19:06:24.557279 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/80134fb9-487d-4ffd-b024-b4ae3e2662b3-calico-apiserver-certs\") pod \"calico-apiserver-76cff89df8-s5vbn\" (UID: \"80134fb9-487d-4ffd-b024-b4ae3e2662b3\") " pod="calico-apiserver/calico-apiserver-76cff89df8-s5vbn" Oct 2 19:06:24.557433 kubelet[1435]: I1002 19:06:24.557302 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-ssbpc\" (UniqueName: \"kubernetes.io/projected/80134fb9-487d-4ffd-b024-b4ae3e2662b3-kube-api-access-ssbpc\") pod \"calico-apiserver-76cff89df8-s5vbn\" (UID: \"80134fb9-487d-4ffd-b024-b4ae3e2662b3\") " pod="calico-apiserver/calico-apiserver-76cff89df8-s5vbn" Oct 2 19:06:24.557433 kubelet[1435]: I1002 19:06:24.557324 1435 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/89018a8f-060c-4201-8603-95eb2e3d42a1-calico-apiserver-certs\") pod \"calico-apiserver-76cff89df8-85t5x\" (UID: \"89018a8f-060c-4201-8603-95eb2e3d42a1\") " pod="calico-apiserver/calico-apiserver-76cff89df8-85t5x" Oct 2 19:06:24.573206 kubelet[1435]: E1002 19:06:24.573168 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:24.764535 env[1138]: time="2023-10-02T19:06:24.764421929Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-76cff89df8-85t5x,Uid:89018a8f-060c-4201-8603-95eb2e3d42a1,Namespace:calico-apiserver,Attempt:0,}" Oct 2 19:06:24.780632 env[1138]: time="2023-10-02T19:06:24.780587781Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-76cff89df8-s5vbn,Uid:80134fb9-487d-4ffd-b024-b4ae3e2662b3,Namespace:calico-apiserver,Attempt:0,}" Oct 2 19:06:24.889632 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Oct 2 19:06:24.889759 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali445680461f3: link becomes ready Oct 2 19:06:24.900388 systemd-networkd[1044]: cali445680461f3: Link UP Oct 2 19:06:24.900396 systemd-networkd[1044]: cali445680461f3: Gained carrier Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.814 [INFO][2760] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0 calico-apiserver-76cff89df8- calico-apiserver 89018a8f-060c-4201-8603-95eb2e3d42a1 1383 0 2023-10-02 19:06:24 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:76cff89df8 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 10.0.0.99 calico-apiserver-76cff89df8-85t5x eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali445680461f3 [] []}} ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.814 [INFO][2760] k8s.go 74: Extracted identifiers for CmdAddK8s ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.847 [INFO][2791] ipam_plugin.go 229: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" HandleID="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.860 [INFO][2791] ipam_plugin.go 269: Auto assigning IP ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" HandleID="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400004dbc0), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"10.0.0.99", "pod":"calico-apiserver-76cff89df8-85t5x", "timestamp":"2023-10-02 19:06:24.847219046 +0000 UTC"}, Hostname:"10.0.0.99", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Oct 2 19:06:24.908569 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:24.908569 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.860 [INFO][2791] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.99' Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.862 [INFO][2791] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.866 [INFO][2791] ipam.go 372: Looking up existing affinities for host host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.870 [INFO][2791] ipam.go 489: Trying affinity for 192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.872 [INFO][2791] ipam.go 155: Attempting to load block cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.874 [INFO][2791] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.874 [INFO][2791] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.72.128/26 handle="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.877 [INFO][2791] ipam.go 1682: Creating new handle: k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.880 [INFO][2791] ipam.go 1203: Writing block in order to claim IPs block=192.168.72.128/26 handle="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.885 [INFO][2791] ipam.go 1216: Successfully claimed IPs: [192.168.72.131/26] block=192.168.72.128/26 handle="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.885 [INFO][2791] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.72.131/26] handle="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" host="10.0.0.99" Oct 2 19:06:24.908569 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:24.908569 env[1138]: 2023-10-02 19:06:24.885 [INFO][2791] ipam_plugin.go 287: Calico CNI IPAM assigned addresses IPv4=[192.168.72.131/26] IPv6=[] ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" HandleID="k8s-pod-network.2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.886 [INFO][2760] k8s.go 383: Populated endpoint ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0", GenerateName:"calico-apiserver-76cff89df8-", Namespace:"calico-apiserver", SelfLink:"", UID:"89018a8f-060c-4201-8603-95eb2e3d42a1", ResourceVersion:"1383", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"76cff89df8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"", Pod:"calico-apiserver-76cff89df8-85t5x", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.72.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali445680461f3", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.886 [INFO][2760] k8s.go 384: Calico CNI using IPs: [192.168.72.131/32] ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.886 [INFO][2760] dataplane_linux.go 68: Setting the host side veth name to cali445680461f3 ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.889 [INFO][2760] dataplane_linux.go 473: Disabling IPv4 forwarding ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.900 [INFO][2760] k8s.go 411: Added Mac, interface name, and active container ID to endpoint ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0", GenerateName:"calico-apiserver-76cff89df8-", Namespace:"calico-apiserver", SelfLink:"", UID:"89018a8f-060c-4201-8603-95eb2e3d42a1", ResourceVersion:"1383", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"76cff89df8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc", Pod:"calico-apiserver-76cff89df8-85t5x", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.72.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali445680461f3", MAC:"5e:d3:bb:5d:66:31", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:24.909121 env[1138]: 2023-10-02 19:06:24.905 [INFO][2760] k8s.go 489: Wrote updated endpoint to datastore ContainerID="2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-85t5x" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--85t5x-eth0" Oct 2 19:06:24.924000 audit[2822]: NETFILTER_CFG table=filter:75 family=2 entries=51 op=nft_register_chain pid=2822 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:24.924000 audit[2822]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=26916 a0=3 a1=ffffff596fd0 a2=0 a3=ffffb7974fa0 items=0 ppid=2177 pid=2822 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:24.924000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:24.961356 env[1138]: time="2023-10-02T19:06:24.961152763Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:06:24.961356 env[1138]: time="2023-10-02T19:06:24.961189533Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:06:24.961356 env[1138]: time="2023-10-02T19:06:24.961199375Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:06:24.961655 env[1138]: time="2023-10-02T19:06:24.961588994Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc pid=2831 runtime=io.containerd.runc.v2 Oct 2 19:06:24.964204 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali828455bf75b: link becomes ready Oct 2 19:06:24.973196 systemd[1]: Started cri-containerd-2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc.scope. Oct 2 19:06:24.979817 systemd-networkd[1044]: cali828455bf75b: Link UP Oct 2 19:06:24.979824 systemd-networkd[1044]: cali828455bf75b: Gained carrier Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.835 [INFO][2775] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0 calico-apiserver-76cff89df8- calico-apiserver 80134fb9-487d-4ffd-b024-b4ae3e2662b3 1386 0 2023-10-02 19:06:24 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:76cff89df8 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 10.0.0.99 calico-apiserver-76cff89df8-s5vbn eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali828455bf75b [] []}} ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.835 [INFO][2775] k8s.go 74: Extracted identifiers for CmdAddK8s ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.862 [INFO][2797] ipam_plugin.go 229: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" HandleID="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.874 [INFO][2797] ipam_plugin.go 269: Auto assigning IP ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" HandleID="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40004b92e0), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"10.0.0.99", "pod":"calico-apiserver-76cff89df8-s5vbn", "timestamp":"2023-10-02 19:06:24.862344314 +0000 UTC"}, Hostname:"10.0.0.99", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Oct 2 19:06:24.993147 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="About to acquire host-wide IPAM lock." source="ipam_plugin.go:357" Oct 2 19:06:24.993147 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="Acquired host-wide IPAM lock." source="ipam_plugin.go:372" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.885 [INFO][2797] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.99' Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.889 [INFO][2797] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.893 [INFO][2797] ipam.go 372: Looking up existing affinities for host host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.897 [INFO][2797] ipam.go 489: Trying affinity for 192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.899 [INFO][2797] ipam.go 155: Attempting to load block cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.902 [INFO][2797] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.72.128/26 host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.902 [INFO][2797] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.72.128/26 handle="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.904 [INFO][2797] ipam.go 1682: Creating new handle: k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.955 [INFO][2797] ipam.go 1203: Writing block in order to claim IPs block=192.168.72.128/26 handle="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.960 [INFO][2797] ipam.go 1216: Successfully claimed IPs: [192.168.72.132/26] block=192.168.72.128/26 handle="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.960 [INFO][2797] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.72.132/26] handle="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" host="10.0.0.99" Oct 2 19:06:24.993147 env[1138]: time="2023-10-02T19:06:24Z" level=info msg="Released host-wide IPAM lock." source="ipam_plugin.go:378" Oct 2 19:06:24.993147 env[1138]: 2023-10-02 19:06:24.960 [INFO][2797] ipam_plugin.go 287: Calico CNI IPAM assigned addresses IPv4=[192.168.72.132/26] IPv6=[] ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" HandleID="k8s-pod-network.4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Workload="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.961 [INFO][2775] k8s.go 383: Populated endpoint ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0", GenerateName:"calico-apiserver-76cff89df8-", Namespace:"calico-apiserver", SelfLink:"", UID:"80134fb9-487d-4ffd-b024-b4ae3e2662b3", ResourceVersion:"1386", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"76cff89df8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"", Pod:"calico-apiserver-76cff89df8-s5vbn", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.72.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali828455bf75b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.962 [INFO][2775] k8s.go 384: Calico CNI using IPs: [192.168.72.132/32] ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.962 [INFO][2775] dataplane_linux.go 68: Setting the host side veth name to cali828455bf75b ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.963 [INFO][2775] dataplane_linux.go 473: Disabling IPv4 forwarding ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.981 [INFO][2775] k8s.go 411: Added Mac, interface name, and active container ID to endpoint ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0", GenerateName:"calico-apiserver-76cff89df8-", Namespace:"calico-apiserver", SelfLink:"", UID:"80134fb9-487d-4ffd-b024-b4ae3e2662b3", ResourceVersion:"1386", Generation:0, CreationTimestamp:time.Date(2023, time.October, 2, 19, 6, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"76cff89df8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ZZZ_DeprecatedClusterName:"", ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.99", ContainerID:"4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f", Pod:"calico-apiserver-76cff89df8-s5vbn", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.72.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali828455bf75b", MAC:"d6:77:99:95:9e:c1", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Oct 2 19:06:24.993735 env[1138]: 2023-10-02 19:06:24.990 [INFO][2775] k8s.go 489: Wrote updated endpoint to datastore ContainerID="4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f" Namespace="calico-apiserver" Pod="calico-apiserver-76cff89df8-s5vbn" WorkloadEndpoint="10.0.0.99-k8s-calico--apiserver--76cff89df8--s5vbn-eth0" Oct 2 19:06:25.003000 audit[2869]: NETFILTER_CFG table=filter:76 family=2 entries=42 op=nft_register_chain pid=2869 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Oct 2 19:06:25.003000 audit[2869]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=22120 a0=3 a1=ffffe3996090 a2=0 a3=ffffb1f59fa0 items=0 ppid=2177 pid=2869 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.003000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Oct 2 19:06:25.011084 env[1138]: time="2023-10-02T19:06:25.011016009Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Oct 2 19:06:25.011084 env[1138]: time="2023-10-02T19:06:25.011054498Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Oct 2 19:06:25.011266 env[1138]: time="2023-10-02T19:06:25.011223019Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Oct 2 19:06:25.011552 env[1138]: time="2023-10-02T19:06:25.011466157Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f pid=2877 runtime=io.containerd.runc.v2 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.015000 audit: BPF prog-id=110 op=LOAD Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2831 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.016000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3233343539363534373433303362616237393539353337653034613163 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2831 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.016000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3233343539363534373433303362616237393539353337653034613163 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit: BPF prog-id=111 op=LOAD Oct 2 19:06:25.016000 audit[2839]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2831 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.016000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3233343539363534373433303362616237393539353337653034613163 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.016000 audit: BPF prog-id=112 op=LOAD Oct 2 19:06:25.016000 audit[2839]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2831 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.016000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3233343539363534373433303362616237393539353337653034613163 Oct 2 19:06:25.017000 audit: BPF prog-id=112 op=UNLOAD Oct 2 19:06:25.017000 audit: BPF prog-id=111 op=UNLOAD Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { perfmon } for pid=2839 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit[2839]: AVC avc: denied { bpf } for pid=2839 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.017000 audit: BPF prog-id=113 op=LOAD Oct 2 19:06:25.017000 audit[2839]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2831 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.017000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3233343539363534373433303362616237393539353337653034613163 Oct 2 19:06:25.019061 systemd-resolved[1084]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Oct 2 19:06:25.025618 systemd[1]: Started cri-containerd-4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f.scope. Oct 2 19:06:25.045188 env[1138]: time="2023-10-02T19:06:25.045083048Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-76cff89df8-85t5x,Uid:89018a8f-060c-4201-8603-95eb2e3d42a1,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"2345965474303bab7959537e04a1c6cda330ae1b18f217a46b73f302992e09bc\"" Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.045000 audit: BPF prog-id=114 op=LOAD Oct 2 19:06:25.047508 env[1138]: time="2023-10-02T19:06:25.046600692Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.25.0\"" Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=2877 pid=2887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.046000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3465306662626237383838633337393037303038373562386464326535 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=2877 pid=2887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.046000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3465306662626237383838633337393037303038373562386464326535 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.046000 audit: BPF prog-id=115 op=LOAD Oct 2 19:06:25.046000 audit[2887]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=2877 pid=2887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.046000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3465306662626237383838633337393037303038373562386464326535 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit: BPF prog-id=116 op=LOAD Oct 2 19:06:25.047000 audit[2887]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=2877 pid=2887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.047000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3465306662626237383838633337393037303038373562386464326535 Oct 2 19:06:25.047000 audit: BPF prog-id=116 op=UNLOAD Oct 2 19:06:25.047000 audit: BPF prog-id=115 op=UNLOAD Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { perfmon } for pid=2887 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit[2887]: AVC avc: denied { bpf } for pid=2887 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Oct 2 19:06:25.047000 audit: BPF prog-id=117 op=LOAD Oct 2 19:06:25.047000 audit[2887]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=2877 pid=2887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.047000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3465306662626237383838633337393037303038373562386464326535 Oct 2 19:06:25.049479 systemd-resolved[1084]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Oct 2 19:06:25.067770 env[1138]: time="2023-10-02T19:06:25.067731072Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-76cff89df8-s5vbn,Uid:80134fb9-487d-4ffd-b024-b4ae3e2662b3,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"4e0fbbb7888c3790700875b8dd2e56bff3762c88d6059bce31086fd7a441e70f\"" Oct 2 19:06:25.194539 env[1138]: time="2023-10-02T19:06:25.194472706Z" level=info msg="trying next host" error="failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" host=ghcr.io Oct 2 19:06:25.196459 env[1138]: time="2023-10-02T19:06:25.196413651Z" level=error msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.25.0\" failed" error="failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" Oct 2 19:06:25.196698 kubelet[1435]: E1002 19:06:25.196663 1435 remote_image.go:180] "PullImage from image service failed" err="rpc error: code = Unknown desc = failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/apiserver:v3.25.0" Oct 2 19:06:25.196753 kubelet[1435]: E1002 19:06:25.196722 1435 kuberuntime_image.go:53] "Failed to pull image" err="failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/apiserver:v3.25.0" Oct 2 19:06:25.196966 kubelet[1435]: E1002 19:06:25.196933 1435 kuberuntime_manager.go:1209] container &Container{Name:calico-apiserver,Image:ghcr.io/flatcar/calico/apiserver:v3.25.0,Command:[],Args:[--secure-port=5443 --tls-private-key-file=/calico-apiserver-certs/tls.key --tls-cert-file=/calico-apiserver-certs/tls.crt],WorkingDir:,Ports:[]ContainerPort{},Env:[]EnvVar{EnvVar{Name:DATASTORE_TYPE,Value:kubernetes,ValueFrom:nil,},EnvVar{Name:KUBERNETES_SERVICE_HOST,Value:10.96.0.1,ValueFrom:nil,},EnvVar{Name:KUBERNETES_SERVICE_PORT,Value:443,ValueFrom:nil,},EnvVar{Name:MULTI_INTERFACE_MODE,Value:none,ValueFrom:nil,},},Resources:ResourceRequirements{Limits:ResourceList{},Requests:ResourceList{},Claims:[]ResourceClaim{},},VolumeMounts:[]VolumeMount{VolumeMount{Name:calico-apiserver-certs,ReadOnly:true,MountPath:/calico-apiserver-certs,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:kube-api-access-pqvkb,ReadOnly:true,MountPath:/var/run/secrets/kubernetes.io/serviceaccount,SubPath:,MountPropagation:nil,SubPathExpr:,},},LivenessProbe:&Probe{ProbeHandler:ProbeHandler{Exec:nil,HTTPGet:&HTTPGetAction{Path:/version,Port:{0 5443 },Host:,Scheme:HTTPS,HTTPHeaders:[]HTTPHeader{},},TCPSocket:nil,GRPC:nil,},InitialDelaySeconds:90,TimeoutSeconds:1,PeriodSeconds:10,SuccessThreshold:1,FailureThreshold:3,TerminationGracePeriodSeconds:nil,},ReadinessProbe:&Probe{ProbeHandler:ProbeHandler{Exec:&ExecAction{Command:[/code/filecheck],},HTTPGet:nil,TCPSocket:nil,GRPC:nil,},InitialDelaySeconds:5,TimeoutSeconds:1,PeriodSeconds:10,SuccessThreshold:1,FailureThreshold:5,TerminationGracePeriodSeconds:nil,},Lifecycle:nil,TerminationMessagePath:/dev/termination-log,ImagePullPolicy:IfNotPresent,SecurityContext:&SecurityContext{Capabilities:nil,Privileged:*false,SELinuxOptions:nil,RunAsUser:*0,RunAsNonRoot:nil,ReadOnlyRootFilesystem:nil,AllowPrivilegeEscalation:nil,RunAsGroup:nil,ProcMount:nil,WindowsOptions:nil,SeccompProfile:nil,},Stdin:false,StdinOnce:false,TTY:false,EnvFrom:[]EnvFromSource{},TerminationMessagePolicy:File,VolumeDevices:[]VolumeDevice{},StartupProbe:nil,ResizePolicy:[]ContainerResizePolicy{},RestartPolicy:nil,} start failed in pod calico-apiserver-76cff89df8-85t5x_calico-apiserver(89018a8f-060c-4201-8603-95eb2e3d42a1): ErrImagePull: failed to pull and unpack image "ghcr.io/flatcar/calico/apiserver:v3.25.0": failed to resolve reference "ghcr.io/flatcar/calico/apiserver:v3.25.0": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden Oct 2 19:06:25.197067 kubelet[1435]: E1002 19:06:25.196992 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ErrImagePull: \"failed to pull and unpack image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\": failed to resolve reference \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden\"" pod="calico-apiserver/calico-apiserver-76cff89df8-85t5x" podUID="89018a8f-060c-4201-8603-95eb2e3d42a1" Oct 2 19:06:25.197379 env[1138]: time="2023-10-02T19:06:25.197340833Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.25.0\"" Oct 2 19:06:25.349147 env[1138]: time="2023-10-02T19:06:25.349007077Z" level=info msg="trying next host" error="failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" host=ghcr.io Oct 2 19:06:25.350885 env[1138]: time="2023-10-02T19:06:25.350835555Z" level=error msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.25.0\" failed" error="failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" Oct 2 19:06:25.351234 kubelet[1435]: E1002 19:06:25.351207 1435 remote_image.go:180] "PullImage from image service failed" err="rpc error: code = Unknown desc = failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/apiserver:v3.25.0" Oct 2 19:06:25.351320 kubelet[1435]: E1002 19:06:25.351305 1435 kuberuntime_image.go:53] "Failed to pull image" err="failed to pull and unpack image \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to resolve reference \"ghcr.io/flatcar/calico/apiserver:v3.25.0\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden" image="ghcr.io/flatcar/calico/apiserver:v3.25.0" Oct 2 19:06:25.351552 kubelet[1435]: E1002 19:06:25.351491 1435 kuberuntime_manager.go:1209] container &Container{Name:calico-apiserver,Image:ghcr.io/flatcar/calico/apiserver:v3.25.0,Command:[],Args:[--secure-port=5443 --tls-private-key-file=/calico-apiserver-certs/tls.key --tls-cert-file=/calico-apiserver-certs/tls.crt],WorkingDir:,Ports:[]ContainerPort{},Env:[]EnvVar{EnvVar{Name:DATASTORE_TYPE,Value:kubernetes,ValueFrom:nil,},EnvVar{Name:KUBERNETES_SERVICE_HOST,Value:10.96.0.1,ValueFrom:nil,},EnvVar{Name:KUBERNETES_SERVICE_PORT,Value:443,ValueFrom:nil,},EnvVar{Name:MULTI_INTERFACE_MODE,Value:none,ValueFrom:nil,},},Resources:ResourceRequirements{Limits:ResourceList{},Requests:ResourceList{},Claims:[]ResourceClaim{},},VolumeMounts:[]VolumeMount{VolumeMount{Name:calico-apiserver-certs,ReadOnly:true,MountPath:/calico-apiserver-certs,SubPath:,MountPropagation:nil,SubPathExpr:,},VolumeMount{Name:kube-api-access-ssbpc,ReadOnly:true,MountPath:/var/run/secrets/kubernetes.io/serviceaccount,SubPath:,MountPropagation:nil,SubPathExpr:,},},LivenessProbe:&Probe{ProbeHandler:ProbeHandler{Exec:nil,HTTPGet:&HTTPGetAction{Path:/version,Port:{0 5443 },Host:,Scheme:HTTPS,HTTPHeaders:[]HTTPHeader{},},TCPSocket:nil,GRPC:nil,},InitialDelaySeconds:90,TimeoutSeconds:1,PeriodSeconds:10,SuccessThreshold:1,FailureThreshold:3,TerminationGracePeriodSeconds:nil,},ReadinessProbe:&Probe{ProbeHandler:ProbeHandler{Exec:&ExecAction{Command:[/code/filecheck],},HTTPGet:nil,TCPSocket:nil,GRPC:nil,},InitialDelaySeconds:5,TimeoutSeconds:1,PeriodSeconds:10,SuccessThreshold:1,FailureThreshold:5,TerminationGracePeriodSeconds:nil,},Lifecycle:nil,TerminationMessagePath:/dev/termination-log,ImagePullPolicy:IfNotPresent,SecurityContext:&SecurityContext{Capabilities:nil,Privileged:*false,SELinuxOptions:nil,RunAsUser:*0,RunAsNonRoot:nil,ReadOnlyRootFilesystem:nil,AllowPrivilegeEscalation:nil,RunAsGroup:nil,ProcMount:nil,WindowsOptions:nil,SeccompProfile:nil,},Stdin:false,StdinOnce:false,TTY:false,EnvFrom:[]EnvFromSource{},TerminationMessagePolicy:File,VolumeDevices:[]VolumeDevice{},StartupProbe:nil,ResizePolicy:[]ContainerResizePolicy{},RestartPolicy:nil,} start failed in pod calico-apiserver-76cff89df8-s5vbn_calico-apiserver(80134fb9-487d-4ffd-b024-b4ae3e2662b3): ErrImagePull: failed to pull and unpack image "ghcr.io/flatcar/calico/apiserver:v3.25.0": failed to resolve reference "ghcr.io/flatcar/calico/apiserver:v3.25.0": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden Oct 2 19:06:25.351638 kubelet[1435]: E1002 19:06:25.351577 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ErrImagePull: \"failed to pull and unpack image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\": failed to resolve reference \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\": failed to authorize: failed to fetch anonymous token: unexpected status: 403 Forbidden\"" pod="calico-apiserver/calico-apiserver-76cff89df8-s5vbn" podUID="80134fb9-487d-4ffd-b024-b4ae3e2662b3" Oct 2 19:06:25.573825 kubelet[1435]: E1002 19:06:25.573777 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:25.780726 kubelet[1435]: E1002 19:06:25.780691 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\"\"" pod="calico-apiserver/calico-apiserver-76cff89df8-85t5x" podUID="89018a8f-060c-4201-8603-95eb2e3d42a1" Oct 2 19:06:25.781732 kubelet[1435]: E1002 19:06:25.781714 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\"\"" pod="calico-apiserver/calico-apiserver-76cff89df8-s5vbn" podUID="80134fb9-487d-4ffd-b024-b4ae3e2662b3" Oct 2 19:06:25.800000 audit[2920]: NETFILTER_CFG table=filter:77 family=2 entries=10 op=nft_register_rule pid=2920 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:25.800000 audit[2920]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffc805e080 a2=0 a3=ffff8baf76c0 items=0 ppid=1696 pid=2920 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.800000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:25.807000 audit[2920]: NETFILTER_CFG table=nat:78 family=2 entries=20 op=nft_register_rule pid=2920 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:25.807000 audit[2920]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc805e080 a2=0 a3=ffff8baf76c0 items=0 ppid=1696 pid=2920 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:25.807000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:26.574467 kubelet[1435]: E1002 19:06:26.574418 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:26.590275 systemd-networkd[1044]: cali828455bf75b: Gained IPv6LL Oct 2 19:06:26.718254 systemd-networkd[1044]: cali445680461f3: Gained IPv6LL Oct 2 19:06:26.783748 kubelet[1435]: E1002 19:06:26.783719 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\"\"" pod="calico-apiserver/calico-apiserver-76cff89df8-s5vbn" podUID="80134fb9-487d-4ffd-b024-b4ae3e2662b3" Oct 2 19:06:26.783904 kubelet[1435]: E1002 19:06:26.783887 1435 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"StartContainer\" for \"calico-apiserver\" with ImagePullBackOff: \"Back-off pulling image \\\"ghcr.io/flatcar/calico/apiserver:v3.25.0\\\"\"" pod="calico-apiserver/calico-apiserver-76cff89df8-85t5x" podUID="89018a8f-060c-4201-8603-95eb2e3d42a1" Oct 2 19:06:26.828000 audit[2924]: NETFILTER_CFG table=filter:79 family=2 entries=10 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:26.828000 audit[2924]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=fffff7ddf110 a2=0 a3=ffff8e7136c0 items=0 ppid=1696 pid=2924 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:26.828000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:26.829000 audit[2924]: NETFILTER_CFG table=nat:80 family=2 entries=20 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Oct 2 19:06:26.829000 audit[2924]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=fffff7ddf110 a2=0 a3=ffff8e7136c0 items=0 ppid=1696 pid=2924 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Oct 2 19:06:26.829000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Oct 2 19:06:27.574909 kubelet[1435]: E1002 19:06:27.574868 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:28.575788 kubelet[1435]: E1002 19:06:28.575745 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Oct 2 19:06:29.576755 kubelet[1435]: E1002 19:06:29.576711 1435 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"