Feb 12 20:35:20.106605 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (x86_64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP Mon Feb 12 18:05:31 -00 2024 Feb 12 20:35:20.106645 kernel: Command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=gce verity.usrhash=f2beb0668e3dab90bbcf0ace3803b7ee02142bfb86913ef12ef6d2ee81a411a4 Feb 12 20:35:20.106663 kernel: BIOS-provided physical RAM map: Feb 12 20:35:20.106676 kernel: BIOS-e820: [mem 0x0000000000000000-0x0000000000000fff] reserved Feb 12 20:35:20.106689 kernel: BIOS-e820: [mem 0x0000000000001000-0x0000000000054fff] usable Feb 12 20:35:20.106702 kernel: BIOS-e820: [mem 0x0000000000055000-0x000000000005ffff] reserved Feb 12 20:35:20.106721 kernel: BIOS-e820: [mem 0x0000000000060000-0x0000000000097fff] usable Feb 12 20:35:20.106735 kernel: BIOS-e820: [mem 0x0000000000098000-0x000000000009ffff] reserved Feb 12 20:35:20.106748 kernel: BIOS-e820: [mem 0x0000000000100000-0x00000000bf8ecfff] usable Feb 12 20:35:20.106762 kernel: BIOS-e820: [mem 0x00000000bf8ed000-0x00000000bfb6cfff] reserved Feb 12 20:35:20.106776 kernel: BIOS-e820: [mem 0x00000000bfb6d000-0x00000000bfb7efff] ACPI data Feb 12 20:35:20.106790 kernel: BIOS-e820: [mem 0x00000000bfb7f000-0x00000000bfbfefff] ACPI NVS Feb 12 20:35:20.106803 kernel: BIOS-e820: [mem 0x00000000bfbff000-0x00000000bffdffff] usable Feb 12 20:35:20.109367 kernel: BIOS-e820: [mem 0x00000000bffe0000-0x00000000bfffffff] reserved Feb 12 20:35:20.109394 kernel: BIOS-e820: [mem 0x0000000100000000-0x000000021fffffff] usable Feb 12 20:35:20.109410 kernel: NX (Execute Disable) protection: active Feb 12 20:35:20.109425 kernel: efi: EFI v2.70 by EDK II Feb 12 20:35:20.109580 kernel: efi: TPMFinalLog=0xbfbf7000 ACPI=0xbfb7e000 ACPI 2.0=0xbfb7e014 SMBIOS=0xbf9ca000 MEMATTR=0xbe379198 RNG=0xbfb73018 TPMEventLog=0xbe2bd018 Feb 12 20:35:20.109596 kernel: random: crng init done Feb 12 20:35:20.109610 kernel: SMBIOS 2.4 present. Feb 12 20:35:20.109625 kernel: DMI: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/17/2023 Feb 12 20:35:20.109640 kernel: Hypervisor detected: KVM Feb 12 20:35:20.109794 kernel: kvm-clock: Using msrs 4b564d01 and 4b564d00 Feb 12 20:35:20.109832 kernel: kvm-clock: cpu 0, msr 15cfaa001, primary cpu clock Feb 12 20:35:20.109847 kernel: kvm-clock: using sched offset of 13045794539 cycles Feb 12 20:35:20.109996 kernel: clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns Feb 12 20:35:20.110014 kernel: tsc: Detected 2299.998 MHz processor Feb 12 20:35:20.110029 kernel: e820: update [mem 0x00000000-0x00000fff] usable ==> reserved Feb 12 20:35:20.110045 kernel: e820: remove [mem 0x000a0000-0x000fffff] usable Feb 12 20:35:20.110060 kernel: last_pfn = 0x220000 max_arch_pfn = 0x400000000 Feb 12 20:35:20.110144 kernel: x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT Feb 12 20:35:20.110164 kernel: last_pfn = 0xbffe0 max_arch_pfn = 0x400000000 Feb 12 20:35:20.110185 kernel: Using GB pages for direct mapping Feb 12 20:35:20.110208 kernel: Secure boot disabled Feb 12 20:35:20.110223 kernel: ACPI: Early table checksum verification disabled Feb 12 20:35:20.110238 kernel: ACPI: RSDP 0x00000000BFB7E014 000024 (v02 Google) Feb 12 20:35:20.110253 kernel: ACPI: XSDT 0x00000000BFB7D0E8 00005C (v01 Google GOOGFACP 00000001 01000013) Feb 12 20:35:20.110268 kernel: ACPI: FACP 0x00000000BFB78000 0000F4 (v02 Google GOOGFACP 00000001 GOOG 00000001) Feb 12 20:35:20.110283 kernel: ACPI: DSDT 0x00000000BFB79000 001A64 (v01 Google GOOGDSDT 00000001 GOOG 00000001) Feb 12 20:35:20.110298 kernel: ACPI: FACS 0x00000000BFBF2000 000040 Feb 12 20:35:20.110325 kernel: ACPI: SSDT 0x00000000BFB7C000 000316 (v02 GOOGLE Tpm2Tabl 00001000 INTL 20211217) Feb 12 20:35:20.110341 kernel: ACPI: TPM2 0x00000000BFB7B000 000034 (v04 GOOGLE 00000001 GOOG 00000001) Feb 12 20:35:20.110357 kernel: ACPI: SRAT 0x00000000BFB77000 0000C8 (v03 Google GOOGSRAT 00000001 GOOG 00000001) Feb 12 20:35:20.110373 kernel: ACPI: APIC 0x00000000BFB76000 000076 (v05 Google GOOGAPIC 00000001 GOOG 00000001) Feb 12 20:35:20.110390 kernel: ACPI: SSDT 0x00000000BFB75000 000980 (v01 Google GOOGSSDT 00000001 GOOG 00000001) Feb 12 20:35:20.110406 kernel: ACPI: WAET 0x00000000BFB74000 000028 (v01 Google GOOGWAET 00000001 GOOG 00000001) Feb 12 20:35:20.110426 kernel: ACPI: Reserving FACP table memory at [mem 0xbfb78000-0xbfb780f3] Feb 12 20:35:20.110441 kernel: ACPI: Reserving DSDT table memory at [mem 0xbfb79000-0xbfb7aa63] Feb 12 20:35:20.110458 kernel: ACPI: Reserving FACS table memory at [mem 0xbfbf2000-0xbfbf203f] Feb 12 20:35:20.110474 kernel: ACPI: Reserving SSDT table memory at [mem 0xbfb7c000-0xbfb7c315] Feb 12 20:35:20.110489 kernel: ACPI: Reserving TPM2 table memory at [mem 0xbfb7b000-0xbfb7b033] Feb 12 20:35:20.110505 kernel: ACPI: Reserving SRAT table memory at [mem 0xbfb77000-0xbfb770c7] Feb 12 20:35:20.110522 kernel: ACPI: Reserving APIC table memory at [mem 0xbfb76000-0xbfb76075] Feb 12 20:35:20.110537 kernel: ACPI: Reserving SSDT table memory at [mem 0xbfb75000-0xbfb7597f] Feb 12 20:35:20.110553 kernel: ACPI: Reserving WAET table memory at [mem 0xbfb74000-0xbfb74027] Feb 12 20:35:20.110573 kernel: SRAT: PXM 0 -> APIC 0x00 -> Node 0 Feb 12 20:35:20.110589 kernel: SRAT: PXM 0 -> APIC 0x01 -> Node 0 Feb 12 20:35:20.110605 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00000000-0x0009ffff] Feb 12 20:35:20.110621 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00100000-0xbfffffff] Feb 12 20:35:20.110637 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x100000000-0x21fffffff] Feb 12 20:35:20.110653 kernel: NUMA: Node 0 [mem 0x00000000-0x0009ffff] + [mem 0x00100000-0xbfffffff] -> [mem 0x00000000-0xbfffffff] Feb 12 20:35:20.110667 kernel: NUMA: Node 0 [mem 0x00000000-0xbfffffff] + [mem 0x100000000-0x21fffffff] -> [mem 0x00000000-0x21fffffff] Feb 12 20:35:20.110682 kernel: NODE_DATA(0) allocated [mem 0x21fffa000-0x21fffffff] Feb 12 20:35:20.110698 kernel: Zone ranges: Feb 12 20:35:20.110717 kernel: DMA [mem 0x0000000000001000-0x0000000000ffffff] Feb 12 20:35:20.110732 kernel: DMA32 [mem 0x0000000001000000-0x00000000ffffffff] Feb 12 20:35:20.110747 kernel: Normal [mem 0x0000000100000000-0x000000021fffffff] Feb 12 20:35:20.110763 kernel: Movable zone start for each node Feb 12 20:35:20.110779 kernel: Early memory node ranges Feb 12 20:35:20.110794 kernel: node 0: [mem 0x0000000000001000-0x0000000000054fff] Feb 12 20:35:20.110823 kernel: node 0: [mem 0x0000000000060000-0x0000000000097fff] Feb 12 20:35:20.110849 kernel: node 0: [mem 0x0000000000100000-0x00000000bf8ecfff] Feb 12 20:35:20.110865 kernel: node 0: [mem 0x00000000bfbff000-0x00000000bffdffff] Feb 12 20:35:20.110884 kernel: node 0: [mem 0x0000000100000000-0x000000021fffffff] Feb 12 20:35:20.110900 kernel: Initmem setup node 0 [mem 0x0000000000001000-0x000000021fffffff] Feb 12 20:35:20.110917 kernel: On node 0, zone DMA: 1 pages in unavailable ranges Feb 12 20:35:20.110933 kernel: On node 0, zone DMA: 11 pages in unavailable ranges Feb 12 20:35:20.110950 kernel: On node 0, zone DMA: 104 pages in unavailable ranges Feb 12 20:35:20.110967 kernel: On node 0, zone DMA32: 786 pages in unavailable ranges Feb 12 20:35:20.110984 kernel: On node 0, zone Normal: 32 pages in unavailable ranges Feb 12 20:35:20.111000 kernel: ACPI: PM-Timer IO Port: 0xb008 Feb 12 20:35:20.111017 kernel: ACPI: LAPIC_NMI (acpi_id[0xff] dfl dfl lint[0x1]) Feb 12 20:35:20.111037 kernel: IOAPIC[0]: apic_id 0, version 17, address 0xfec00000, GSI 0-23 Feb 12 20:35:20.111054 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 5 global_irq 5 high level) Feb 12 20:35:20.111072 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 high level) Feb 12 20:35:20.111088 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 10 global_irq 10 high level) Feb 12 20:35:20.111104 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 11 global_irq 11 high level) Feb 12 20:35:20.111121 kernel: ACPI: Using ACPI (MADT) for SMP configuration information Feb 12 20:35:20.111138 kernel: smpboot: Allowing 2 CPUs, 0 hotplug CPUs Feb 12 20:35:20.111154 kernel: [mem 0xc0000000-0xffffffff] available for PCI devices Feb 12 20:35:20.111171 kernel: Booting paravirtualized kernel on KVM Feb 12 20:35:20.111193 kernel: clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns Feb 12 20:35:20.111220 kernel: setup_percpu: NR_CPUS:512 nr_cpumask_bits:512 nr_cpu_ids:2 nr_node_ids:1 Feb 12 20:35:20.111235 kernel: percpu: Embedded 55 pages/cpu s185624 r8192 d31464 u1048576 Feb 12 20:35:20.111251 kernel: pcpu-alloc: s185624 r8192 d31464 u1048576 alloc=1*2097152 Feb 12 20:35:20.111266 kernel: pcpu-alloc: [0] 0 1 Feb 12 20:35:20.111281 kernel: kvm-guest: PV spinlocks enabled Feb 12 20:35:20.111296 kernel: PV qspinlock hash table entries: 256 (order: 0, 4096 bytes, linear) Feb 12 20:35:20.111311 kernel: Built 1 zonelists, mobility grouping on. Total pages: 1931256 Feb 12 20:35:20.111326 kernel: Policy zone: Normal Feb 12 20:35:20.111347 kernel: Kernel command line: rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=gce verity.usrhash=f2beb0668e3dab90bbcf0ace3803b7ee02142bfb86913ef12ef6d2ee81a411a4 Feb 12 20:35:20.111363 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 12 20:35:20.111377 kernel: Dentry cache hash table entries: 1048576 (order: 11, 8388608 bytes, linear) Feb 12 20:35:20.111392 kernel: Inode-cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 12 20:35:20.111408 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 12 20:35:20.111425 kernel: Memory: 7536516K/7860584K available (12294K kernel code, 2275K rwdata, 13700K rodata, 45496K init, 4048K bss, 323808K reserved, 0K cma-reserved) Feb 12 20:35:20.111440 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 12 20:35:20.111455 kernel: Kernel/User page tables isolation: enabled Feb 12 20:35:20.111473 kernel: ftrace: allocating 34475 entries in 135 pages Feb 12 20:35:20.111488 kernel: ftrace: allocated 135 pages with 4 groups Feb 12 20:35:20.111503 kernel: rcu: Hierarchical RCU implementation. Feb 12 20:35:20.111528 kernel: rcu: RCU event tracing is enabled. Feb 12 20:35:20.111543 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 12 20:35:20.111559 kernel: Rude variant of Tasks RCU enabled. Feb 12 20:35:20.111574 kernel: Tracing variant of Tasks RCU enabled. Feb 12 20:35:20.111590 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 12 20:35:20.111605 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 12 20:35:20.111624 kernel: NR_IRQS: 33024, nr_irqs: 440, preallocated irqs: 16 Feb 12 20:35:20.111652 kernel: Console: colour dummy device 80x25 Feb 12 20:35:20.111669 kernel: printk: console [ttyS0] enabled Feb 12 20:35:20.111688 kernel: ACPI: Core revision 20210730 Feb 12 20:35:20.111704 kernel: APIC: Switch to symmetric I/O mode setup Feb 12 20:35:20.111721 kernel: x2apic enabled Feb 12 20:35:20.111737 kernel: Switched APIC routing to physical x2apic. Feb 12 20:35:20.111754 kernel: ..TIMER: vector=0x30 apic1=0 pin1=0 apic2=-1 pin2=-1 Feb 12 20:35:20.111771 kernel: clocksource: tsc-early: mask: 0xffffffffffffffff max_cycles: 0x212733415c7, max_idle_ns: 440795236380 ns Feb 12 20:35:20.111787 kernel: Calibrating delay loop (skipped) preset value.. 4599.99 BogoMIPS (lpj=2299998) Feb 12 20:35:20.111830 kernel: Last level iTLB entries: 4KB 1024, 2MB 1024, 4MB 1024 Feb 12 20:35:20.111854 kernel: Last level dTLB entries: 4KB 1024, 2MB 1024, 4MB 1024, 1GB 4 Feb 12 20:35:20.111877 kernel: Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization Feb 12 20:35:20.111892 kernel: Spectre V2 : Mitigation: IBRS Feb 12 20:35:20.111908 kernel: Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch Feb 12 20:35:20.111924 kernel: Spectre V2 : Spectre v2 / SpectreRSB : Filling RSB on VMEXIT Feb 12 20:35:20.111945 kernel: RETBleed: Mitigation: IBRS Feb 12 20:35:20.111962 kernel: Spectre V2 : mitigation: Enabling conditional Indirect Branch Prediction Barrier Feb 12 20:35:20.111979 kernel: Spectre V2 : User space: Mitigation: STIBP via seccomp and prctl Feb 12 20:35:20.111996 kernel: Speculative Store Bypass: Mitigation: Speculative Store Bypass disabled via prctl and seccomp Feb 12 20:35:20.112012 kernel: MDS: Mitigation: Clear CPU buffers Feb 12 20:35:20.112029 kernel: MMIO Stale Data: Vulnerable: Clear CPU buffers attempted, no microcode Feb 12 20:35:20.112046 kernel: x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' Feb 12 20:35:20.112063 kernel: x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' Feb 12 20:35:20.112080 kernel: x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' Feb 12 20:35:20.112100 kernel: x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 Feb 12 20:35:20.112116 kernel: x86/fpu: Enabled xstate features 0x7, context size is 832 bytes, using 'standard' format. Feb 12 20:35:20.112133 kernel: Freeing SMP alternatives memory: 32K Feb 12 20:35:20.112150 kernel: pid_max: default: 32768 minimum: 301 Feb 12 20:35:20.112166 kernel: LSM: Security Framework initializing Feb 12 20:35:20.112182 kernel: SELinux: Initializing. Feb 12 20:35:20.112207 kernel: Mount-cache hash table entries: 16384 (order: 5, 131072 bytes, linear) Feb 12 20:35:20.112223 kernel: Mountpoint-cache hash table entries: 16384 (order: 5, 131072 bytes, linear) Feb 12 20:35:20.112240 kernel: smpboot: CPU0: Intel(R) Xeon(R) CPU @ 2.30GHz (family: 0x6, model: 0x3f, stepping: 0x0) Feb 12 20:35:20.112261 kernel: Performance Events: unsupported p6 CPU model 63 no PMU driver, software events only. Feb 12 20:35:20.112278 kernel: signal: max sigframe size: 1776 Feb 12 20:35:20.112295 kernel: rcu: Hierarchical SRCU implementation. Feb 12 20:35:20.112312 kernel: NMI watchdog: Perf NMI watchdog permanently disabled Feb 12 20:35:20.112329 kernel: smp: Bringing up secondary CPUs ... Feb 12 20:35:20.112345 kernel: x86: Booting SMP configuration: Feb 12 20:35:20.112362 kernel: .... node #0, CPUs: #1 Feb 12 20:35:20.112380 kernel: kvm-clock: cpu 1, msr 15cfaa041, secondary cpu clock Feb 12 20:35:20.112396 kernel: MDS CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html for more details. Feb 12 20:35:20.112419 kernel: MMIO Stale Data CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/processor_mmio_stale_data.html for more details. Feb 12 20:35:20.112435 kernel: smp: Brought up 1 node, 2 CPUs Feb 12 20:35:20.112452 kernel: smpboot: Max logical packages: 1 Feb 12 20:35:20.112469 kernel: smpboot: Total of 2 processors activated (9199.99 BogoMIPS) Feb 12 20:35:20.112486 kernel: devtmpfs: initialized Feb 12 20:35:20.112503 kernel: x86/mm: Memory block size: 128MB Feb 12 20:35:20.112520 kernel: ACPI: PM: Registering ACPI NVS region [mem 0xbfb7f000-0xbfbfefff] (524288 bytes) Feb 12 20:35:20.112538 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 12 20:35:20.112556 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 12 20:35:20.112577 kernel: pinctrl core: initialized pinctrl subsystem Feb 12 20:35:20.112594 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 12 20:35:20.112611 kernel: audit: initializing netlink subsys (disabled) Feb 12 20:35:20.112629 kernel: audit: type=2000 audit(1707770118.548:1): state=initialized audit_enabled=0 res=1 Feb 12 20:35:20.112646 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 12 20:35:20.112662 kernel: thermal_sys: Registered thermal governor 'user_space' Feb 12 20:35:20.112679 kernel: cpuidle: using governor menu Feb 12 20:35:20.112697 kernel: ACPI: bus type PCI registered Feb 12 20:35:20.112713 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 12 20:35:20.112734 kernel: dca service started, version 1.12.1 Feb 12 20:35:20.112751 kernel: PCI: Using configuration type 1 for base access Feb 12 20:35:20.112769 kernel: kprobes: kprobe jump-optimization is enabled. All kprobes are optimized if possible. Feb 12 20:35:20.112786 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 12 20:35:20.112803 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 12 20:35:20.116656 kernel: ACPI: Added _OSI(Module Device) Feb 12 20:35:20.116677 kernel: ACPI: Added _OSI(Processor Device) Feb 12 20:35:20.116695 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 12 20:35:20.116713 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 12 20:35:20.116747 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 12 20:35:20.116765 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 12 20:35:20.116782 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 12 20:35:20.116800 kernel: ACPI: 3 ACPI AML tables successfully acquired and loaded Feb 12 20:35:20.116833 kernel: ACPI: Interpreter enabled Feb 12 20:35:20.116851 kernel: ACPI: PM: (supports S0 S3 S5) Feb 12 20:35:20.116868 kernel: ACPI: Using IOAPIC for interrupt routing Feb 12 20:35:20.116886 kernel: PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug Feb 12 20:35:20.116904 kernel: ACPI: Enabled 16 GPEs in block 00 to 0F Feb 12 20:35:20.116927 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Feb 12 20:35:20.117165 kernel: acpi PNP0A03:00: _OSC: OS supports [ASPM ClockPM Segments MSI HPX-Type3] Feb 12 20:35:20.117334 kernel: acpi PNP0A03:00: fail to add MMCONFIG information, can't access extended PCI configuration space under this bridge. Feb 12 20:35:20.117357 kernel: PCI host bridge to bus 0000:00 Feb 12 20:35:20.117507 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] Feb 12 20:35:20.117648 kernel: pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] Feb 12 20:35:20.117800 kernel: pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff window] Feb 12 20:35:20.117974 kernel: pci_bus 0000:00: root bus resource [mem 0xc0000000-0xfebfefff window] Feb 12 20:35:20.118111 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Feb 12 20:35:20.118286 kernel: pci 0000:00:00.0: [8086:1237] type 00 class 0x060000 Feb 12 20:35:20.118467 kernel: pci 0000:00:01.0: [8086:7110] type 00 class 0x060100 Feb 12 20:35:20.118634 kernel: pci 0000:00:01.3: [8086:7113] type 00 class 0x068000 Feb 12 20:35:20.118798 kernel: pci 0000:00:01.3: quirk: [io 0xb000-0xb03f] claimed by PIIX4 ACPI Feb 12 20:35:20.119012 kernel: pci 0000:00:03.0: [1af4:1004] type 00 class 0x000000 Feb 12 20:35:20.119169 kernel: pci 0000:00:03.0: reg 0x10: [io 0xc040-0xc07f] Feb 12 20:35:20.119328 kernel: pci 0000:00:03.0: reg 0x14: [mem 0xc0001000-0xc000107f] Feb 12 20:35:20.119531 kernel: pci 0000:00:04.0: [1af4:1000] type 00 class 0x020000 Feb 12 20:35:20.119699 kernel: pci 0000:00:04.0: reg 0x10: [io 0xc000-0xc03f] Feb 12 20:35:20.119898 kernel: pci 0000:00:04.0: reg 0x14: [mem 0xc0000000-0xc000007f] Feb 12 20:35:20.120080 kernel: pci 0000:00:05.0: [1af4:1005] type 00 class 0x00ff00 Feb 12 20:35:20.120246 kernel: pci 0000:00:05.0: reg 0x10: [io 0xc080-0xc09f] Feb 12 20:35:20.120411 kernel: pci 0000:00:05.0: reg 0x14: [mem 0xc0002000-0xc000203f] Feb 12 20:35:20.120434 kernel: ACPI: PCI: Interrupt link LNKA configured for IRQ 10 Feb 12 20:35:20.120453 kernel: ACPI: PCI: Interrupt link LNKB configured for IRQ 10 Feb 12 20:35:20.120471 kernel: ACPI: PCI: Interrupt link LNKC configured for IRQ 11 Feb 12 20:35:20.120490 kernel: ACPI: PCI: Interrupt link LNKD configured for IRQ 11 Feb 12 20:35:20.120507 kernel: ACPI: PCI: Interrupt link LNKS configured for IRQ 9 Feb 12 20:35:20.120530 kernel: iommu: Default domain type: Translated Feb 12 20:35:20.120548 kernel: iommu: DMA domain TLB invalidation policy: lazy mode Feb 12 20:35:20.120566 kernel: vgaarb: loaded Feb 12 20:35:20.120585 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 12 20:35:20.120603 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 12 20:35:20.120621 kernel: PTP clock support registered Feb 12 20:35:20.120638 kernel: Registered efivars operations Feb 12 20:35:20.120655 kernel: PCI: Using ACPI for IRQ routing Feb 12 20:35:20.120673 kernel: PCI: pci_cache_line_size set to 64 bytes Feb 12 20:35:20.120690 kernel: e820: reserve RAM buffer [mem 0x00055000-0x0005ffff] Feb 12 20:35:20.120712 kernel: e820: reserve RAM buffer [mem 0x00098000-0x0009ffff] Feb 12 20:35:20.120736 kernel: e820: reserve RAM buffer [mem 0xbf8ed000-0xbfffffff] Feb 12 20:35:20.120754 kernel: e820: reserve RAM buffer [mem 0xbffe0000-0xbfffffff] Feb 12 20:35:20.120771 kernel: clocksource: Switched to clocksource kvm-clock Feb 12 20:35:20.120788 kernel: VFS: Disk quotas dquot_6.6.0 Feb 12 20:35:20.120872 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 12 20:35:20.120892 kernel: pnp: PnP ACPI init Feb 12 20:35:20.120910 kernel: pnp: PnP ACPI: found 7 devices Feb 12 20:35:20.120932 kernel: clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns Feb 12 20:35:20.120949 kernel: NET: Registered PF_INET protocol family Feb 12 20:35:20.120967 kernel: IP idents hash table entries: 131072 (order: 8, 1048576 bytes, linear) Feb 12 20:35:20.120983 kernel: tcp_listen_portaddr_hash hash table entries: 4096 (order: 4, 65536 bytes, linear) Feb 12 20:35:20.121000 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 12 20:35:20.121017 kernel: TCP established hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 12 20:35:20.121035 kernel: TCP bind hash table entries: 65536 (order: 8, 1048576 bytes, linear) Feb 12 20:35:20.121052 kernel: TCP: Hash tables configured (established 65536 bind 65536) Feb 12 20:35:20.121069 kernel: UDP hash table entries: 4096 (order: 5, 131072 bytes, linear) Feb 12 20:35:20.121091 kernel: UDP-Lite hash table entries: 4096 (order: 5, 131072 bytes, linear) Feb 12 20:35:20.121109 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 12 20:35:20.121126 kernel: NET: Registered PF_XDP protocol family Feb 12 20:35:20.121291 kernel: pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] Feb 12 20:35:20.121438 kernel: pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] Feb 12 20:35:20.121583 kernel: pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff window] Feb 12 20:35:20.121725 kernel: pci_bus 0000:00: resource 7 [mem 0xc0000000-0xfebfefff window] Feb 12 20:35:20.121931 kernel: pci 0000:00:00.0: Limiting direct PCI/PCI transfers Feb 12 20:35:20.121960 kernel: PCI: CLS 0 bytes, default 64 Feb 12 20:35:20.121979 kernel: PCI-DMA: Using software bounce buffering for IO (SWIOTLB) Feb 12 20:35:20.121999 kernel: software IO TLB: mapped [mem 0x00000000b7ff7000-0x00000000bbff7000] (64MB) Feb 12 20:35:20.122017 kernel: RAPL PMU: API unit is 2^-32 Joules, 0 fixed counters, 10737418240 ms ovfl timer Feb 12 20:35:20.122035 kernel: clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x212733415c7, max_idle_ns: 440795236380 ns Feb 12 20:35:20.122052 kernel: clocksource: Switched to clocksource tsc Feb 12 20:35:20.122071 kernel: Initialise system trusted keyrings Feb 12 20:35:20.122088 kernel: workingset: timestamp_bits=39 max_order=21 bucket_order=0 Feb 12 20:35:20.122109 kernel: Key type asymmetric registered Feb 12 20:35:20.122126 kernel: Asymmetric key parser 'x509' registered Feb 12 20:35:20.122144 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 12 20:35:20.122161 kernel: io scheduler mq-deadline registered Feb 12 20:35:20.122178 kernel: io scheduler kyber registered Feb 12 20:35:20.122196 kernel: io scheduler bfq registered Feb 12 20:35:20.122213 kernel: ioatdma: Intel(R) QuickData Technology Driver 5.00 Feb 12 20:35:20.122231 kernel: ACPI: \_SB_.LNKC: Enabled at IRQ 11 Feb 12 20:35:20.122399 kernel: virtio-pci 0000:00:03.0: virtio_pci: leaving for legacy driver Feb 12 20:35:20.122426 kernel: ACPI: \_SB_.LNKD: Enabled at IRQ 10 Feb 12 20:35:20.122586 kernel: virtio-pci 0000:00:04.0: virtio_pci: leaving for legacy driver Feb 12 20:35:20.122609 kernel: ACPI: \_SB_.LNKA: Enabled at IRQ 10 Feb 12 20:35:20.122793 kernel: virtio-pci 0000:00:05.0: virtio_pci: leaving for legacy driver Feb 12 20:35:20.122827 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 12 20:35:20.122842 kernel: 00:03: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A Feb 12 20:35:20.122858 kernel: 00:04: ttyS1 at I/O 0x2f8 (irq = 3, base_baud = 115200) is a 16550A Feb 12 20:35:20.122876 kernel: 00:05: ttyS2 at I/O 0x3e8 (irq = 6, base_baud = 115200) is a 16550A Feb 12 20:35:20.122893 kernel: 00:06: ttyS3 at I/O 0x2e8 (irq = 7, base_baud = 115200) is a 16550A Feb 12 20:35:20.123067 kernel: tpm_tis MSFT0101:00: 2.0 TPM (device-id 0x9009, rev-id 0) Feb 12 20:35:20.123092 kernel: i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 Feb 12 20:35:20.123110 kernel: i8042: Warning: Keylock active Feb 12 20:35:20.123127 kernel: serio: i8042 KBD port at 0x60,0x64 irq 1 Feb 12 20:35:20.123145 kernel: serio: i8042 AUX port at 0x60,0x64 irq 12 Feb 12 20:35:20.123304 kernel: rtc_cmos 00:00: RTC can wake from S4 Feb 12 20:35:20.123452 kernel: rtc_cmos 00:00: registered as rtc0 Feb 12 20:35:20.123613 kernel: rtc_cmos 00:00: setting system clock to 2024-02-12T20:35:19 UTC (1707770119) Feb 12 20:35:20.123767 kernel: rtc_cmos 00:00: alarms up to one day, 114 bytes nvram Feb 12 20:35:20.123790 kernel: intel_pstate: CPU model not supported Feb 12 20:35:20.123820 kernel: pstore: Registered efi as persistent store backend Feb 12 20:35:20.123850 kernel: NET: Registered PF_INET6 protocol family Feb 12 20:35:20.123868 kernel: Segment Routing with IPv6 Feb 12 20:35:20.123885 kernel: In-situ OAM (IOAM) with IPv6 Feb 12 20:35:20.123903 kernel: NET: Registered PF_PACKET protocol family Feb 12 20:35:20.123919 kernel: Key type dns_resolver registered Feb 12 20:35:20.123949 kernel: IPI shorthand broadcast: enabled Feb 12 20:35:20.123966 kernel: sched_clock: Marking stable (755008276, 158920870)->(963773858, -49844712) Feb 12 20:35:20.123984 kernel: registered taskstats version 1 Feb 12 20:35:20.124001 kernel: Loading compiled-in X.509 certificates Feb 12 20:35:20.124019 kernel: input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input0 Feb 12 20:35:20.124037 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: 253e5c5c936b12e2ff2626e7f3214deb753330c8' Feb 12 20:35:20.124054 kernel: Key type .fscrypt registered Feb 12 20:35:20.124071 kernel: Key type fscrypt-provisioning registered Feb 12 20:35:20.124089 kernel: pstore: Using crash dump compression: deflate Feb 12 20:35:20.124110 kernel: ima: Allocated hash algorithm: sha1 Feb 12 20:35:20.124128 kernel: ima: No architecture policies found Feb 12 20:35:20.124145 kernel: Freeing unused kernel image (initmem) memory: 45496K Feb 12 20:35:20.124163 kernel: Write protecting the kernel read-only data: 28672k Feb 12 20:35:20.124181 kernel: Freeing unused kernel image (text/rodata gap) memory: 2040K Feb 12 20:35:20.124199 kernel: Freeing unused kernel image (rodata/data gap) memory: 636K Feb 12 20:35:20.124217 kernel: Run /init as init process Feb 12 20:35:20.124234 kernel: with arguments: Feb 12 20:35:20.124255 kernel: /init Feb 12 20:35:20.124272 kernel: with environment: Feb 12 20:35:20.124289 kernel: HOME=/ Feb 12 20:35:20.124306 kernel: TERM=linux Feb 12 20:35:20.124324 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 12 20:35:20.124354 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:35:20.124377 systemd[1]: Detected virtualization kvm. Feb 12 20:35:20.124396 systemd[1]: Detected architecture x86-64. Feb 12 20:35:20.124424 systemd[1]: Running in initrd. Feb 12 20:35:20.124442 systemd[1]: No hostname configured, using default hostname. Feb 12 20:35:20.124468 systemd[1]: Hostname set to . Feb 12 20:35:20.124488 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:35:20.124506 systemd[1]: Queued start job for default target initrd.target. Feb 12 20:35:20.124524 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:35:20.124542 systemd[1]: Reached target cryptsetup.target. Feb 12 20:35:20.124561 systemd[1]: Reached target paths.target. Feb 12 20:35:20.124583 systemd[1]: Reached target slices.target. Feb 12 20:35:20.124618 systemd[1]: Reached target swap.target. Feb 12 20:35:20.124636 systemd[1]: Reached target timers.target. Feb 12 20:35:20.124656 systemd[1]: Listening on iscsid.socket. Feb 12 20:35:20.124675 systemd[1]: Listening on iscsiuio.socket. Feb 12 20:35:20.124694 systemd[1]: Listening on systemd-journald-audit.socket. Feb 12 20:35:20.124713 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 12 20:35:20.124738 systemd[1]: Listening on systemd-journald.socket. Feb 12 20:35:20.124760 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:35:20.124779 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:35:20.124798 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:35:20.124845 systemd[1]: Reached target sockets.target. Feb 12 20:35:20.124864 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:35:20.124883 systemd[1]: Finished network-cleanup.service. Feb 12 20:35:20.124902 systemd[1]: Starting systemd-fsck-usr.service... Feb 12 20:35:20.124920 systemd[1]: Starting systemd-journald.service... Feb 12 20:35:20.124939 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:35:20.124961 systemd[1]: Starting systemd-resolved.service... Feb 12 20:35:20.124981 systemd[1]: Starting systemd-vconsole-setup.service... Feb 12 20:35:20.125024 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:35:20.125059 systemd-journald[189]: Journal started Feb 12 20:35:20.125155 systemd-journald[189]: Runtime Journal (/run/log/journal/abb4ccada4560031ba18a58cf8746cd8) is 8.0M, max 148.8M, 140.8M free. Feb 12 20:35:20.137453 kernel: audit: type=1130 audit(1707770120.131:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.137518 systemd[1]: Started systemd-journald.service. Feb 12 20:35:20.131000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.141481 kernel: audit: type=1130 audit(1707770120.139:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.139000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.132082 systemd-modules-load[190]: Inserted module 'overlay' Feb 12 20:35:20.163017 kernel: audit: type=1130 audit(1707770120.147:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.163055 kernel: audit: type=1130 audit(1707770120.154:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.147000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.154000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.141457 systemd[1]: Finished systemd-fsck-usr.service. Feb 12 20:35:20.149178 systemd[1]: Finished systemd-vconsole-setup.service. Feb 12 20:35:20.159856 systemd[1]: Starting dracut-cmdline-ask.service... Feb 12 20:35:20.166123 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 12 20:35:20.188378 systemd-resolved[191]: Positive Trust Anchors: Feb 12 20:35:20.189090 systemd-resolved[191]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:35:20.189393 systemd-resolved[191]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:35:20.193540 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 12 20:35:20.191000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.200010 systemd-resolved[191]: Defaulting to hostname 'linux'. Feb 12 20:35:20.200836 kernel: audit: type=1130 audit(1707770120.191:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.203000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.205321 systemd[1]: Started systemd-resolved.service. Feb 12 20:35:20.209214 kernel: audit: type=1130 audit(1707770120.203:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.205614 systemd[1]: Reached target nss-lookup.target. Feb 12 20:35:20.213828 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 12 20:35:20.214093 systemd[1]: Finished dracut-cmdline-ask.service. Feb 12 20:35:20.225392 kernel: Bridge firewalling registered Feb 12 20:35:20.225426 kernel: audit: type=1130 audit(1707770120.216:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.216000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.218409 systemd-modules-load[190]: Inserted module 'br_netfilter' Feb 12 20:35:20.224518 systemd[1]: Starting dracut-cmdline.service... Feb 12 20:35:20.243288 dracut-cmdline[206]: dracut-dracut-053 Feb 12 20:35:20.247307 dracut-cmdline[206]: Using kernel command line parameters: rd.driver.pre=btrfs rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=gce verity.usrhash=f2beb0668e3dab90bbcf0ace3803b7ee02142bfb86913ef12ef6d2ee81a411a4 Feb 12 20:35:20.257957 kernel: SCSI subsystem initialized Feb 12 20:35:20.274186 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 12 20:35:20.274269 kernel: device-mapper: uevent: version 1.0.3 Feb 12 20:35:20.274293 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 12 20:35:20.280384 systemd-modules-load[190]: Inserted module 'dm_multipath' Feb 12 20:35:20.281415 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:35:20.302973 kernel: audit: type=1130 audit(1707770120.287:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.287000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.290236 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:35:20.308248 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:35:20.319962 kernel: audit: type=1130 audit(1707770120.310:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.310000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.341835 kernel: Loading iSCSI transport class v2.0-870. Feb 12 20:35:20.355851 kernel: iscsi: registered transport (tcp) Feb 12 20:35:20.379854 kernel: iscsi: registered transport (qla4xxx) Feb 12 20:35:20.379936 kernel: QLogic iSCSI HBA Driver Feb 12 20:35:20.424097 systemd[1]: Finished dracut-cmdline.service. Feb 12 20:35:20.422000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.426282 systemd[1]: Starting dracut-pre-udev.service... Feb 12 20:35:20.483897 kernel: raid6: avx2x4 gen() 17898 MB/s Feb 12 20:35:20.500859 kernel: raid6: avx2x4 xor() 6914 MB/s Feb 12 20:35:20.517840 kernel: raid6: avx2x2 gen() 17819 MB/s Feb 12 20:35:20.534857 kernel: raid6: avx2x2 xor() 18539 MB/s Feb 12 20:35:20.551869 kernel: raid6: avx2x1 gen() 13415 MB/s Feb 12 20:35:20.568863 kernel: raid6: avx2x1 xor() 15819 MB/s Feb 12 20:35:20.585878 kernel: raid6: sse2x4 gen() 10923 MB/s Feb 12 20:35:20.602859 kernel: raid6: sse2x4 xor() 6599 MB/s Feb 12 20:35:20.619841 kernel: raid6: sse2x2 gen() 11944 MB/s Feb 12 20:35:20.636842 kernel: raid6: sse2x2 xor() 7446 MB/s Feb 12 20:35:20.653856 kernel: raid6: sse2x1 gen() 10305 MB/s Feb 12 20:35:20.671538 kernel: raid6: sse2x1 xor() 5184 MB/s Feb 12 20:35:20.671596 kernel: raid6: using algorithm avx2x4 gen() 17898 MB/s Feb 12 20:35:20.671618 kernel: raid6: .... xor() 6914 MB/s, rmw enabled Feb 12 20:35:20.672294 kernel: raid6: using avx2x2 recovery algorithm Feb 12 20:35:20.687850 kernel: xor: automatically using best checksumming function avx Feb 12 20:35:20.793839 kernel: Btrfs loaded, crc32c=crc32c-intel, zoned=no, fsverity=no Feb 12 20:35:20.806230 systemd[1]: Finished dracut-pre-udev.service. Feb 12 20:35:20.804000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.805000 audit: BPF prog-id=7 op=LOAD Feb 12 20:35:20.805000 audit: BPF prog-id=8 op=LOAD Feb 12 20:35:20.808058 systemd[1]: Starting systemd-udevd.service... Feb 12 20:35:20.826107 systemd-udevd[388]: Using default interface naming scheme 'v252'. Feb 12 20:35:20.833460 systemd[1]: Started systemd-udevd.service. Feb 12 20:35:20.832000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.835922 systemd[1]: Starting dracut-pre-trigger.service... Feb 12 20:35:20.859688 dracut-pre-trigger[395]: rd.md=0: removing MD RAID activation Feb 12 20:35:20.899082 systemd[1]: Finished dracut-pre-trigger.service. Feb 12 20:35:20.902000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:20.905425 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:35:20.971169 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:35:20.973000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:21.047835 kernel: cryptd: max_cpu_qlen set to 1000 Feb 12 20:35:21.063834 kernel: scsi host0: Virtio SCSI HBA Feb 12 20:35:21.096831 kernel: scsi 0:0:1:0: Direct-Access Google PersistentDisk 1 PQ: 0 ANSI: 6 Feb 12 20:35:21.098834 kernel: AVX2 version of gcm_enc/dec engaged. Feb 12 20:35:21.107831 kernel: AES CTR mode by8 optimization enabled Feb 12 20:35:21.195960 kernel: sd 0:0:1:0: [sda] 25165824 512-byte logical blocks: (12.9 GB/12.0 GiB) Feb 12 20:35:21.196325 kernel: sd 0:0:1:0: [sda] 4096-byte physical blocks Feb 12 20:35:21.201643 kernel: sd 0:0:1:0: [sda] Write Protect is off Feb 12 20:35:21.202149 kernel: sd 0:0:1:0: [sda] Mode Sense: 1f 00 00 08 Feb 12 20:35:21.211906 kernel: sd 0:0:1:0: [sda] Write cache: enabled, read cache: enabled, doesn't support DPO or FUA Feb 12 20:35:21.244028 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 12 20:35:21.244118 kernel: GPT:17805311 != 25165823 Feb 12 20:35:21.244141 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 12 20:35:21.250297 kernel: GPT:17805311 != 25165823 Feb 12 20:35:21.253998 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 12 20:35:21.260601 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Feb 12 20:35:21.268142 kernel: sd 0:0:1:0: [sda] Attached SCSI disk Feb 12 20:35:21.329247 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 12 20:35:21.350078 kernel: BTRFS: device label OEM devid 1 transid 13 /dev/sda6 scanned by (udev-worker) (439) Feb 12 20:35:21.359965 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 12 20:35:21.390766 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 12 20:35:21.395985 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 12 20:35:21.413259 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:35:21.432117 systemd[1]: Starting disk-uuid.service... Feb 12 20:35:21.450111 disk-uuid[517]: Primary Header is updated. Feb 12 20:35:21.450111 disk-uuid[517]: Secondary Entries is updated. Feb 12 20:35:21.450111 disk-uuid[517]: Secondary Header is updated. Feb 12 20:35:21.475927 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Feb 12 20:35:21.482843 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Feb 12 20:35:21.512834 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Feb 12 20:35:22.508040 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Feb 12 20:35:22.508118 disk-uuid[518]: The operation has completed successfully. Feb 12 20:35:22.574933 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 12 20:35:22.573000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.573000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.575071 systemd[1]: Finished disk-uuid.service. Feb 12 20:35:22.586248 systemd[1]: Starting verity-setup.service... Feb 12 20:35:22.613831 kernel: device-mapper: verity: sha256 using implementation "sha256-avx2" Feb 12 20:35:22.691735 systemd[1]: Found device dev-mapper-usr.device. Feb 12 20:35:22.694255 systemd[1]: Mounting sysusr-usr.mount... Feb 12 20:35:22.720442 systemd[1]: Finished verity-setup.service. Feb 12 20:35:22.727000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.796854 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 12 20:35:22.797124 systemd[1]: Mounted sysusr-usr.mount. Feb 12 20:35:22.797526 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 12 20:35:22.858329 kernel: BTRFS info (device sda6): using crc32c (crc32c-intel) checksum algorithm Feb 12 20:35:22.858372 kernel: BTRFS info (device sda6): using free space tree Feb 12 20:35:22.858396 kernel: BTRFS info (device sda6): has skinny extents Feb 12 20:35:22.858419 kernel: BTRFS info (device sda6): enabling ssd optimizations Feb 12 20:35:22.798463 systemd[1]: Starting ignition-setup.service... Feb 12 20:35:22.824946 systemd[1]: Starting parse-ip-for-networkd.service... Feb 12 20:35:22.866977 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 12 20:35:22.880276 systemd[1]: Finished ignition-setup.service. Feb 12 20:35:22.883000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.886303 systemd[1]: Starting ignition-fetch-offline.service... Feb 12 20:35:22.955075 systemd[1]: Finished parse-ip-for-networkd.service. Feb 12 20:35:22.953000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.954000 audit: BPF prog-id=9 op=LOAD Feb 12 20:35:22.957116 systemd[1]: Starting systemd-networkd.service... Feb 12 20:35:22.992432 systemd-networkd[692]: lo: Link UP Feb 12 20:35:22.992448 systemd-networkd[692]: lo: Gained carrier Feb 12 20:35:22.993229 systemd-networkd[692]: Enumeration completed Feb 12 20:35:23.013000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:22.993612 systemd-networkd[692]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:35:22.993853 systemd[1]: Started systemd-networkd.service. Feb 12 20:35:22.995594 systemd-networkd[692]: eth0: Link UP Feb 12 20:35:22.995601 systemd-networkd[692]: eth0: Gained carrier Feb 12 20:35:23.008011 systemd-networkd[692]: eth0: DHCPv4 address 10.128.0.61/32, gateway 10.128.0.1 acquired from 169.254.169.254 Feb 12 20:35:23.070000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.015294 systemd[1]: Reached target network.target. Feb 12 20:35:23.098975 iscsid[702]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:35:23.098975 iscsid[702]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log Feb 12 20:35:23.098975 iscsid[702]: into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 12 20:35:23.098975 iscsid[702]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 12 20:35:23.098975 iscsid[702]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 12 20:35:23.098975 iscsid[702]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:35:23.098975 iscsid[702]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 12 20:35:23.104000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.168000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.023180 systemd[1]: Starting iscsiuio.service... Feb 12 20:35:23.184428 ignition[622]: Ignition 2.14.0 Feb 12 20:35:23.058233 systemd[1]: Started iscsiuio.service. Feb 12 20:35:23.184442 ignition[622]: Stage: fetch-offline Feb 12 20:35:23.275000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.073419 systemd[1]: Starting iscsid.service... Feb 12 20:35:23.292000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.184513 ignition[622]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:23.092129 systemd[1]: Started iscsid.service. Feb 12 20:35:23.184553 ignition[622]: parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:23.107384 systemd[1]: Starting dracut-initqueue.service... Feb 12 20:35:23.205421 ignition[622]: no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:23.144427 systemd[1]: Finished dracut-initqueue.service. Feb 12 20:35:23.205622 ignition[622]: parsed url from cmdline: "" Feb 12 20:35:23.170385 systemd[1]: Reached target remote-fs-pre.target. Feb 12 20:35:23.359000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.205628 ignition[622]: no config URL provided Feb 12 20:35:23.186157 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:35:23.205636 ignition[622]: reading system config file "/usr/lib/ignition/user.ign" Feb 12 20:35:23.225036 systemd[1]: Reached target remote-fs.target. Feb 12 20:35:23.408000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.205646 ignition[622]: no config at "/usr/lib/ignition/user.ign" Feb 12 20:35:23.243106 systemd[1]: Starting dracut-pre-mount.service... Feb 12 20:35:23.205655 ignition[622]: failed to fetch config: resource requires networking Feb 12 20:35:23.262305 systemd[1]: Finished ignition-fetch-offline.service. Feb 12 20:35:23.206146 ignition[622]: Ignition finished successfully Feb 12 20:35:23.463000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.277336 systemd[1]: Finished dracut-pre-mount.service. Feb 12 20:35:23.307229 ignition[717]: Ignition 2.14.0 Feb 12 20:35:23.295392 systemd[1]: Starting ignition-fetch.service... Feb 12 20:35:23.307238 ignition[717]: Stage: fetch Feb 12 20:35:23.343770 unknown[717]: fetched base config from "system" Feb 12 20:35:23.307360 ignition[717]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:23.343784 unknown[717]: fetched base config from "system" Feb 12 20:35:23.307403 ignition[717]: parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:23.343794 unknown[717]: fetched user config from "gcp" Feb 12 20:35:23.315405 ignition[717]: no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:23.346341 systemd[1]: Finished ignition-fetch.service. Feb 12 20:35:23.315603 ignition[717]: parsed url from cmdline: "" Feb 12 20:35:23.362691 systemd[1]: Starting ignition-kargs.service... Feb 12 20:35:23.315609 ignition[717]: no config URL provided Feb 12 20:35:23.392296 systemd[1]: Finished ignition-kargs.service. Feb 12 20:35:23.315616 ignition[717]: reading system config file "/usr/lib/ignition/user.ign" Feb 12 20:35:23.411252 systemd[1]: Starting ignition-disks.service... Feb 12 20:35:23.315627 ignition[717]: no config at "/usr/lib/ignition/user.ign" Feb 12 20:35:23.449477 systemd[1]: Finished ignition-disks.service. Feb 12 20:35:23.315686 ignition[717]: GET http://169.254.169.254/computeMetadata/v1/instance/attributes/user-data: attempt #1 Feb 12 20:35:23.465300 systemd[1]: Reached target initrd-root-device.target. Feb 12 20:35:23.322421 ignition[717]: GET result: OK Feb 12 20:35:23.480112 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:35:23.322522 ignition[717]: parsing config with SHA512: e3a2fd843dd4dea6ed4df9ece87c385e2f1abd0f7f824997820d87e3d3e6fcc5d13448aaa954e716e95884596125f09210f1301b41c1688596e9c9eea9dbc92a Feb 12 20:35:23.495080 systemd[1]: Reached target local-fs.target. Feb 12 20:35:23.344547 ignition[717]: fetch: fetch complete Feb 12 20:35:23.501190 systemd[1]: Reached target sysinit.target. Feb 12 20:35:23.344554 ignition[717]: fetch: fetch passed Feb 12 20:35:23.527139 systemd[1]: Reached target basic.target. Feb 12 20:35:23.344605 ignition[717]: Ignition finished successfully Feb 12 20:35:23.535420 systemd[1]: Starting systemd-fsck-root.service... Feb 12 20:35:23.376012 ignition[723]: Ignition 2.14.0 Feb 12 20:35:23.376025 ignition[723]: Stage: kargs Feb 12 20:35:23.376216 ignition[723]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:23.376262 ignition[723]: parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:23.383514 ignition[723]: no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:23.384764 ignition[723]: kargs: kargs passed Feb 12 20:35:23.384852 ignition[723]: Ignition finished successfully Feb 12 20:35:23.423353 ignition[729]: Ignition 2.14.0 Feb 12 20:35:23.423363 ignition[729]: Stage: disks Feb 12 20:35:23.423506 ignition[729]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:23.423536 ignition[729]: parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:23.431131 ignition[729]: no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:23.432418 ignition[729]: disks: disks passed Feb 12 20:35:23.432469 ignition[729]: Ignition finished successfully Feb 12 20:35:23.575728 systemd-fsck[737]: ROOT: clean, 602/1628000 files, 124050/1617920 blocks Feb 12 20:35:23.760743 systemd[1]: Finished systemd-fsck-root.service. Feb 12 20:35:23.767000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:23.770163 systemd[1]: Mounting sysroot.mount... Feb 12 20:35:23.799991 kernel: EXT4-fs (sda9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 12 20:35:23.796692 systemd[1]: Mounted sysroot.mount. Feb 12 20:35:23.807288 systemd[1]: Reached target initrd-root-fs.target. Feb 12 20:35:23.825558 systemd[1]: Mounting sysroot-usr.mount... Feb 12 20:35:23.839535 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 12 20:35:23.839596 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 12 20:35:23.898038 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/sda6 scanned by mount (743) Feb 12 20:35:23.839635 systemd[1]: Reached target ignition-diskful.target. Feb 12 20:35:23.934117 kernel: BTRFS info (device sda6): using crc32c (crc32c-intel) checksum algorithm Feb 12 20:35:23.934166 kernel: BTRFS info (device sda6): using free space tree Feb 12 20:35:23.934183 kernel: BTRFS info (device sda6): has skinny extents Feb 12 20:35:23.856382 systemd[1]: Mounted sysroot-usr.mount. Feb 12 20:35:23.953985 kernel: BTRFS info (device sda6): enabling ssd optimizations Feb 12 20:35:23.877656 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:35:23.963011 initrd-setup-root[764]: cut: /sysroot/etc/passwd: No such file or directory Feb 12 20:35:23.926147 systemd[1]: Starting initrd-setup-root.service... Feb 12 20:35:23.989986 initrd-setup-root[774]: cut: /sysroot/etc/group: No such file or directory Feb 12 20:35:23.950427 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:35:24.010028 initrd-setup-root[782]: cut: /sysroot/etc/shadow: No such file or directory Feb 12 20:35:24.019959 initrd-setup-root[790]: cut: /sysroot/etc/gshadow: No such file or directory Feb 12 20:35:24.039088 systemd[1]: Finished initrd-setup-root.service. Feb 12 20:35:24.037000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:24.040295 systemd[1]: Starting ignition-mount.service... Feb 12 20:35:24.062046 systemd[1]: Starting sysroot-boot.service... Feb 12 20:35:24.076287 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 12 20:35:24.076408 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 12 20:35:24.103978 ignition[809]: INFO : Ignition 2.14.0 Feb 12 20:35:24.103978 ignition[809]: INFO : Stage: mount Feb 12 20:35:24.103978 ignition[809]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:24.103978 ignition[809]: DEBUG : parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:24.188206 kernel: kauditd_printk_skb: 24 callbacks suppressed Feb 12 20:35:24.188239 kernel: audit: type=1130 audit(1707770124.109:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:24.188268 kernel: audit: type=1130 audit(1707770124.155:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:24.109000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:24.155000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:24.106047 systemd[1]: Finished sysroot-boot.service. Feb 12 20:35:24.221006 ignition[809]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:24.221006 ignition[809]: INFO : mount: mount passed Feb 12 20:35:24.221006 ignition[809]: INFO : Ignition finished successfully Feb 12 20:35:24.295965 kernel: BTRFS: device label OEM devid 1 transid 16 /dev/sda6 scanned by mount (818) Feb 12 20:35:24.296007 kernel: BTRFS info (device sda6): using crc32c (crc32c-intel) checksum algorithm Feb 12 20:35:24.296031 kernel: BTRFS info (device sda6): using free space tree Feb 12 20:35:24.296054 kernel: BTRFS info (device sda6): has skinny extents Feb 12 20:35:24.296076 kernel: BTRFS info (device sda6): enabling ssd optimizations Feb 12 20:35:24.111421 systemd[1]: Finished ignition-mount.service. Feb 12 20:35:24.158366 systemd[1]: Starting ignition-files.service... Feb 12 20:35:24.218185 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:35:24.320995 ignition[837]: INFO : Ignition 2.14.0 Feb 12 20:35:24.320995 ignition[837]: INFO : Stage: files Feb 12 20:35:24.320995 ignition[837]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:24.320995 ignition[837]: DEBUG : parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:24.320995 ignition[837]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:24.320995 ignition[837]: DEBUG : files: compiled without relabeling support, skipping Feb 12 20:35:24.400945 kernel: BTRFS info: devid 1 device path /dev/sda6 changed to /dev/disk/by-label/OEM scanned by ignition (841) Feb 12 20:35:24.278377 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:35:24.409991 ignition[837]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 12 20:35:24.409991 ignition[837]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 12 20:35:24.409991 ignition[837]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 12 20:35:24.409991 ignition[837]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 12 20:35:24.409991 ignition[837]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/etc/hosts" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2820546650" Feb 12 20:35:24.409991 ignition[837]: CRITICAL : files: createFilesystemsFiles: createFiles: op(3): op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2820546650": device or resource busy Feb 12 20:35:24.409991 ignition[837]: ERROR : files: createFilesystemsFiles: createFiles: op(3): failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem2820546650", trying btrfs: device or resource busy Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2820546650" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2820546650" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): op(6): [started] unmounting "/mnt/oem2820546650" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): op(6): [finished] unmounting "/mnt/oem2820546650" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/etc/hosts" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Feb 12 20:35:24.409991 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(7): GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-amd64-v1.3.0.tgz: attempt #1 Feb 12 20:35:24.330095 unknown[837]: wrote ssh authorized keys file for user: core Feb 12 20:35:24.600043 systemd-networkd[692]: eth0: Gained IPv6LL Feb 12 20:35:24.694956 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(7): GET result: OK Feb 12 20:35:24.945064 ignition[837]: DEBUG : files: createFilesystemsFiles: createFiles: op(7): file matches expected sum of: 5d0324ca8a3c90c680b6e1fddb245a2255582fa15949ba1f3c6bb7323df9d3af754dae98d6e40ac9ccafb2999c932df2c4288d418949a4915d928eb23c090540 Feb 12 20:35:24.968989 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Feb 12 20:35:24.968989 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Feb 12 20:35:24.968989 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(8): GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-amd64.tar.gz: attempt #1 Feb 12 20:35:25.133519 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(8): GET result: OK Feb 12 20:35:25.237161 ignition[837]: DEBUG : files: createFilesystemsFiles: createFiles: op(8): file matches expected sum of: aa622325bf05520939f9e020d7a28ab48ac23e2fae6f47d5a4e52174c88c1ebc31b464853e4fd65bd8f5331f330a6ca96fd370d247d3eeaed042da4ee2d1219a Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/profile.d/google-cloud-sdk.sh" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3737942981" Feb 12 20:35:25.260977 ignition[837]: CRITICAL : files: createFilesystemsFiles: createFiles: op(9): op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3737942981": device or resource busy Feb 12 20:35:25.260977 ignition[837]: ERROR : files: createFilesystemsFiles: createFiles: op(9): failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3737942981", trying btrfs: device or resource busy Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3737942981" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3737942981" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): op(c): [started] unmounting "/mnt/oem3737942981" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): op(c): [finished] unmounting "/mnt/oem3737942981" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/profile.d/google-cloud-sdk.sh" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:35:25.260977 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(d): GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubeadm: attempt #1 Feb 12 20:35:25.481005 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(d): GET result: OK Feb 12 20:35:25.636375 ignition[837]: DEBUG : files: createFilesystemsFiles: createFiles: op(d): file matches expected sum of: f40216b7d14046931c58072d10c7122934eac5a23c08821371f8b08ac1779443ad11d3458a4c5dcde7cf80fc600a9fefb14b1942aa46a52330248d497ca88836 Feb 12 20:35:25.636375 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:35:25.675970 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(e): [started] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:35:25.675970 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(e): GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubelet: attempt #1 Feb 12 20:35:25.675970 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(e): GET result: OK Feb 12 20:35:26.191558 ignition[837]: DEBUG : files: createFilesystemsFiles: createFiles: op(e): file matches expected sum of: a283da2224d456958b2cb99b4f6faf4457c4ed89e9e95f37d970c637f6a7f64ff4dd4d2bfce538759b2d2090933bece599a285ef8fd132eb383fece9a3941560 Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(e): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(f): [started] writing file "/sysroot/home/core/install.sh" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(f): [finished] writing file "/sysroot/home/core/install.sh" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(10): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(10): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(11): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(11): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): [started] writing file "/sysroot/etc/systemd/system/oem-gce.service" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): op(13): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem295542057" Feb 12 20:35:26.215973 ignition[837]: CRITICAL : files: createFilesystemsFiles: createFiles: op(12): op(13): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem295542057": device or resource busy Feb 12 20:35:26.215973 ignition[837]: ERROR : files: createFilesystemsFiles: createFiles: op(12): failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem295542057", trying btrfs: device or resource busy Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): op(14): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem295542057" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): op(14): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem295542057" Feb 12 20:35:26.215973 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): op(15): [started] unmounting "/mnt/oem295542057" Feb 12 20:35:26.660000 kernel: audit: type=1130 audit(1707770126.266:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.660052 kernel: audit: type=1130 audit(1707770126.357:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.660078 kernel: audit: type=1130 audit(1707770126.404:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.660100 kernel: audit: type=1131 audit(1707770126.404:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.660122 kernel: audit: type=1130 audit(1707770126.507:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.660139 kernel: audit: type=1131 audit(1707770126.507:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.266000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.357000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.404000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.404000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.507000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.507000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.214685 systemd[1]: mnt-oem295542057.mount: Deactivated successfully. Feb 12 20:35:26.697026 kernel: audit: type=1130 audit(1707770126.666:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.666000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): op(15): [finished] unmounting "/mnt/oem295542057" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(12): [finished] writing file "/sysroot/etc/systemd/system/oem-gce.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): [started] writing file "/sysroot/etc/systemd/system/oem-gce-enable-oslogin.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): op(17): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1597038869" Feb 12 20:35:26.697170 ignition[837]: CRITICAL : files: createFilesystemsFiles: createFiles: op(16): op(17): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1597038869": device or resource busy Feb 12 20:35:26.697170 ignition[837]: ERROR : files: createFilesystemsFiles: createFiles: op(16): failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1597038869", trying btrfs: device or resource busy Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): op(18): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1597038869" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): op(18): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1597038869" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): op(19): [started] unmounting "/mnt/oem1597038869" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): op(19): [finished] unmounting "/mnt/oem1597038869" Feb 12 20:35:26.697170 ignition[837]: INFO : files: createFilesystemsFiles: createFiles: op(16): [finished] writing file "/sysroot/etc/systemd/system/oem-gce-enable-oslogin.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: op(1a): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: op(1a): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: op(1b): [started] processing unit "oem-gce.service" Feb 12 20:35:26.697170 ignition[837]: INFO : files: op(1b): [finished] processing unit "oem-gce.service" Feb 12 20:35:27.048978 kernel: audit: type=1131 audit(1707770126.785:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.785000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.243123 systemd[1]: mnt-oem1597038869.mount: Deactivated successfully. Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1c): [started] processing unit "oem-gce-enable-oslogin.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1c): [finished] processing unit "oem-gce-enable-oslogin.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1d): [started] processing unit "prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1d): op(1e): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1d): op(1e): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1d): [finished] processing unit "prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1f): [started] processing unit "prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1f): op(20): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1f): op(20): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(1f): [finished] processing unit "prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(21): [started] setting preset to enabled for "oem-gce-enable-oslogin.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(21): [finished] setting preset to enabled for "oem-gce-enable-oslogin.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(22): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(22): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(23): [started] setting preset to enabled for "prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(23): [finished] setting preset to enabled for "prepare-critools.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(24): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(24): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(25): [started] setting preset to enabled for "oem-gce.service" Feb 12 20:35:27.066225 ignition[837]: INFO : files: op(25): [finished] setting preset to enabled for "oem-gce.service" Feb 12 20:35:27.103000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.145000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.188000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.222000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.303000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.336000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.376000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.390000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.410000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.428000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.258628 systemd[1]: Finished ignition-files.service. Feb 12 20:35:27.454000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.463044 initrd-setup-root-after-ignition[860]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 12 20:35:27.470000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.486361 ignition[837]: INFO : files: createResultFile: createFiles: op(26): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:35:27.486361 ignition[837]: INFO : files: createResultFile: createFiles: op(26): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:35:27.486361 ignition[837]: INFO : files: files passed Feb 12 20:35:27.486361 ignition[837]: INFO : Ignition finished successfully Feb 12 20:35:27.492000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.522000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.277569 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 12 20:35:26.311004 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 12 20:35:26.312201 systemd[1]: Starting ignition-quench.service... Feb 12 20:35:26.334368 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 12 20:35:26.383953 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 12 20:35:27.644000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.384071 systemd[1]: Finished ignition-quench.service. Feb 12 20:35:27.660000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.406216 systemd[1]: Reached target ignition-complete.target. Feb 12 20:35:27.684165 ignition[875]: INFO : Ignition 2.14.0 Feb 12 20:35:27.684165 ignition[875]: INFO : Stage: umount Feb 12 20:35:27.684165 ignition[875]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:35:27.684165 ignition[875]: DEBUG : parsing config with SHA512: 28536912712fffc63406b6accf8759a9de2528d78fa3e153de6c4a0ac81102f9876238326a650eaef6ce96ba6e26bae8fbbfe85a3f956a15fdad11da447b6af6 Feb 12 20:35:27.684165 ignition[875]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/gcp" Feb 12 20:35:27.684165 ignition[875]: INFO : umount: umount passed Feb 12 20:35:27.684165 ignition[875]: INFO : Ignition finished successfully Feb 12 20:35:27.704000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.720000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.739000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:27.739000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.464238 systemd[1]: Starting initrd-parse-etc.service... Feb 12 20:35:27.807000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.498164 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 12 20:35:27.815000 audit: BPF prog-id=6 op=UNLOAD Feb 12 20:35:27.823000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.498277 systemd[1]: Finished initrd-parse-etc.service. Feb 12 20:35:27.839000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.509361 systemd[1]: Reached target initrd-fs.target. Feb 12 20:35:26.601139 systemd[1]: Reached target initrd.target. Feb 12 20:35:27.860000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.618312 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 12 20:35:26.619718 systemd[1]: Starting dracut-pre-pivot.service... Feb 12 20:35:26.640447 systemd[1]: Finished dracut-pre-pivot.service. Feb 12 20:35:27.917000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.669584 systemd[1]: Starting initrd-cleanup.service... Feb 12 20:35:27.932000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.712557 systemd[1]: Stopped target nss-lookup.target. Feb 12 20:35:27.947000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.718320 systemd[1]: Stopped target remote-cryptsetup.target. Feb 12 20:35:26.741374 systemd[1]: Stopped target timers.target. Feb 12 20:35:26.765329 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 12 20:35:27.987000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.765517 systemd[1]: Stopped dracut-pre-pivot.service. Feb 12 20:35:28.004000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.787570 systemd[1]: Stopped target initrd.target. Feb 12 20:35:28.019000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:28.019000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:26.830348 systemd[1]: Stopped target basic.target. Feb 12 20:35:26.855668 systemd[1]: Stopped target ignition-complete.target. Feb 12 20:35:26.906302 systemd[1]: Stopped target ignition-diskful.target. Feb 12 20:35:26.923442 systemd[1]: Stopped target initrd-root-device.target. Feb 12 20:35:26.944394 systemd[1]: Stopped target remote-fs.target. Feb 12 20:35:26.965347 systemd[1]: Stopped target remote-fs-pre.target. Feb 12 20:35:28.099005 systemd-journald[189]: Received SIGTERM from PID 1 (n/a). Feb 12 20:35:28.099070 iscsid[702]: iscsid shutting down. Feb 12 20:35:27.008296 systemd[1]: Stopped target sysinit.target. Feb 12 20:35:27.038282 systemd[1]: Stopped target local-fs.target. Feb 12 20:35:27.057321 systemd[1]: Stopped target local-fs-pre.target. Feb 12 20:35:27.074305 systemd[1]: Stopped target swap.target. Feb 12 20:35:27.087302 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 12 20:35:27.087493 systemd[1]: Stopped dracut-pre-mount.service. Feb 12 20:35:27.105424 systemd[1]: Stopped target cryptsetup.target. Feb 12 20:35:27.123382 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 12 20:35:27.123582 systemd[1]: Stopped dracut-initqueue.service. Feb 12 20:35:27.147448 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 12 20:35:27.147695 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 12 20:35:27.190370 systemd[1]: ignition-files.service: Deactivated successfully. Feb 12 20:35:27.190554 systemd[1]: Stopped ignition-files.service. Feb 12 20:35:27.225918 systemd[1]: Stopping ignition-mount.service... Feb 12 20:35:27.260331 systemd[1]: Stopping iscsiuio.service... Feb 12 20:35:27.281961 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 12 20:35:27.282244 systemd[1]: Stopped kmod-static-nodes.service. Feb 12 20:35:27.306601 systemd[1]: Stopping sysroot-boot.service... Feb 12 20:35:27.324974 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 12 20:35:27.325250 systemd[1]: Stopped systemd-udev-trigger.service. Feb 12 20:35:27.338401 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 12 20:35:27.338572 systemd[1]: Stopped dracut-pre-trigger.service. Feb 12 20:35:27.382592 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 12 20:35:27.383464 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 12 20:35:27.383578 systemd[1]: Stopped iscsiuio.service. Feb 12 20:35:27.392995 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 12 20:35:27.393124 systemd[1]: Stopped ignition-mount.service. Feb 12 20:35:27.412771 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 12 20:35:27.412918 systemd[1]: Stopped sysroot-boot.service. Feb 12 20:35:27.430919 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 12 20:35:27.431066 systemd[1]: Stopped ignition-disks.service. Feb 12 20:35:27.456110 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 12 20:35:27.456199 systemd[1]: Stopped ignition-kargs.service. Feb 12 20:35:27.472053 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 12 20:35:27.472126 systemd[1]: Stopped ignition-fetch.service. Feb 12 20:35:27.494087 systemd[1]: Stopped target network.target. Feb 12 20:35:27.494153 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 12 20:35:27.494235 systemd[1]: Stopped ignition-fetch-offline.service. Feb 12 20:35:27.524141 systemd[1]: Stopped target paths.target. Feb 12 20:35:27.546995 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 12 20:35:27.550918 systemd[1]: Stopped systemd-ask-password-console.path. Feb 12 20:35:27.554156 systemd[1]: Stopped target slices.target. Feb 12 20:35:27.575957 systemd[1]: Stopped target sockets.target. Feb 12 20:35:27.592031 systemd[1]: iscsid.socket: Deactivated successfully. Feb 12 20:35:27.592105 systemd[1]: Closed iscsid.socket. Feb 12 20:35:27.616130 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 12 20:35:27.616191 systemd[1]: Closed iscsiuio.socket. Feb 12 20:35:27.630149 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 12 20:35:27.630224 systemd[1]: Stopped ignition-setup.service. Feb 12 20:35:27.646196 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 12 20:35:27.646266 systemd[1]: Stopped initrd-setup-root.service. Feb 12 20:35:27.662300 systemd[1]: Stopping systemd-networkd.service... Feb 12 20:35:27.665875 systemd-networkd[692]: eth0: DHCPv6 lease lost Feb 12 20:35:27.676205 systemd[1]: Stopping systemd-resolved.service... Feb 12 20:35:27.691716 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 12 20:35:27.691859 systemd[1]: Stopped systemd-resolved.service. Feb 12 20:35:27.706856 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 12 20:35:27.706996 systemd[1]: Stopped systemd-networkd.service. Feb 12 20:35:27.722721 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 12 20:35:27.722843 systemd[1]: Finished initrd-cleanup.service. Feb 12 20:35:27.742169 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 12 20:35:27.742210 systemd[1]: Closed systemd-networkd.socket. Feb 12 20:35:27.770129 systemd[1]: Stopping network-cleanup.service... Feb 12 20:35:27.781168 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 12 20:35:27.781261 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 12 20:35:27.809128 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 12 20:35:27.809204 systemd[1]: Stopped systemd-sysctl.service. Feb 12 20:35:27.825222 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 12 20:35:27.825286 systemd[1]: Stopped systemd-modules-load.service. Feb 12 20:35:27.841324 systemd[1]: Stopping systemd-udevd.service... Feb 12 20:35:27.856714 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Feb 12 20:35:27.857630 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 12 20:35:27.857914 systemd[1]: Stopped systemd-udevd.service. Feb 12 20:35:27.863758 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 12 20:35:27.863859 systemd[1]: Closed systemd-udevd-control.socket. Feb 12 20:35:27.884130 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 12 20:35:27.884188 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 12 20:35:27.903027 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 12 20:35:27.903133 systemd[1]: Stopped dracut-pre-udev.service. Feb 12 20:35:27.919169 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 12 20:35:27.919251 systemd[1]: Stopped dracut-cmdline.service. Feb 12 20:35:27.934100 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 12 20:35:27.934173 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 12 20:35:28.101000 audit: BPF prog-id=9 op=UNLOAD Feb 12 20:35:27.950096 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 12 20:35:27.974051 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 12 20:35:27.974157 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 12 20:35:27.989697 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 12 20:35:27.989848 systemd[1]: Stopped network-cleanup.service. Feb 12 20:35:28.006491 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 12 20:35:28.006610 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 12 20:35:28.021415 systemd[1]: Reached target initrd-switch-root.target. Feb 12 20:35:28.039087 systemd[1]: Starting initrd-switch-root.service... Feb 12 20:35:28.060383 systemd[1]: Switching root. Feb 12 20:35:28.103443 systemd-journald[189]: Journal stopped Feb 12 20:35:32.800068 kernel: SELinux: Class mctp_socket not defined in policy. Feb 12 20:35:32.800190 kernel: SELinux: Class anon_inode not defined in policy. Feb 12 20:35:32.800233 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 12 20:35:32.800267 kernel: SELinux: policy capability network_peer_controls=1 Feb 12 20:35:32.800293 kernel: SELinux: policy capability open_perms=1 Feb 12 20:35:32.800319 kernel: SELinux: policy capability extended_socket_class=1 Feb 12 20:35:32.800345 kernel: SELinux: policy capability always_check_network=0 Feb 12 20:35:32.800371 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 12 20:35:32.800405 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 12 20:35:32.800431 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 12 20:35:32.800463 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 12 20:35:32.800491 systemd[1]: Successfully loaded SELinux policy in 112.371ms. Feb 12 20:35:32.800543 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 10.711ms. Feb 12 20:35:32.800593 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:35:32.800623 systemd[1]: Detected virtualization kvm. Feb 12 20:35:32.800650 systemd[1]: Detected architecture x86-64. Feb 12 20:35:32.800692 systemd[1]: Detected first boot. Feb 12 20:35:32.800720 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:35:32.800780 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 12 20:35:32.800854 systemd[1]: Populated /etc with preset unit settings. Feb 12 20:35:32.801005 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:35:32.801051 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:35:32.801082 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:35:32.801122 kernel: kauditd_printk_skb: 49 callbacks suppressed Feb 12 20:35:32.801150 kernel: audit: type=1334 audit(1707770131.888:87): prog-id=12 op=LOAD Feb 12 20:35:32.801175 kernel: audit: type=1334 audit(1707770131.888:88): prog-id=3 op=UNLOAD Feb 12 20:35:32.801200 kernel: audit: type=1334 audit(1707770131.893:89): prog-id=13 op=LOAD Feb 12 20:35:32.801225 kernel: audit: type=1334 audit(1707770131.900:90): prog-id=14 op=LOAD Feb 12 20:35:32.801251 kernel: audit: type=1334 audit(1707770131.900:91): prog-id=4 op=UNLOAD Feb 12 20:35:32.801278 kernel: audit: type=1334 audit(1707770131.900:92): prog-id=5 op=UNLOAD Feb 12 20:35:32.801305 kernel: audit: type=1334 audit(1707770131.907:93): prog-id=15 op=LOAD Feb 12 20:35:32.801355 kernel: audit: type=1334 audit(1707770131.907:94): prog-id=12 op=UNLOAD Feb 12 20:35:32.801381 kernel: audit: type=1334 audit(1707770131.935:95): prog-id=16 op=LOAD Feb 12 20:35:32.801404 kernel: audit: type=1334 audit(1707770131.942:96): prog-id=17 op=LOAD Feb 12 20:35:32.801430 systemd[1]: iscsid.service: Deactivated successfully. Feb 12 20:35:32.801458 systemd[1]: Stopped iscsid.service. Feb 12 20:35:32.801485 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 12 20:35:32.801513 systemd[1]: Stopped initrd-switch-root.service. Feb 12 20:35:32.801540 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 12 20:35:32.801568 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 12 20:35:32.801599 systemd[1]: Created slice system-addon\x2drun.slice. Feb 12 20:35:32.801627 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 12 20:35:32.801654 systemd[1]: Created slice system-getty.slice. Feb 12 20:35:32.801690 systemd[1]: Created slice system-modprobe.slice. Feb 12 20:35:32.801719 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 12 20:35:32.801745 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 12 20:35:32.801773 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 12 20:35:32.801802 systemd[1]: Created slice user.slice. Feb 12 20:35:32.801870 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:35:32.801898 systemd[1]: Started systemd-ask-password-wall.path. Feb 12 20:35:32.801923 systemd[1]: Set up automount boot.automount. Feb 12 20:35:32.801948 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 12 20:35:32.801977 systemd[1]: Stopped target initrd-switch-root.target. Feb 12 20:35:32.802003 systemd[1]: Stopped target initrd-fs.target. Feb 12 20:35:32.802035 systemd[1]: Stopped target initrd-root-fs.target. Feb 12 20:35:32.802059 systemd[1]: Reached target integritysetup.target. Feb 12 20:35:32.802085 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:35:32.802116 systemd[1]: Reached target remote-fs.target. Feb 12 20:35:32.802143 systemd[1]: Reached target slices.target. Feb 12 20:35:32.802166 systemd[1]: Reached target swap.target. Feb 12 20:35:32.802192 systemd[1]: Reached target torcx.target. Feb 12 20:35:32.802223 systemd[1]: Reached target veritysetup.target. Feb 12 20:35:32.802250 systemd[1]: Listening on systemd-coredump.socket. Feb 12 20:35:32.802278 systemd[1]: Listening on systemd-initctl.socket. Feb 12 20:35:32.802380 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:35:32.802410 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:35:32.802437 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:35:32.802470 systemd[1]: Listening on systemd-userdbd.socket. Feb 12 20:35:32.802495 systemd[1]: Mounting dev-hugepages.mount... Feb 12 20:35:32.802521 systemd[1]: Mounting dev-mqueue.mount... Feb 12 20:35:32.802546 systemd[1]: Mounting media.mount... Feb 12 20:35:32.802574 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Feb 12 20:35:32.802602 systemd[1]: Mounting sys-kernel-debug.mount... Feb 12 20:35:32.802631 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 12 20:35:32.802655 systemd[1]: Mounting tmp.mount... Feb 12 20:35:32.802688 systemd[1]: Starting flatcar-tmpfiles.service... Feb 12 20:35:32.802720 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 12 20:35:32.802748 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:35:32.802778 systemd[1]: Starting modprobe@configfs.service... Feb 12 20:35:32.802806 systemd[1]: Starting modprobe@dm_mod.service... Feb 12 20:35:32.802859 systemd[1]: Starting modprobe@drm.service... Feb 12 20:35:32.802888 systemd[1]: Starting modprobe@efi_pstore.service... Feb 12 20:35:32.802917 systemd[1]: Starting modprobe@fuse.service... Feb 12 20:35:32.802946 systemd[1]: Starting modprobe@loop.service... Feb 12 20:35:32.802974 kernel: fuse: init (API version 7.34) Feb 12 20:35:32.803009 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 12 20:35:32.803036 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 12 20:35:32.803061 kernel: loop: module loaded Feb 12 20:35:32.803087 systemd[1]: Stopped systemd-fsck-root.service. Feb 12 20:35:32.803115 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 12 20:35:32.803140 systemd[1]: Stopped systemd-fsck-usr.service. Feb 12 20:35:32.803166 systemd[1]: Stopped systemd-journald.service. Feb 12 20:35:32.803192 systemd[1]: Starting systemd-journald.service... Feb 12 20:35:32.803218 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:35:32.803254 systemd[1]: Starting systemd-network-generator.service... Feb 12 20:35:32.803287 systemd-journald[999]: Journal started Feb 12 20:35:32.803390 systemd-journald[999]: Runtime Journal (/run/log/journal/abb4ccada4560031ba18a58cf8746cd8) is 8.0M, max 148.8M, 140.8M free. Feb 12 20:35:28.401000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 12 20:35:28.565000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:35:28.566000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:35:28.566000 audit: BPF prog-id=10 op=LOAD Feb 12 20:35:28.566000 audit: BPF prog-id=10 op=UNLOAD Feb 12 20:35:28.566000 audit: BPF prog-id=11 op=LOAD Feb 12 20:35:28.566000 audit: BPF prog-id=11 op=UNLOAD Feb 12 20:35:28.726000 audit[908]: AVC avc: denied { associate } for pid=908 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 12 20:35:28.726000 audit[908]: SYSCALL arch=c000003e syscall=188 success=yes exit=0 a0=c0001178dc a1=c00002ae40 a2=c000029b00 a3=32 items=0 ppid=891 pid=908 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:28.726000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:35:28.737000 audit[908]: AVC avc: denied { associate } for pid=908 comm="torcx-generator" name="lib" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 12 20:35:28.737000 audit[908]: SYSCALL arch=c000003e syscall=258 success=yes exit=0 a0=ffffffffffffff9c a1=c0001179b5 a2=1ed a3=0 items=2 ppid=891 pid=908 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:28.737000 audit: CWD cwd="/" Feb 12 20:35:28.737000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:28.737000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:28.737000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:35:31.888000 audit: BPF prog-id=12 op=LOAD Feb 12 20:35:31.888000 audit: BPF prog-id=3 op=UNLOAD Feb 12 20:35:31.893000 audit: BPF prog-id=13 op=LOAD Feb 12 20:35:31.900000 audit: BPF prog-id=14 op=LOAD Feb 12 20:35:31.900000 audit: BPF prog-id=4 op=UNLOAD Feb 12 20:35:31.900000 audit: BPF prog-id=5 op=UNLOAD Feb 12 20:35:31.907000 audit: BPF prog-id=15 op=LOAD Feb 12 20:35:31.907000 audit: BPF prog-id=12 op=UNLOAD Feb 12 20:35:31.935000 audit: BPF prog-id=16 op=LOAD Feb 12 20:35:31.942000 audit: BPF prog-id=17 op=LOAD Feb 12 20:35:31.943000 audit: BPF prog-id=13 op=UNLOAD Feb 12 20:35:31.943000 audit: BPF prog-id=14 op=UNLOAD Feb 12 20:35:31.944000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:31.976000 audit: BPF prog-id=15 op=UNLOAD Feb 12 20:35:31.983000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.006000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.006000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.717000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.739000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.753000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.753000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.754000 audit: BPF prog-id=18 op=LOAD Feb 12 20:35:32.754000 audit: BPF prog-id=19 op=LOAD Feb 12 20:35:32.754000 audit: BPF prog-id=20 op=LOAD Feb 12 20:35:32.754000 audit: BPF prog-id=16 op=UNLOAD Feb 12 20:35:32.754000 audit: BPF prog-id=17 op=UNLOAD Feb 12 20:35:32.795000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 12 20:35:32.795000 audit[999]: SYSCALL arch=c000003e syscall=46 success=yes exit=60 a0=6 a1=7ffc0ad6e150 a2=4000 a3=7ffc0ad6e1ec items=0 ppid=1 pid=999 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:32.795000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 12 20:35:31.887927 systemd[1]: Queued start job for default target multi-user.target. Feb 12 20:35:28.723664 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:35:31.946285 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 12 20:35:28.724967 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:35:32.815878 systemd[1]: Starting systemd-remount-fs.service... Feb 12 20:35:28.724991 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:35:28.725049 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 12 20:35:28.725062 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 12 20:35:28.725106 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 12 20:35:28.725121 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 12 20:35:28.725344 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 12 20:35:28.725388 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:35:28.725403 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:35:28.726888 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 12 20:35:28.726936 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 12 20:35:28.726981 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 12 20:35:28.727000 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 12 20:35:28.727021 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 12 20:35:28.727038 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:28Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 12 20:35:31.250262 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:35:31.250558 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:35:31.250684 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:35:31.250943 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:35:31.251003 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 12 20:35:31.251076 /usr/lib/systemd/system-generators/torcx-generator[908]: time="2024-02-12T20:35:31Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 12 20:35:32.830950 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:35:32.844837 systemd[1]: verity-setup.service: Deactivated successfully. Feb 12 20:35:32.850851 systemd[1]: Stopped verity-setup.service. Feb 12 20:35:32.855000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.869839 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Feb 12 20:35:32.878838 systemd[1]: Started systemd-journald.service. Feb 12 20:35:32.886000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.889255 systemd[1]: Mounted dev-hugepages.mount. Feb 12 20:35:32.897176 systemd[1]: Mounted dev-mqueue.mount. Feb 12 20:35:32.904159 systemd[1]: Mounted media.mount. Feb 12 20:35:32.912131 systemd[1]: Mounted sys-kernel-debug.mount. Feb 12 20:35:32.921159 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 12 20:35:32.930109 systemd[1]: Mounted tmp.mount. Feb 12 20:35:32.937300 systemd[1]: Finished flatcar-tmpfiles.service. Feb 12 20:35:32.944000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.946376 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:35:32.953000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.955348 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 12 20:35:32.955565 systemd[1]: Finished modprobe@configfs.service. Feb 12 20:35:32.962000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.962000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.964379 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 12 20:35:32.964597 systemd[1]: Finished modprobe@dm_mod.service. Feb 12 20:35:32.972000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.972000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.974471 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 12 20:35:32.974728 systemd[1]: Finished modprobe@drm.service. Feb 12 20:35:32.981000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.981000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.983387 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 12 20:35:32.983595 systemd[1]: Finished modprobe@efi_pstore.service. Feb 12 20:35:32.991000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.991000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:32.993410 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 12 20:35:32.993625 systemd[1]: Finished modprobe@fuse.service. Feb 12 20:35:33.000000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.000000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.002458 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 12 20:35:33.002685 systemd[1]: Finished modprobe@loop.service. Feb 12 20:35:33.009000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.009000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.011396 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:35:33.018000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.020395 systemd[1]: Finished systemd-network-generator.service. Feb 12 20:35:33.027000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.029448 systemd[1]: Finished systemd-remount-fs.service. Feb 12 20:35:33.036000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.038398 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:35:33.045000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.047648 systemd[1]: Reached target network-pre.target. Feb 12 20:35:33.057490 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 12 20:35:33.068426 systemd[1]: Mounting sys-kernel-config.mount... Feb 12 20:35:33.076000 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 12 20:35:33.079024 systemd[1]: Starting systemd-hwdb-update.service... Feb 12 20:35:33.087782 systemd[1]: Starting systemd-journal-flush.service... Feb 12 20:35:33.096993 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 12 20:35:33.098726 systemd[1]: Starting systemd-random-seed.service... Feb 12 20:35:33.106156 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 12 20:35:33.107998 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:35:33.108784 systemd-journald[999]: Time spent on flushing to /var/log/journal/abb4ccada4560031ba18a58cf8746cd8 is 57.440ms for 1161 entries. Feb 12 20:35:33.108784 systemd-journald[999]: System Journal (/var/log/journal/abb4ccada4560031ba18a58cf8746cd8) is 8.0M, max 584.8M, 576.8M free. Feb 12 20:35:33.210241 systemd-journald[999]: Received client request to flush runtime journal. Feb 12 20:35:33.168000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.177000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.203000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.124859 systemd[1]: Starting systemd-sysusers.service... Feb 12 20:35:33.133591 systemd[1]: Starting systemd-udev-settle.service... Feb 12 20:35:33.144351 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 12 20:35:33.153069 systemd[1]: Mounted sys-kernel-config.mount. Feb 12 20:35:33.213796 udevadm[1013]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Feb 12 20:35:33.161301 systemd[1]: Finished systemd-random-seed.service. Feb 12 20:35:33.170330 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:35:33.182511 systemd[1]: Reached target first-boot-complete.target. Feb 12 20:35:33.196322 systemd[1]: Finished systemd-sysusers.service. Feb 12 20:35:33.212446 systemd[1]: Finished systemd-journal-flush.service. Feb 12 20:35:33.219000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.792196 systemd[1]: Finished systemd-hwdb-update.service. Feb 12 20:35:33.799000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.799000 audit: BPF prog-id=21 op=LOAD Feb 12 20:35:33.800000 audit: BPF prog-id=22 op=LOAD Feb 12 20:35:33.800000 audit: BPF prog-id=7 op=UNLOAD Feb 12 20:35:33.800000 audit: BPF prog-id=8 op=UNLOAD Feb 12 20:35:33.802861 systemd[1]: Starting systemd-udevd.service... Feb 12 20:35:33.825802 systemd-udevd[1016]: Using default interface naming scheme 'v252'. Feb 12 20:35:33.880570 systemd[1]: Started systemd-udevd.service. Feb 12 20:35:33.887000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:33.890000 audit: BPF prog-id=23 op=LOAD Feb 12 20:35:33.893042 systemd[1]: Starting systemd-networkd.service... Feb 12 20:35:33.905000 audit: BPF prog-id=24 op=LOAD Feb 12 20:35:33.905000 audit: BPF prog-id=25 op=LOAD Feb 12 20:35:33.905000 audit: BPF prog-id=26 op=LOAD Feb 12 20:35:33.908404 systemd[1]: Starting systemd-userdbd.service... Feb 12 20:35:33.971743 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 12 20:35:33.973600 systemd[1]: Started systemd-userdbd.service. Feb 12 20:35:33.980000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.078865 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/sda6 scanned by (udev-worker) (1023) Feb 12 20:35:34.127581 systemd-networkd[1031]: lo: Link UP Feb 12 20:35:34.134976 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input2 Feb 12 20:35:34.127605 systemd-networkd[1031]: lo: Gained carrier Feb 12 20:35:34.128450 systemd-networkd[1031]: Enumeration completed Feb 12 20:35:34.128609 systemd-networkd[1031]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:35:34.134354 systemd[1]: Started systemd-networkd.service. Feb 12 20:35:34.137544 systemd-networkd[1031]: eth0: Link UP Feb 12 20:35:34.137576 systemd-networkd[1031]: eth0: Gained carrier Feb 12 20:35:34.141000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.149010 systemd-networkd[1031]: eth0: DHCPv4 address 10.128.0.61/32, gateway 10.128.0.1 acquired from 169.254.169.254 Feb 12 20:35:34.184000 audit[1047]: AVC avc: denied { confidentiality } for pid=1047 comm="(udev-worker)" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=1 Feb 12 20:35:34.184000 audit[1047]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55713756dc30 a1=32194 a2=7f24d8c26bc5 a3=5 items=108 ppid=1016 pid=1047 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="(udev-worker)" exe="/usr/bin/udevadm" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:34.184000 audit: CWD cwd="/" Feb 12 20:35:34.184000 audit: PATH item=0 name=(null) inode=40 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=1 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=2 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=3 name=(null) inode=14634 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=4 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=5 name=(null) inode=14635 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=6 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=7 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=8 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=9 name=(null) inode=14637 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=10 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=11 name=(null) inode=14638 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=12 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=13 name=(null) inode=14639 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=14 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.224744 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:35:34.225839 kernel: EDAC MC: Ver: 3.0.0 Feb 12 20:35:34.184000 audit: PATH item=15 name=(null) inode=14640 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=16 name=(null) inode=14636 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=17 name=(null) inode=14641 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=18 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=19 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=20 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=21 name=(null) inode=14643 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=22 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=23 name=(null) inode=14644 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=24 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=25 name=(null) inode=14645 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=26 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=27 name=(null) inode=14646 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=28 name=(null) inode=14642 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=29 name=(null) inode=14647 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=30 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=31 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=32 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=33 name=(null) inode=14649 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=34 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=35 name=(null) inode=14650 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=36 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=37 name=(null) inode=14651 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=38 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=39 name=(null) inode=14652 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=40 name=(null) inode=14648 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=41 name=(null) inode=14653 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=42 name=(null) inode=14633 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=43 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=44 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=45 name=(null) inode=14655 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=46 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=47 name=(null) inode=14656 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=48 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=49 name=(null) inode=14657 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=50 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=51 name=(null) inode=14658 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=52 name=(null) inode=14654 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=53 name=(null) inode=14659 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=54 name=(null) inode=40 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=55 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=56 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=57 name=(null) inode=14661 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=58 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=59 name=(null) inode=14662 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=60 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=61 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=62 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=63 name=(null) inode=14664 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=64 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=65 name=(null) inode=14665 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=66 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=67 name=(null) inode=14666 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=68 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=69 name=(null) inode=14667 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=70 name=(null) inode=14663 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=71 name=(null) inode=14668 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=72 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=73 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=74 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=75 name=(null) inode=14670 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=76 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=77 name=(null) inode=14671 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=78 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=79 name=(null) inode=14672 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=80 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=81 name=(null) inode=14673 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=82 name=(null) inode=14669 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=83 name=(null) inode=14674 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=84 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=85 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=86 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=87 name=(null) inode=14676 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=88 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=89 name=(null) inode=14677 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=90 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=91 name=(null) inode=14678 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=92 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=93 name=(null) inode=14679 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=94 name=(null) inode=14675 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=95 name=(null) inode=14680 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=96 name=(null) inode=14660 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=97 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=98 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=99 name=(null) inode=14682 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=100 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=101 name=(null) inode=14683 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=102 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=103 name=(null) inode=14684 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=104 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=105 name=(null) inode=14685 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=106 name=(null) inode=14681 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PATH item=107 name=(null) inode=14686 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:35:34.184000 audit: PROCTITLE proctitle="(udev-worker)" Feb 12 20:35:34.241861 kernel: ACPI: button: Power Button [PWRF] Feb 12 20:35:34.253850 kernel: input: Sleep Button as /devices/LNXSYSTM:00/LNXSLPBN:00/input/input3 Feb 12 20:35:34.266846 kernel: input: ImExPS/2 Generic Explorer Mouse as /devices/platform/i8042/serio1/input/input4 Feb 12 20:35:34.266961 kernel: ACPI: button: Sleep Button [SLPF] Feb 12 20:35:34.282853 kernel: piix4_smbus 0000:00:01.3: SMBus base address uninitialized - upgrade BIOS or use force_addr=0xaddr Feb 12 20:35:34.295848 kernel: mousedev: PS/2 mouse device common for all mice Feb 12 20:35:34.312360 systemd[1]: Finished systemd-udev-settle.service. Feb 12 20:35:34.319000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.322549 systemd[1]: Starting lvm2-activation-early.service... Feb 12 20:35:34.355902 lvm[1053]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:35:34.384239 systemd[1]: Finished lvm2-activation-early.service. Feb 12 20:35:34.391000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.393178 systemd[1]: Reached target cryptsetup.target. Feb 12 20:35:34.403429 systemd[1]: Starting lvm2-activation.service... Feb 12 20:35:34.409644 lvm[1054]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:35:34.435246 systemd[1]: Finished lvm2-activation.service. Feb 12 20:35:34.442000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.444184 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:35:34.452974 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 12 20:35:34.453023 systemd[1]: Reached target local-fs.target. Feb 12 20:35:34.460978 systemd[1]: Reached target machines.target. Feb 12 20:35:34.470580 systemd[1]: Starting ldconfig.service... Feb 12 20:35:34.480941 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 12 20:35:34.481038 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:35:34.482791 systemd[1]: Starting systemd-boot-update.service... Feb 12 20:35:34.491578 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 12 20:35:34.503977 systemd[1]: Starting systemd-machine-id-commit.service... Feb 12 20:35:34.504436 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:35:34.504542 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:35:34.506552 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 12 20:35:34.507417 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1056 (bootctl) Feb 12 20:35:34.510641 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 12 20:35:34.532000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.534558 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 12 20:35:34.556052 systemd-tmpfiles[1060]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 12 20:35:34.569117 systemd-tmpfiles[1060]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 12 20:35:34.581146 systemd-tmpfiles[1060]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 12 20:35:34.668284 systemd-fsck[1064]: fsck.fat 4.2 (2021-01-31) Feb 12 20:35:34.668284 systemd-fsck[1064]: /dev/sda1: 789 files, 115339/258078 clusters Feb 12 20:35:34.672657 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 12 20:35:34.681000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.687917 systemd[1]: Mounting boot.mount... Feb 12 20:35:34.720244 systemd[1]: Mounted boot.mount. Feb 12 20:35:34.750894 systemd[1]: Finished systemd-boot-update.service. Feb 12 20:35:34.757000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.852260 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 12 20:35:34.859000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.863325 systemd[1]: Starting audit-rules.service... Feb 12 20:35:34.873984 systemd[1]: Starting clean-ca-certificates.service... Feb 12 20:35:34.883725 systemd[1]: Starting oem-gce-enable-oslogin.service... Feb 12 20:35:34.893846 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 12 20:35:34.901000 audit: BPF prog-id=27 op=LOAD Feb 12 20:35:34.904610 systemd[1]: Starting systemd-resolved.service... Feb 12 20:35:34.912000 audit: BPF prog-id=28 op=LOAD Feb 12 20:35:34.921322 systemd[1]: Starting systemd-timesyncd.service... Feb 12 20:35:34.930501 systemd[1]: Starting systemd-update-utmp.service... Feb 12 20:35:34.938723 systemd[1]: Finished clean-ca-certificates.service. Feb 12 20:35:34.945000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:34.947680 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 12 20:35:35.011000 audit[1087]: SYSTEM_BOOT pid=1087 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 12 20:35:35.023980 systemd[1]: Finished systemd-update-utmp.service. Feb 12 20:35:35.031000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:35.033440 systemd[1]: oem-gce-enable-oslogin.service: Deactivated successfully. Feb 12 20:35:35.033727 systemd[1]: Finished oem-gce-enable-oslogin.service. Feb 12 20:35:35.040000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=oem-gce-enable-oslogin comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:35.040000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=oem-gce-enable-oslogin comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:35.052000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 12 20:35:35.052000 audit[1101]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffc8701aa40 a2=420 a3=0 items=0 ppid=1067 pid=1101 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:35.052000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 12 20:35:35.055410 augenrules[1101]: No rules Feb 12 20:35:35.056795 systemd[1]: Finished audit-rules.service. Feb 12 20:35:35.065628 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 12 20:35:35.085566 systemd-resolved[1080]: Positive Trust Anchors: Feb 12 20:35:35.085593 systemd-resolved[1080]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:35:35.085641 systemd-resolved[1080]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:35:35.098697 systemd[1]: Started systemd-timesyncd.service. Feb 12 20:35:35.100128 systemd-timesyncd[1085]: Contacted time server 169.254.169.254:123 (169.254.169.254). Feb 12 20:35:35.100199 systemd-timesyncd[1085]: Initial clock synchronization to Mon 2024-02-12 20:35:34.809698 UTC. Feb 12 20:35:35.107134 systemd[1]: Reached target time-set.target. Feb 12 20:35:35.123538 systemd-resolved[1080]: Defaulting to hostname 'linux'. Feb 12 20:35:35.127251 systemd[1]: Started systemd-resolved.service. Feb 12 20:35:35.136080 systemd[1]: Reached target network.target. Feb 12 20:35:35.145971 systemd[1]: Reached target nss-lookup.target. Feb 12 20:35:35.289221 ldconfig[1055]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 12 20:35:35.349777 systemd[1]: Finished ldconfig.service. Feb 12 20:35:35.358645 systemd[1]: Starting systemd-update-done.service... Feb 12 20:35:35.368111 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 12 20:35:35.369199 systemd[1]: Finished systemd-machine-id-commit.service. Feb 12 20:35:35.378283 systemd[1]: Finished systemd-update-done.service. Feb 12 20:35:35.387200 systemd[1]: Reached target sysinit.target. Feb 12 20:35:35.396064 systemd[1]: Started motdgen.path. Feb 12 20:35:35.403015 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 12 20:35:35.413326 systemd[1]: Started logrotate.timer. Feb 12 20:35:35.420177 systemd[1]: Started mdadm.timer. Feb 12 20:35:35.426944 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 12 20:35:35.434932 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 12 20:35:35.434988 systemd[1]: Reached target paths.target. Feb 12 20:35:35.441951 systemd[1]: Reached target timers.target. Feb 12 20:35:35.449356 systemd[1]: Listening on dbus.socket. Feb 12 20:35:35.457214 systemd[1]: Starting docker.socket... Feb 12 20:35:35.468035 systemd[1]: Listening on sshd.socket. Feb 12 20:35:35.475083 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:35:35.475769 systemd[1]: Listening on docker.socket. Feb 12 20:35:35.483133 systemd[1]: Reached target sockets.target. Feb 12 20:35:35.491950 systemd[1]: Reached target basic.target. Feb 12 20:35:35.499038 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:35:35.499084 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:35:35.500806 systemd[1]: Starting containerd.service... Feb 12 20:35:35.509364 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 12 20:35:35.520180 systemd[1]: Starting dbus.service... Feb 12 20:35:35.528666 systemd[1]: Starting enable-oem-cloudinit.service... Feb 12 20:35:35.538256 systemd[1]: Starting extend-filesystems.service... Feb 12 20:35:35.544967 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 12 20:35:35.547371 systemd[1]: Starting motdgen.service... Feb 12 20:35:35.553688 jq[1114]: false Feb 12 20:35:35.557138 systemd[1]: Starting oem-gce.service... Feb 12 20:35:35.563943 systemd[1]: Starting prepare-cni-plugins.service... Feb 12 20:35:35.572264 systemd[1]: Starting prepare-critools.service... Feb 12 20:35:35.580615 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 12 20:35:35.589527 systemd[1]: Starting sshd-keygen.service... Feb 12 20:35:35.601308 systemd[1]: Starting systemd-logind.service... Feb 12 20:35:35.608152 systemd-networkd[1031]: eth0: Gained IPv6LL Feb 12 20:35:35.609311 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:35:35.609436 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionSecurity=!tpm2). Feb 12 20:35:35.610304 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 12 20:35:35.611630 systemd[1]: Starting update-engine.service... Feb 12 20:35:35.616251 extend-filesystems[1116]: Found sda Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda1 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda2 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda3 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found usr Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda4 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda6 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda7 Feb 12 20:35:35.625253 extend-filesystems[1116]: Found sda9 Feb 12 20:35:35.621652 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 12 20:35:35.709211 extend-filesystems[1116]: Checking size of /dev/sda9 Feb 12 20:35:35.718100 jq[1137]: true Feb 12 20:35:35.637769 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 12 20:35:35.718716 extend-filesystems[1116]: Resized partition /dev/sda9 Feb 12 20:35:35.638101 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 12 20:35:35.727466 tar[1143]: ./ Feb 12 20:35:35.727466 tar[1143]: ./loopback Feb 12 20:35:35.638768 systemd[1]: motdgen.service: Deactivated successfully. Feb 12 20:35:35.639047 systemd[1]: Finished motdgen.service. Feb 12 20:35:35.653362 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 12 20:35:35.728798 jq[1145]: true Feb 12 20:35:35.653690 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 12 20:35:35.730885 mkfs.ext4[1147]: mke2fs 1.46.5 (30-Dec-2021) Feb 12 20:35:35.730885 mkfs.ext4[1147]: Discarding device blocks: 0/262144\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008 \u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008\u0008done Feb 12 20:35:35.730885 mkfs.ext4[1147]: Creating filesystem with 262144 4k blocks and 65536 inodes Feb 12 20:35:35.730885 mkfs.ext4[1147]: Filesystem UUID: ebf050d9-2efe-40cc-8f61-d6f5dcc25dad Feb 12 20:35:35.730885 mkfs.ext4[1147]: Superblock backups stored on blocks: Feb 12 20:35:35.730885 mkfs.ext4[1147]: 32768, 98304, 163840, 229376 Feb 12 20:35:35.730885 mkfs.ext4[1147]: Allocating group tables: 0/8\u0008\u0008\u0008 \u0008\u0008\u0008done Feb 12 20:35:35.730885 mkfs.ext4[1147]: Writing inode tables: 0/8\u0008\u0008\u0008 \u0008\u0008\u0008done Feb 12 20:35:35.730885 mkfs.ext4[1147]: Creating journal (8192 blocks): done Feb 12 20:35:35.730885 mkfs.ext4[1147]: Writing superblocks and filesystem accounting information: 0/8\u0008\u0008\u0008 \u0008\u0008\u0008done Feb 12 20:35:35.751294 extend-filesystems[1154]: resize2fs 1.46.5 (30-Dec-2021) Feb 12 20:35:35.761027 update_engine[1136]: I0212 20:35:35.759239 1136 main.cc:92] Flatcar Update Engine starting Feb 12 20:35:35.769872 kernel: EXT4-fs (sda9): resizing filesystem from 1617920 to 2538491 blocks Feb 12 20:35:35.772627 tar[1144]: crictl Feb 12 20:35:35.777980 dbus-daemon[1113]: [system] SELinux support is enabled Feb 12 20:35:35.778271 systemd[1]: Started dbus.service. Feb 12 20:35:35.783276 dbus-daemon[1113]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.1' (uid=244 pid=1031 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 12 20:35:35.788695 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 12 20:35:35.788736 systemd[1]: Reached target system-config.target. Feb 12 20:35:35.790283 dbus-daemon[1113]: [system] Successfully activated service 'org.freedesktop.systemd1' Feb 12 20:35:35.793656 update_engine[1136]: I0212 20:35:35.793617 1136 update_check_scheduler.cc:74] Next update check in 2m51s Feb 12 20:35:35.797013 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 12 20:35:35.797050 systemd[1]: Reached target user-config.target. Feb 12 20:35:35.808991 systemd[1]: Started update-engine.service. Feb 12 20:35:35.813206 umount[1166]: umount: /var/lib/flatcar-oem-gce.img: not mounted. Feb 12 20:35:35.822968 systemd[1]: Started locksmithd.service. Feb 12 20:35:35.834523 systemd[1]: Starting systemd-hostnamed.service... Feb 12 20:35:35.847870 kernel: loop0: detected capacity change from 0 to 2097152 Feb 12 20:35:35.858843 kernel: EXT4-fs (sda9): resized filesystem to 2538491 Feb 12 20:35:35.894234 extend-filesystems[1154]: Filesystem at /dev/sda9 is mounted on /; on-line resizing required Feb 12 20:35:35.894234 extend-filesystems[1154]: old_desc_blocks = 1, new_desc_blocks = 2 Feb 12 20:35:35.894234 extend-filesystems[1154]: The filesystem on /dev/sda9 is now 2538491 (4k) blocks long. Feb 12 20:35:35.975065 kernel: EXT4-fs (loop0): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 12 20:35:35.975226 extend-filesystems[1116]: Resized filesystem in /dev/sda9 Feb 12 20:35:35.895687 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 12 20:35:35.984376 bash[1178]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:35:35.896076 systemd[1]: Finished extend-filesystems.service. Feb 12 20:35:35.935367 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 12 20:35:36.101602 tar[1143]: ./bandwidth Feb 12 20:35:36.126785 env[1146]: time="2024-02-12T20:35:36.126708542Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 12 20:35:36.133951 systemd-logind[1134]: Watching system buttons on /dev/input/event1 (Power Button) Feb 12 20:35:36.133991 systemd-logind[1134]: Watching system buttons on /dev/input/event2 (Sleep Button) Feb 12 20:35:36.134018 systemd-logind[1134]: Watching system buttons on /dev/input/event0 (AT Translated Set 2 keyboard) Feb 12 20:35:36.146768 systemd-logind[1134]: New seat seat0. Feb 12 20:35:36.162554 systemd[1]: Started systemd-logind.service. Feb 12 20:35:36.187550 dbus-daemon[1113]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 12 20:35:36.187739 systemd[1]: Started systemd-hostnamed.service. Feb 12 20:35:36.188764 dbus-daemon[1113]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1179 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 12 20:35:36.189401 coreos-metadata[1112]: Feb 12 20:35:36.189 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/attributes/sshKeys: Attempt #1 Feb 12 20:35:36.200751 systemd[1]: Starting polkit.service... Feb 12 20:35:36.201608 coreos-metadata[1112]: Feb 12 20:35:36.201 INFO Fetch failed with 404: resource not found Feb 12 20:35:36.201873 coreos-metadata[1112]: Feb 12 20:35:36.201 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/attributes/ssh-keys: Attempt #1 Feb 12 20:35:36.204198 coreos-metadata[1112]: Feb 12 20:35:36.203 INFO Fetch successful Feb 12 20:35:36.204445 coreos-metadata[1112]: Feb 12 20:35:36.204 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/attributes/block-project-ssh-keys: Attempt #1 Feb 12 20:35:36.206526 coreos-metadata[1112]: Feb 12 20:35:36.206 INFO Fetch failed with 404: resource not found Feb 12 20:35:36.206741 coreos-metadata[1112]: Feb 12 20:35:36.206 INFO Fetching http://169.254.169.254/computeMetadata/v1/project/attributes/sshKeys: Attempt #1 Feb 12 20:35:36.211704 coreos-metadata[1112]: Feb 12 20:35:36.211 INFO Fetch failed with 404: resource not found Feb 12 20:35:36.211943 coreos-metadata[1112]: Feb 12 20:35:36.211 INFO Fetching http://169.254.169.254/computeMetadata/v1/project/attributes/ssh-keys: Attempt #1 Feb 12 20:35:36.213564 coreos-metadata[1112]: Feb 12 20:35:36.213 INFO Fetch successful Feb 12 20:35:36.219086 unknown[1112]: wrote ssh authorized keys file for user: core Feb 12 20:35:36.248183 update-ssh-keys[1190]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:35:36.248898 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 12 20:35:36.264506 polkitd[1189]: Started polkitd version 121 Feb 12 20:35:36.286429 polkitd[1189]: Loading rules from directory /etc/polkit-1/rules.d Feb 12 20:35:36.286522 polkitd[1189]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 12 20:35:36.288663 polkitd[1189]: Finished loading, compiling and executing 2 rules Feb 12 20:35:36.289277 dbus-daemon[1113]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 12 20:35:36.289500 systemd[1]: Started polkit.service. Feb 12 20:35:36.290151 polkitd[1189]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 12 20:35:36.307953 systemd-hostnamed[1179]: Hostname set to (transient) Feb 12 20:35:36.310841 systemd-resolved[1080]: System hostname changed to 'ci-3510-3-2-357f3e096603f6e59bbd.c.flatcar-212911.internal'. Feb 12 20:35:36.335676 env[1146]: time="2024-02-12T20:35:36.335608423Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 12 20:35:36.343289 env[1146]: time="2024-02-12T20:35:36.342930389Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347414467Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347464963Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347804081Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347841864Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347861544Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347876811Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.347979405Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.348307 env[1146]: time="2024-02-12T20:35:36.348263328Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:35:36.349009 env[1146]: time="2024-02-12T20:35:36.348966364Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:35:36.353394 env[1146]: time="2024-02-12T20:35:36.353310356Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 12 20:35:36.353637 env[1146]: time="2024-02-12T20:35:36.353608561Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 12 20:35:36.353750 env[1146]: time="2024-02-12T20:35:36.353730186Z" level=info msg="metadata content store policy set" policy=shared Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359239335Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359298449Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359318134Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359389550Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359413339Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359494397Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359533465Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.359611 env[1146]: time="2024-02-12T20:35:36.359561200Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.360180 env[1146]: time="2024-02-12T20:35:36.359583370Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.360180 env[1146]: time="2024-02-12T20:35:36.359874309Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.360540 env[1146]: time="2024-02-12T20:35:36.359901121Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.360540 env[1146]: time="2024-02-12T20:35:36.360345534Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 12 20:35:36.360721 env[1146]: time="2024-02-12T20:35:36.360519139Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 12 20:35:36.361003 env[1146]: time="2024-02-12T20:35:36.360981060Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 12 20:35:36.361637 env[1146]: time="2024-02-12T20:35:36.361609709Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 12 20:35:36.361816 env[1146]: time="2024-02-12T20:35:36.361779251Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.361948 env[1146]: time="2024-02-12T20:35:36.361928688Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 12 20:35:36.362123 env[1146]: time="2024-02-12T20:35:36.362101582Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362317 env[1146]: time="2024-02-12T20:35:36.362296031Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362411 env[1146]: time="2024-02-12T20:35:36.362394000Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362530 env[1146]: time="2024-02-12T20:35:36.362511023Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362628 env[1146]: time="2024-02-12T20:35:36.362609807Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362726 env[1146]: time="2024-02-12T20:35:36.362709748Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362841 env[1146]: time="2024-02-12T20:35:36.362820389Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.362981 env[1146]: time="2024-02-12T20:35:36.362960644Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.363094 env[1146]: time="2024-02-12T20:35:36.363074907Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 12 20:35:36.363334 env[1146]: time="2024-02-12T20:35:36.363309842Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.363462 env[1146]: time="2024-02-12T20:35:36.363432219Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.363566 env[1146]: time="2024-02-12T20:35:36.363546552Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.363678 env[1146]: time="2024-02-12T20:35:36.363659990Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 12 20:35:36.363776 env[1146]: time="2024-02-12T20:35:36.363752038Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 12 20:35:36.363890 env[1146]: time="2024-02-12T20:35:36.363869483Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 12 20:35:36.364002 env[1146]: time="2024-02-12T20:35:36.363980905Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 12 20:35:36.364132 env[1146]: time="2024-02-12T20:35:36.364115263Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 12 20:35:36.367141 env[1146]: time="2024-02-12T20:35:36.367045941Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 12 20:35:36.370454 env[1146]: time="2024-02-12T20:35:36.369044778Z" level=info msg="Connect containerd service" Feb 12 20:35:36.370454 env[1146]: time="2024-02-12T20:35:36.369111771Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 12 20:35:36.371273 env[1146]: time="2024-02-12T20:35:36.371239803Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:35:36.375495 env[1146]: time="2024-02-12T20:35:36.375466551Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 12 20:35:36.377324 env[1146]: time="2024-02-12T20:35:36.377295966Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 12 20:35:36.377601 systemd[1]: Started containerd.service. Feb 12 20:35:36.379259 env[1146]: time="2024-02-12T20:35:36.379229502Z" level=info msg="containerd successfully booted in 0.341862s" Feb 12 20:35:36.379975 env[1146]: time="2024-02-12T20:35:36.379929433Z" level=info msg="Start subscribing containerd event" Feb 12 20:35:36.389861 tar[1143]: ./ptp Feb 12 20:35:36.407371 env[1146]: time="2024-02-12T20:35:36.407313886Z" level=info msg="Start recovering state" Feb 12 20:35:36.412053 env[1146]: time="2024-02-12T20:35:36.412005111Z" level=info msg="Start event monitor" Feb 12 20:35:36.412303 env[1146]: time="2024-02-12T20:35:36.412278224Z" level=info msg="Start snapshots syncer" Feb 12 20:35:36.414687 env[1146]: time="2024-02-12T20:35:36.412463338Z" level=info msg="Start cni network conf syncer for default" Feb 12 20:35:36.414687 env[1146]: time="2024-02-12T20:35:36.412492078Z" level=info msg="Start streaming server" Feb 12 20:35:36.526580 tar[1143]: ./vlan Feb 12 20:35:36.638575 tar[1143]: ./host-device Feb 12 20:35:36.752947 tar[1143]: ./tuning Feb 12 20:35:36.852532 tar[1143]: ./vrf Feb 12 20:35:36.961222 tar[1143]: ./sbr Feb 12 20:35:37.057012 tar[1143]: ./tap Feb 12 20:35:37.175318 tar[1143]: ./dhcp Feb 12 20:35:37.476047 tar[1143]: ./static Feb 12 20:35:37.496167 systemd[1]: Finished prepare-critools.service. Feb 12 20:35:37.560401 tar[1143]: ./firewall Feb 12 20:35:37.680988 tar[1143]: ./macvlan Feb 12 20:35:37.783541 tar[1143]: ./dummy Feb 12 20:35:37.886926 tar[1143]: ./bridge Feb 12 20:35:38.000286 tar[1143]: ./ipvlan Feb 12 20:35:38.112061 tar[1143]: ./portmap Feb 12 20:35:38.204613 tar[1143]: ./host-local Feb 12 20:35:38.318510 systemd[1]: Finished prepare-cni-plugins.service. Feb 12 20:35:38.770914 sshd_keygen[1138]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 12 20:35:38.813596 systemd[1]: Finished sshd-keygen.service. Feb 12 20:35:38.824622 systemd[1]: Starting issuegen.service... Feb 12 20:35:38.835652 systemd[1]: issuegen.service: Deactivated successfully. Feb 12 20:35:38.835917 systemd[1]: Finished issuegen.service. Feb 12 20:35:38.847921 systemd[1]: Starting systemd-user-sessions.service... Feb 12 20:35:38.864196 systemd[1]: Finished systemd-user-sessions.service. Feb 12 20:35:38.875171 systemd[1]: Started getty@tty1.service. Feb 12 20:35:38.884318 systemd[1]: Started serial-getty@ttyS0.service. Feb 12 20:35:38.893581 systemd[1]: Reached target getty.target. Feb 12 20:35:38.899556 locksmithd[1177]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 12 20:35:41.086595 systemd[1]: var-lib-flatcar\x2doem\x2dgce.mount: Deactivated successfully. Feb 12 20:35:43.290849 kernel: loop0: detected capacity change from 0 to 2097152 Feb 12 20:35:43.321135 systemd-nspawn[1220]: Spawning container oem-gce on /var/lib/flatcar-oem-gce.img. Feb 12 20:35:43.321135 systemd-nspawn[1220]: Press ^] three times within 1s to kill container. Feb 12 20:35:43.340860 kernel: EXT4-fs (loop0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 12 20:35:43.424900 systemd[1]: Started oem-gce.service. Feb 12 20:35:43.433532 systemd[1]: Reached target multi-user.target. Feb 12 20:35:43.444066 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 12 20:35:43.457040 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 12 20:35:43.457291 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 12 20:35:43.467192 systemd[1]: Startup finished in 1.050s (kernel) + 8.453s (initrd) + 15.195s (userspace) = 24.699s. Feb 12 20:35:43.543149 systemd-nspawn[1220]: + '[' -e /etc/default/instance_configs.cfg.template ']' Feb 12 20:35:43.543149 systemd-nspawn[1220]: + echo -e '[InstanceSetup]\nset_host_keys = false' Feb 12 20:35:43.543380 systemd-nspawn[1220]: + /usr/bin/google_instance_setup Feb 12 20:35:44.200019 instance-setup[1226]: INFO Running google_set_multiqueue. Feb 12 20:35:44.218179 instance-setup[1226]: INFO Set channels for eth0 to 2. Feb 12 20:35:44.221990 instance-setup[1226]: INFO Setting /proc/irq/31/smp_affinity_list to 0 for device virtio1. Feb 12 20:35:44.223340 instance-setup[1226]: INFO /proc/irq/31/smp_affinity_list: real affinity 0 Feb 12 20:35:44.223771 instance-setup[1226]: INFO Setting /proc/irq/32/smp_affinity_list to 0 for device virtio1. Feb 12 20:35:44.225255 instance-setup[1226]: INFO /proc/irq/32/smp_affinity_list: real affinity 0 Feb 12 20:35:44.225624 instance-setup[1226]: INFO Setting /proc/irq/33/smp_affinity_list to 1 for device virtio1. Feb 12 20:35:44.226962 instance-setup[1226]: INFO /proc/irq/33/smp_affinity_list: real affinity 1 Feb 12 20:35:44.227384 instance-setup[1226]: INFO Setting /proc/irq/34/smp_affinity_list to 1 for device virtio1. Feb 12 20:35:44.228786 instance-setup[1226]: INFO /proc/irq/34/smp_affinity_list: real affinity 1 Feb 12 20:35:44.240431 instance-setup[1226]: INFO Queue 0 XPS=1 for /sys/class/net/eth0/queues/tx-0/xps_cpus Feb 12 20:35:44.240591 instance-setup[1226]: INFO Queue 1 XPS=2 for /sys/class/net/eth0/queues/tx-1/xps_cpus Feb 12 20:35:44.282106 systemd-nspawn[1220]: + /usr/bin/google_metadata_script_runner --script-type startup Feb 12 20:35:44.611307 startup-script[1257]: INFO Starting startup scripts. Feb 12 20:35:44.623759 startup-script[1257]: INFO No startup scripts found in metadata. Feb 12 20:35:44.623941 startup-script[1257]: INFO Finished running startup scripts. Feb 12 20:35:44.656452 systemd-nspawn[1220]: + trap 'stopping=1 ; kill "${daemon_pids[@]}" || :' SIGTERM Feb 12 20:35:44.656452 systemd-nspawn[1220]: + daemon_pids=() Feb 12 20:35:44.657084 systemd-nspawn[1220]: + for d in accounts clock_skew network Feb 12 20:35:44.657084 systemd-nspawn[1220]: + daemon_pids+=($!) Feb 12 20:35:44.657084 systemd-nspawn[1220]: + for d in accounts clock_skew network Feb 12 20:35:44.657373 systemd-nspawn[1220]: + daemon_pids+=($!) Feb 12 20:35:44.657460 systemd-nspawn[1220]: + for d in accounts clock_skew network Feb 12 20:35:44.657743 systemd-nspawn[1220]: + daemon_pids+=($!) Feb 12 20:35:44.657866 systemd-nspawn[1220]: + NOTIFY_SOCKET=/run/systemd/notify Feb 12 20:35:44.657950 systemd-nspawn[1220]: + /usr/bin/systemd-notify --ready Feb 12 20:35:44.658216 systemd-nspawn[1220]: + /usr/bin/google_network_daemon Feb 12 20:35:44.658709 systemd-nspawn[1220]: + /usr/bin/google_clock_skew_daemon Feb 12 20:35:44.659088 systemd-nspawn[1220]: + /usr/bin/google_accounts_daemon Feb 12 20:35:44.710468 systemd-nspawn[1220]: + wait -n 36 37 38 Feb 12 20:35:45.134930 systemd[1]: Created slice system-sshd.slice. Feb 12 20:35:45.136894 systemd[1]: Started sshd@0-10.128.0.61:22-147.75.109.163:47212.service. Feb 12 20:35:45.273737 google-networking[1262]: INFO Starting Google Networking daemon. Feb 12 20:35:45.320574 google-clock-skew[1261]: INFO Starting Google Clock Skew daemon. Feb 12 20:35:45.333505 google-clock-skew[1261]: INFO Clock drift token has changed: 0. Feb 12 20:35:45.338009 systemd-nspawn[1220]: hwclock: Cannot access the Hardware Clock via any known method. Feb 12 20:35:45.338335 systemd-nspawn[1220]: hwclock: Use the --verbose option to see the details of our search for an access method. Feb 12 20:35:45.339188 google-clock-skew[1261]: WARNING Failed to sync system time with hardware clock. Feb 12 20:35:45.472546 sshd[1267]: Accepted publickey for core from 147.75.109.163 port 47212 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:45.477307 sshd[1267]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:45.486128 groupadd[1275]: group added to /etc/group: name=google-sudoers, GID=1000 Feb 12 20:35:45.490000 groupadd[1275]: group added to /etc/gshadow: name=google-sudoers Feb 12 20:35:45.494463 systemd[1]: Created slice user-500.slice. Feb 12 20:35:45.496557 systemd[1]: Starting user-runtime-dir@500.service... Feb 12 20:35:45.502043 systemd-logind[1134]: New session 1 of user core. Feb 12 20:35:45.505900 groupadd[1275]: new group: name=google-sudoers, GID=1000 Feb 12 20:35:45.512432 systemd[1]: Finished user-runtime-dir@500.service. Feb 12 20:35:45.514793 systemd[1]: Starting user@500.service... Feb 12 20:35:45.528774 google-accounts[1260]: INFO Starting Google Accounts daemon. Feb 12 20:35:45.534844 (systemd)[1283]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:45.563424 google-accounts[1260]: WARNING OS Login not installed. Feb 12 20:35:45.566595 google-accounts[1260]: INFO Creating a new user account for 0. Feb 12 20:35:45.575411 systemd-nspawn[1220]: useradd: invalid user name '0': use --badname to ignore Feb 12 20:35:45.576142 google-accounts[1260]: WARNING Could not create user 0. Command '['useradd', '-m', '-s', '/bin/bash', '-p', '*', '0']' returned non-zero exit status 3.. Feb 12 20:35:45.649948 systemd[1283]: Queued start job for default target default.target. Feb 12 20:35:45.650701 systemd[1283]: Reached target paths.target. Feb 12 20:35:45.650739 systemd[1283]: Reached target sockets.target. Feb 12 20:35:45.650760 systemd[1283]: Reached target timers.target. Feb 12 20:35:45.650779 systemd[1283]: Reached target basic.target. Feb 12 20:35:45.650962 systemd[1]: Started user@500.service. Feb 12 20:35:45.652566 systemd[1]: Started session-1.scope. Feb 12 20:35:45.653539 systemd[1283]: Reached target default.target. Feb 12 20:35:45.653835 systemd[1283]: Startup finished in 107ms. Feb 12 20:35:45.872856 systemd[1]: Started sshd@1-10.128.0.61:22-147.75.109.163:47220.service. Feb 12 20:35:46.154283 sshd[1295]: Accepted publickey for core from 147.75.109.163 port 47220 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:46.156199 sshd[1295]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:46.162757 systemd-logind[1134]: New session 2 of user core. Feb 12 20:35:46.163509 systemd[1]: Started session-2.scope. Feb 12 20:35:46.370049 sshd[1295]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:46.373941 systemd[1]: sshd@1-10.128.0.61:22-147.75.109.163:47220.service: Deactivated successfully. Feb 12 20:35:46.375027 systemd[1]: session-2.scope: Deactivated successfully. Feb 12 20:35:46.375849 systemd-logind[1134]: Session 2 logged out. Waiting for processes to exit. Feb 12 20:35:46.377036 systemd-logind[1134]: Removed session 2. Feb 12 20:35:46.414944 systemd[1]: Started sshd@2-10.128.0.61:22-147.75.109.163:47236.service. Feb 12 20:35:46.695060 sshd[1301]: Accepted publickey for core from 147.75.109.163 port 47236 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:46.696738 sshd[1301]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:46.702888 systemd-logind[1134]: New session 3 of user core. Feb 12 20:35:46.703343 systemd[1]: Started session-3.scope. Feb 12 20:35:46.899144 sshd[1301]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:46.903045 systemd[1]: sshd@2-10.128.0.61:22-147.75.109.163:47236.service: Deactivated successfully. Feb 12 20:35:46.904221 systemd[1]: session-3.scope: Deactivated successfully. Feb 12 20:35:46.905175 systemd-logind[1134]: Session 3 logged out. Waiting for processes to exit. Feb 12 20:35:46.906619 systemd-logind[1134]: Removed session 3. Feb 12 20:35:46.946022 systemd[1]: Started sshd@3-10.128.0.61:22-147.75.109.163:47244.service. Feb 12 20:35:47.232136 sshd[1307]: Accepted publickey for core from 147.75.109.163 port 47244 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:47.234030 sshd[1307]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:47.240552 systemd[1]: Started session-4.scope. Feb 12 20:35:47.241187 systemd-logind[1134]: New session 4 of user core. Feb 12 20:35:47.446987 sshd[1307]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:47.451096 systemd[1]: sshd@3-10.128.0.61:22-147.75.109.163:47244.service: Deactivated successfully. Feb 12 20:35:47.452116 systemd[1]: session-4.scope: Deactivated successfully. Feb 12 20:35:47.452939 systemd-logind[1134]: Session 4 logged out. Waiting for processes to exit. Feb 12 20:35:47.454167 systemd-logind[1134]: Removed session 4. Feb 12 20:35:47.491764 systemd[1]: Started sshd@4-10.128.0.61:22-147.75.109.163:47258.service. Feb 12 20:35:47.772052 sshd[1313]: Accepted publickey for core from 147.75.109.163 port 47258 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:47.774067 sshd[1313]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:47.780536 systemd[1]: Started session-5.scope. Feb 12 20:35:47.781171 systemd-logind[1134]: New session 5 of user core. Feb 12 20:35:47.965384 sudo[1316]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 12 20:35:47.965771 sudo[1316]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:35:47.975070 dbus-daemon[1113]: \xd0} \x92\xb0U: received setenforce notice (enforcing=-838513440) Feb 12 20:35:47.977250 sudo[1316]: pam_unix(sudo:session): session closed for user root Feb 12 20:35:48.020776 sshd[1313]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:48.025579 systemd[1]: sshd@4-10.128.0.61:22-147.75.109.163:47258.service: Deactivated successfully. Feb 12 20:35:48.026945 systemd[1]: session-5.scope: Deactivated successfully. Feb 12 20:35:48.027959 systemd-logind[1134]: Session 5 logged out. Waiting for processes to exit. Feb 12 20:35:48.029875 systemd-logind[1134]: Removed session 5. Feb 12 20:35:48.065975 systemd[1]: Started sshd@5-10.128.0.61:22-147.75.109.163:47260.service. Feb 12 20:35:48.350585 sshd[1320]: Accepted publickey for core from 147.75.109.163 port 47260 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:48.352248 sshd[1320]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:48.358624 systemd[1]: Started session-6.scope. Feb 12 20:35:48.359547 systemd-logind[1134]: New session 6 of user core. Feb 12 20:35:48.525260 sudo[1324]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 12 20:35:48.525658 sudo[1324]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:35:48.529727 sudo[1324]: pam_unix(sudo:session): session closed for user root Feb 12 20:35:48.541691 sudo[1323]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 12 20:35:48.542094 sudo[1323]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:35:48.554247 systemd[1]: Stopping audit-rules.service... Feb 12 20:35:48.555000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:35:48.561319 auditctl[1327]: No rules Feb 12 20:35:48.577011 kernel: kauditd_printk_skb: 184 callbacks suppressed Feb 12 20:35:48.577209 kernel: audit: type=1305 audit(1707770148.555:166): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:35:48.577263 kernel: audit: type=1300 audit(1707770148.555:166): arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7fff04d9b060 a2=420 a3=0 items=0 ppid=1 pid=1327 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:48.555000 audit[1327]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7fff04d9b060 a2=420 a3=0 items=0 ppid=1 pid=1327 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:48.562043 systemd[1]: audit-rules.service: Deactivated successfully. Feb 12 20:35:48.562298 systemd[1]: Stopped audit-rules.service. Feb 12 20:35:48.585755 systemd[1]: Starting audit-rules.service... Feb 12 20:35:48.555000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:35:48.617507 kernel: audit: type=1327 audit(1707770148.555:166): proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:35:48.617614 kernel: audit: type=1131 audit(1707770148.561:167): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.561000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.618165 augenrules[1344]: No rules Feb 12 20:35:48.619503 systemd[1]: Finished audit-rules.service. Feb 12 20:35:48.623052 sudo[1323]: pam_unix(sudo:session): session closed for user root Feb 12 20:35:48.638617 kernel: audit: type=1130 audit(1707770148.616:168): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.616000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.660852 kernel: audit: type=1106 audit(1707770148.621:169): pid=1323 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.621000 audit[1323]: USER_END pid=1323 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.621000 audit[1323]: CRED_DISP pid=1323 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.688086 sshd[1320]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:48.693648 systemd[1]: sshd@5-10.128.0.61:22-147.75.109.163:47260.service: Deactivated successfully. Feb 12 20:35:48.694714 systemd[1]: session-6.scope: Deactivated successfully. Feb 12 20:35:48.696495 systemd-logind[1134]: Session 6 logged out. Waiting for processes to exit. Feb 12 20:35:48.698065 systemd-logind[1134]: Removed session 6. Feb 12 20:35:48.711650 kernel: audit: type=1104 audit(1707770148.621:170): pid=1323 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.711760 kernel: audit: type=1106 audit(1707770148.689:171): pid=1320 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_mkhomedir,pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:48.689000 audit[1320]: USER_END pid=1320 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_mkhomedir,pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:48.743837 kernel: audit: type=1104 audit(1707770148.689:172): pid=1320 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:48.689000 audit[1320]: CRED_DISP pid=1320 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:48.742052 systemd[1]: Started sshd@6-10.128.0.61:22-147.75.109.163:47276.service. Feb 12 20:35:48.767944 kernel: audit: type=1131 audit(1707770148.693:173): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-10.128.0.61:22-147.75.109.163:47260 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.693000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-10.128.0.61:22-147.75.109.163:47260 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:48.741000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.128.0.61:22-147.75.109.163:47276 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:49.029000 audit[1350]: USER_ACCT pid=1350 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_oslogin_admin,pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:49.031854 sshd[1350]: Accepted publickey for core from 147.75.109.163 port 47276 ssh2: RSA SHA256:xlSJPj37rpshD+I6cqqeKxL8SH/zhZoYeHdGs1pWqxc Feb 12 20:35:49.031000 audit[1350]: CRED_ACQ pid=1350 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:49.031000 audit[1350]: SYSCALL arch=c000003e syscall=1 success=yes exit=3 a0=5 a1=7ffe8efad590 a2=3 a3=0 items=0 ppid=1 pid=1350 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:49.031000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 12 20:35:49.032737 sshd[1350]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:35:49.039265 systemd[1]: Started session-7.scope. Feb 12 20:35:49.039867 systemd-logind[1134]: New session 7 of user core. Feb 12 20:35:49.046000 audit[1350]: USER_START pid=1350 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_mkhomedir,pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:49.048000 audit[1352]: CRED_ACQ pid=1352 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:49.204000 audit[1353]: USER_ACCT pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:49.206955 sudo[1353]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 12 20:35:49.205000 audit[1353]: CRED_REFR pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:49.207408 sudo[1353]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:35:49.208000 audit[1353]: USER_START pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:49.797106 systemd[1]: Reloading. Feb 12 20:35:49.869753 /usr/lib/systemd/system-generators/torcx-generator[1385]: time="2024-02-12T20:35:49Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:35:49.870367 /usr/lib/systemd/system-generators/torcx-generator[1385]: time="2024-02-12T20:35:49Z" level=info msg="torcx already run" Feb 12 20:35:49.993835 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:35:49.993866 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:35:50.020503 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.127000 audit: BPF prog-id=37 op=LOAD Feb 12 20:35:50.127000 audit: BPF prog-id=23 op=UNLOAD Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.131000 audit: BPF prog-id=38 op=LOAD Feb 12 20:35:50.131000 audit: BPF prog-id=27 op=UNLOAD Feb 12 20:35:50.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.134000 audit: BPF prog-id=39 op=LOAD Feb 12 20:35:50.134000 audit: BPF prog-id=32 op=UNLOAD Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit: BPF prog-id=40 op=LOAD Feb 12 20:35:50.135000 audit: BPF prog-id=24 op=UNLOAD Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit: BPF prog-id=41 op=LOAD Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.135000 audit: BPF prog-id=42 op=LOAD Feb 12 20:35:50.135000 audit: BPF prog-id=25 op=UNLOAD Feb 12 20:35:50.135000 audit: BPF prog-id=26 op=UNLOAD Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit: BPF prog-id=43 op=LOAD Feb 12 20:35:50.136000 audit: BPF prog-id=33 op=UNLOAD Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit: BPF prog-id=44 op=LOAD Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.136000 audit: BPF prog-id=45 op=LOAD Feb 12 20:35:50.137000 audit: BPF prog-id=34 op=UNLOAD Feb 12 20:35:50.137000 audit: BPF prog-id=35 op=UNLOAD Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.137000 audit: BPF prog-id=46 op=LOAD Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.138000 audit: BPF prog-id=47 op=LOAD Feb 12 20:35:50.138000 audit: BPF prog-id=21 op=UNLOAD Feb 12 20:35:50.138000 audit: BPF prog-id=22 op=UNLOAD Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.140000 audit: BPF prog-id=48 op=LOAD Feb 12 20:35:50.140000 audit: BPF prog-id=29 op=UNLOAD Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit: BPF prog-id=49 op=LOAD Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.141000 audit: BPF prog-id=50 op=LOAD Feb 12 20:35:50.141000 audit: BPF prog-id=30 op=UNLOAD Feb 12 20:35:50.141000 audit: BPF prog-id=31 op=UNLOAD Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit: BPF prog-id=51 op=LOAD Feb 12 20:35:50.143000 audit: BPF prog-id=18 op=UNLOAD Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit: BPF prog-id=52 op=LOAD Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.143000 audit: BPF prog-id=53 op=LOAD Feb 12 20:35:50.143000 audit: BPF prog-id=19 op=UNLOAD Feb 12 20:35:50.143000 audit: BPF prog-id=20 op=UNLOAD Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:50.144000 audit: BPF prog-id=54 op=LOAD Feb 12 20:35:50.144000 audit: BPF prog-id=28 op=UNLOAD Feb 12 20:35:50.159021 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 12 20:35:50.168044 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 12 20:35:50.166000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:50.168864 systemd[1]: Reached target network-online.target. Feb 12 20:35:50.169000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:50.171274 systemd[1]: Started kubelet.service. Feb 12 20:35:50.189415 systemd[1]: Starting coreos-metadata.service... Feb 12 20:35:50.272145 coreos-metadata[1434]: Feb 12 20:35:50.271 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/hostname: Attempt #1 Feb 12 20:35:50.273932 coreos-metadata[1434]: Feb 12 20:35:50.273 INFO Fetch successful Feb 12 20:35:50.278665 coreos-metadata[1434]: Feb 12 20:35:50.278 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/network-interfaces/0/access-configs/0/external-ip: Attempt #1 Feb 12 20:35:50.279462 kubelet[1426]: E0212 20:35:50.279403 1426 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 12 20:35:50.279936 coreos-metadata[1434]: Feb 12 20:35:50.279 INFO Fetch successful Feb 12 20:35:50.280133 coreos-metadata[1434]: Feb 12 20:35:50.280 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/network-interfaces/0/ip: Attempt #1 Feb 12 20:35:50.280862 coreos-metadata[1434]: Feb 12 20:35:50.280 INFO Fetch successful Feb 12 20:35:50.281064 coreos-metadata[1434]: Feb 12 20:35:50.280 INFO Fetching http://169.254.169.254/computeMetadata/v1/instance/machine-type: Attempt #1 Feb 12 20:35:50.281742 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 12 20:35:50.281958 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 12 20:35:50.281000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 12 20:35:50.284730 coreos-metadata[1434]: Feb 12 20:35:50.283 INFO Fetch successful Feb 12 20:35:50.293000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:50.293565 systemd[1]: Finished coreos-metadata.service. Feb 12 20:35:50.728884 systemd[1]: Stopped kubelet.service. Feb 12 20:35:50.728000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:50.728000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:50.753795 systemd[1]: Reloading. Feb 12 20:35:50.856674 /usr/lib/systemd/system-generators/torcx-generator[1489]: time="2024-02-12T20:35:50Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:35:50.856723 /usr/lib/systemd/system-generators/torcx-generator[1489]: time="2024-02-12T20:35:50Z" level=info msg="torcx already run" Feb 12 20:35:50.962043 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:35:50.962070 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:35:50.986665 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.078000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.078000 audit: BPF prog-id=55 op=LOAD Feb 12 20:35:51.078000 audit: BPF prog-id=37 op=UNLOAD Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.083000 audit: BPF prog-id=56 op=LOAD Feb 12 20:35:51.083000 audit: BPF prog-id=38 op=UNLOAD Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.085000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.086000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.086000 audit: BPF prog-id=57 op=LOAD Feb 12 20:35:51.086000 audit: BPF prog-id=39 op=UNLOAD Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit: BPF prog-id=58 op=LOAD Feb 12 20:35:51.087000 audit: BPF prog-id=40 op=UNLOAD Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit: BPF prog-id=59 op=LOAD Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.087000 audit: BPF prog-id=60 op=LOAD Feb 12 20:35:51.087000 audit: BPF prog-id=41 op=UNLOAD Feb 12 20:35:51.087000 audit: BPF prog-id=42 op=UNLOAD Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit: BPF prog-id=61 op=LOAD Feb 12 20:35:51.088000 audit: BPF prog-id=43 op=UNLOAD Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit: BPF prog-id=62 op=LOAD Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit: BPF prog-id=63 op=LOAD Feb 12 20:35:51.089000 audit: BPF prog-id=44 op=UNLOAD Feb 12 20:35:51.089000 audit: BPF prog-id=45 op=UNLOAD Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit: BPF prog-id=64 op=LOAD Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.090000 audit: BPF prog-id=65 op=LOAD Feb 12 20:35:51.090000 audit: BPF prog-id=46 op=UNLOAD Feb 12 20:35:51.090000 audit: BPF prog-id=47 op=UNLOAD Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit: BPF prog-id=66 op=LOAD Feb 12 20:35:51.092000 audit: BPF prog-id=48 op=UNLOAD Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit: BPF prog-id=67 op=LOAD Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.092000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.093000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.093000 audit: BPF prog-id=68 op=LOAD Feb 12 20:35:51.093000 audit: BPF prog-id=49 op=UNLOAD Feb 12 20:35:51.093000 audit: BPF prog-id=50 op=UNLOAD Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit: BPF prog-id=69 op=LOAD Feb 12 20:35:51.095000 audit: BPF prog-id=51 op=UNLOAD Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit: BPF prog-id=70 op=LOAD Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.095000 audit: BPF prog-id=71 op=LOAD Feb 12 20:35:51.095000 audit: BPF prog-id=52 op=UNLOAD Feb 12 20:35:51.095000 audit: BPF prog-id=53 op=UNLOAD Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.096000 audit: BPF prog-id=72 op=LOAD Feb 12 20:35:51.096000 audit: BPF prog-id=54 op=UNLOAD Feb 12 20:35:51.119651 systemd[1]: Started kubelet.service. Feb 12 20:35:51.119000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:51.179956 kubelet[1533]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:35:51.179956 kubelet[1533]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 12 20:35:51.179956 kubelet[1533]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:35:51.180574 kubelet[1533]: I0212 20:35:51.180028 1533 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 12 20:35:51.831576 kubelet[1533]: I0212 20:35:51.831520 1533 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 12 20:35:51.831576 kubelet[1533]: I0212 20:35:51.831560 1533 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 12 20:35:51.831925 kubelet[1533]: I0212 20:35:51.831886 1533 server.go:837] "Client rotation is on, will bootstrap in background" Feb 12 20:35:51.835011 kubelet[1533]: I0212 20:35:51.834979 1533 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 12 20:35:51.841064 kubelet[1533]: I0212 20:35:51.841028 1533 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 12 20:35:51.841372 kubelet[1533]: I0212 20:35:51.841349 1533 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 12 20:35:51.841484 kubelet[1533]: I0212 20:35:51.841464 1533 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 12 20:35:51.841675 kubelet[1533]: I0212 20:35:51.841495 1533 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 12 20:35:51.841675 kubelet[1533]: I0212 20:35:51.841515 1533 container_manager_linux.go:302] "Creating device plugin manager" Feb 12 20:35:51.841675 kubelet[1533]: I0212 20:35:51.841645 1533 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:35:51.846016 kubelet[1533]: I0212 20:35:51.845985 1533 kubelet.go:405] "Attempting to sync node with API server" Feb 12 20:35:51.846016 kubelet[1533]: I0212 20:35:51.846016 1533 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 12 20:35:51.846210 kubelet[1533]: I0212 20:35:51.846044 1533 kubelet.go:309] "Adding apiserver pod source" Feb 12 20:35:51.846210 kubelet[1533]: I0212 20:35:51.846061 1533 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 12 20:35:51.846926 kubelet[1533]: E0212 20:35:51.846897 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:51.847095 kubelet[1533]: E0212 20:35:51.847076 1533 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:51.847344 kubelet[1533]: I0212 20:35:51.847324 1533 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 12 20:35:51.851006 kubelet[1533]: W0212 20:35:51.850964 1533 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 12 20:35:51.851570 kubelet[1533]: I0212 20:35:51.851519 1533 server.go:1168] "Started kubelet" Feb 12 20:35:51.852000 audit[1533]: AVC avc: denied { mac_admin } for pid=1533 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.852000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:35:51.852000 audit[1533]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000ed7cb0 a1=c000589fb0 a2=c000ed7c80 a3=25 items=0 ppid=1 pid=1533 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.852000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:35:51.853959 kubelet[1533]: E0212 20:35:51.853935 1533 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 12 20:35:51.854041 kubelet[1533]: E0212 20:35:51.853968 1533 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 12 20:35:51.854160 kubelet[1533]: I0212 20:35:51.854143 1533 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 12 20:35:51.853000 audit[1533]: AVC avc: denied { mac_admin } for pid=1533 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.853000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:35:51.853000 audit[1533]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000351720 a1=c000589fc8 a2=c000ed7d40 a3=25 items=0 ppid=1 pid=1533 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.853000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:35:51.854670 kubelet[1533]: I0212 20:35:51.854654 1533 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 12 20:35:51.854876 kubelet[1533]: I0212 20:35:51.854861 1533 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 12 20:35:51.858771 kubelet[1533]: E0212 20:35:51.858623 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ab1f8d3c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 851494716, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 851494716, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.862994 kubelet[1533]: I0212 20:35:51.862961 1533 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 12 20:35:51.863958 kubelet[1533]: I0212 20:35:51.863935 1533 server.go:461] "Adding debug handlers to kubelet server" Feb 12 20:35:51.865919 kubelet[1533]: I0212 20:35:51.865899 1533 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 12 20:35:51.868665 kubelet[1533]: I0212 20:35:51.868629 1533 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 12 20:35:51.869145 kubelet[1533]: I0212 20:35:51.869116 1533 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 12 20:35:51.882120 kubelet[1533]: W0212 20:35:51.882084 1533 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:35:51.882333 kubelet[1533]: E0212 20:35:51.882315 1533 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:35:51.882536 kubelet[1533]: W0212 20:35:51.882516 1533 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "10.128.0.61" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:35:51.882654 kubelet[1533]: E0212 20:35:51.882639 1533 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "10.128.0.61" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:35:51.882949 kubelet[1533]: E0212 20:35:51.882850 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ab450c35", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 853952053, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 853952053, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.883268 kubelet[1533]: E0212 20:35:51.883247 1533 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.128.0.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 12 20:35:51.883520 kubelet[1533]: W0212 20:35:51.883500 1533 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:35:51.883636 kubelet[1533]: E0212 20:35:51.883621 1533 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:35:51.905204 kubelet[1533]: E0212 20:35:51.905052 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae395e70", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.128.0.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903518320, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903518320, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.906363 kubelet[1533]: I0212 20:35:51.906339 1533 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 12 20:35:51.906572 kubelet[1533]: I0212 20:35:51.906556 1533 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 12 20:35:51.906712 kubelet[1533]: I0212 20:35:51.906697 1533 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:35:51.907641 kubelet[1533]: E0212 20:35:51.907532 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39793f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.128.0.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903525183, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903525183, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.909087 kubelet[1533]: E0212 20:35:51.908961 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39890e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.128.0.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903529230, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903529230, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.909712 kubelet[1533]: I0212 20:35:51.909674 1533 policy_none.go:49] "None policy: Start" Feb 12 20:35:51.910679 kubelet[1533]: I0212 20:35:51.910660 1533 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 12 20:35:51.910854 kubelet[1533]: I0212 20:35:51.910838 1533 state_mem.go:35] "Initializing new in-memory state store" Feb 12 20:35:51.919000 audit[1545]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=1545 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:51.919000 audit[1545]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffc1e1598b0 a2=0 a3=7ffc1e15989c items=0 ppid=1533 pid=1545 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.919000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:35:51.922012 systemd[1]: Created slice kubepods.slice. Feb 12 20:35:51.923000 audit[1551]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=1551 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:51.923000 audit[1551]: SYSCALL arch=c000003e syscall=46 success=yes exit=132 a0=3 a1=7fffe2f3dc70 a2=0 a3=7fffe2f3dc5c items=0 ppid=1533 pid=1551 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.923000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:35:51.930171 systemd[1]: Created slice kubepods-burstable.slice. Feb 12 20:35:51.935590 systemd[1]: Created slice kubepods-besteffort.slice. Feb 12 20:35:51.942777 kubelet[1533]: I0212 20:35:51.942736 1533 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 12 20:35:51.942000 audit[1533]: AVC avc: denied { mac_admin } for pid=1533 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:51.942000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:35:51.942000 audit[1533]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000faf590 a1=c000ff0390 a2=c000faf560 a3=25 items=0 ppid=1 pid=1533 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.942000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:35:51.944816 kubelet[1533]: I0212 20:35:51.944613 1533 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 12 20:35:51.945033 kubelet[1533]: I0212 20:35:51.944970 1533 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 12 20:35:51.946499 kubelet[1533]: E0212 20:35:51.946473 1533 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"10.128.0.61\" not found" Feb 12 20:35:51.949216 kubelet[1533]: E0212 20:35:51.949103 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7b0c24aea", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 946046186, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 946046186, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.937000 audit[1553]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=1553 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:51.937000 audit[1553]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffe7ea22110 a2=0 a3=7ffe7ea220fc items=0 ppid=1533 pid=1553 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.937000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:35:51.961000 audit[1558]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=1558 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:51.961000 audit[1558]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffe27e7a630 a2=0 a3=7ffe27e7a61c items=0 ppid=1533 pid=1558 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:51.961000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:35:51.971105 kubelet[1533]: I0212 20:35:51.971076 1533 kubelet_node_status.go:70] "Attempting to register node" node="10.128.0.61" Feb 12 20:35:51.973229 kubelet[1533]: E0212 20:35:51.973192 1533 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.128.0.61" Feb 12 20:35:51.973374 kubelet[1533]: E0212 20:35:51.973282 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae395e70", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.128.0.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903518320, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 971022737, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae395e70" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.974994 kubelet[1533]: E0212 20:35:51.974833 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39793f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.128.0.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903525183, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 971032492, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39793f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:51.976420 kubelet[1533]: E0212 20:35:51.976019 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39890e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.128.0.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903529230, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 971037316, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39890e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.019000 audit[1563]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=1563 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:52.019000 audit[1563]: SYSCALL arch=c000003e syscall=46 success=yes exit=924 a0=3 a1=7fff906a6f30 a2=0 a3=7fff906a6f1c items=0 ppid=1533 pid=1563 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.019000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 12 20:35:52.020898 kubelet[1533]: I0212 20:35:52.020737 1533 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 12 20:35:52.022000 audit[1565]: NETFILTER_CFG table=mangle:7 family=2 entries=1 op=nft_register_chain pid=1565 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:52.022000 audit[1565]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff993c69a0 a2=0 a3=7fff993c698c items=0 ppid=1533 pid=1565 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.022000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:35:52.023000 audit[1564]: NETFILTER_CFG table=mangle:8 family=10 entries=2 op=nft_register_chain pid=1564 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:52.023000 audit[1564]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7fffc45095f0 a2=0 a3=7fffc45095dc items=0 ppid=1533 pid=1564 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.023000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:35:52.026619 kubelet[1533]: I0212 20:35:52.026589 1533 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 12 20:35:52.026747 kubelet[1533]: I0212 20:35:52.026624 1533 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 12 20:35:52.026747 kubelet[1533]: I0212 20:35:52.026674 1533 kubelet.go:2257] "Starting kubelet main sync loop" Feb 12 20:35:52.026747 kubelet[1533]: E0212 20:35:52.026742 1533 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 12 20:35:52.026000 audit[1566]: NETFILTER_CFG table=nat:9 family=2 entries=2 op=nft_register_chain pid=1566 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:52.026000 audit[1566]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffd974c3da0 a2=0 a3=7ffd974c3d8c items=0 ppid=1533 pid=1566 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.026000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:35:52.029636 kubelet[1533]: W0212 20:35:52.029601 1533 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:35:52.028000 audit[1567]: NETFILTER_CFG table=mangle:10 family=10 entries=1 op=nft_register_chain pid=1567 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:52.028000 audit[1567]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffefb22c830 a2=0 a3=7ffefb22c81c items=0 ppid=1533 pid=1567 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.028000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:35:52.030071 kubelet[1533]: E0212 20:35:52.030051 1533 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:35:52.030000 audit[1568]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=1568 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:52.030000 audit[1568]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffc78494b00 a2=0 a3=7ffc78494aec items=0 ppid=1533 pid=1568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.030000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:35:52.033000 audit[1569]: NETFILTER_CFG table=filter:12 family=10 entries=2 op=nft_register_chain pid=1569 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:52.033000 audit[1569]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7fff1cce2e70 a2=0 a3=7fff1cce2e5c items=0 ppid=1533 pid=1569 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.033000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:35:52.035000 audit[1570]: NETFILTER_CFG table=filter:13 family=2 entries=1 op=nft_register_chain pid=1570 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:52.035000 audit[1570]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff4ef17a60 a2=0 a3=7fff4ef17a4c items=0 ppid=1533 pid=1570 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:52.035000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:35:52.085883 kubelet[1533]: E0212 20:35:52.085680 1533 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.128.0.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 12 20:35:52.175515 kubelet[1533]: I0212 20:35:52.175414 1533 kubelet_node_status.go:70] "Attempting to register node" node="10.128.0.61" Feb 12 20:35:52.176993 kubelet[1533]: E0212 20:35:52.176960 1533 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.128.0.61" Feb 12 20:35:52.177150 kubelet[1533]: E0212 20:35:52.176882 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae395e70", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.128.0.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903518320, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 175275442, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae395e70" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.178218 kubelet[1533]: E0212 20:35:52.178124 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39793f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.128.0.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903525183, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 175322832, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39793f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.179392 kubelet[1533]: E0212 20:35:52.179295 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39890e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.128.0.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903529230, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 175380666, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39890e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.487678 kubelet[1533]: E0212 20:35:52.487533 1533 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.128.0.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 12 20:35:52.577983 kubelet[1533]: I0212 20:35:52.577944 1533 kubelet_node_status.go:70] "Attempting to register node" node="10.128.0.61" Feb 12 20:35:52.579328 kubelet[1533]: E0212 20:35:52.579295 1533 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.128.0.61" Feb 12 20:35:52.579611 kubelet[1533]: E0212 20:35:52.579515 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae395e70", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.128.0.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903518320, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 577884847, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae395e70" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.580734 kubelet[1533]: E0212 20:35:52.580648 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39793f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.128.0.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903525183, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 577900430, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39793f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.581954 kubelet[1533]: E0212 20:35:52.581874 1533 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61.17b337e7ae39890e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.128.0.61", UID:"10.128.0.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.128.0.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.128.0.61"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 35, 51, 903529230, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 35, 52, 577905060, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.128.0.61.17b337e7ae39890e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:35:52.815765 kubelet[1533]: W0212 20:35:52.815605 1533 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:35:52.815765 kubelet[1533]: E0212 20:35:52.815669 1533 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:35:52.833831 kubelet[1533]: I0212 20:35:52.833756 1533 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 12 20:35:52.847172 kubelet[1533]: E0212 20:35:52.847119 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:53.246941 kubelet[1533]: E0212 20:35:53.246789 1533 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "10.128.0.61" not found Feb 12 20:35:53.292362 kubelet[1533]: E0212 20:35:53.292318 1533 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"10.128.0.61\" not found" node="10.128.0.61" Feb 12 20:35:53.381141 kubelet[1533]: I0212 20:35:53.381095 1533 kubelet_node_status.go:70] "Attempting to register node" node="10.128.0.61" Feb 12 20:35:53.387160 kubelet[1533]: I0212 20:35:53.387110 1533 kubelet_node_status.go:73] "Successfully registered node" node="10.128.0.61" Feb 12 20:35:53.502930 kubelet[1533]: I0212 20:35:53.502769 1533 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 12 20:35:53.503783 env[1146]: time="2024-02-12T20:35:53.503711559Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 12 20:35:53.504355 kubelet[1533]: I0212 20:35:53.504330 1533 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 12 20:35:53.641121 sudo[1353]: pam_unix(sudo:session): session closed for user root Feb 12 20:35:53.640000 audit[1353]: USER_END pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.646791 kernel: kauditd_printk_skb: 478 callbacks suppressed Feb 12 20:35:53.646867 kernel: audit: type=1106 audit(1707770153.640:617): pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.640000 audit[1353]: CRED_DISP pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.686560 sshd[1350]: pam_unix(sshd:session): session closed for user core Feb 12 20:35:53.691695 systemd-logind[1134]: Session 7 logged out. Waiting for processes to exit. Feb 12 20:35:53.693712 systemd[1]: sshd@6-10.128.0.61:22-147.75.109.163:47276.service: Deactivated successfully. Feb 12 20:35:53.695782 kernel: audit: type=1104 audit(1707770153.640:618): pid=1353 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.695946 kernel: audit: type=1106 audit(1707770153.687:619): pid=1350 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_mkhomedir,pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:53.687000 audit[1350]: USER_END pid=1350 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_mkhomedir,pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:53.694835 systemd[1]: session-7.scope: Deactivated successfully. Feb 12 20:35:53.697167 systemd-logind[1134]: Removed session 7. Feb 12 20:35:53.688000 audit[1350]: CRED_DISP pid=1350 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:53.753340 kernel: audit: type=1104 audit(1707770153.688:620): pid=1350 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_oslogin_login acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:35:53.753494 kernel: audit: type=1131 audit(1707770153.693:621): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.128.0.61:22-147.75.109.163:47276 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.693000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.128.0.61:22-147.75.109.163:47276 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:35:53.848219 kubelet[1533]: I0212 20:35:53.848170 1533 apiserver.go:52] "Watching apiserver" Feb 12 20:35:53.848642 kubelet[1533]: E0212 20:35:53.848179 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:53.852470 kubelet[1533]: I0212 20:35:53.852444 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:35:53.852679 kubelet[1533]: I0212 20:35:53.852576 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:35:53.852679 kubelet[1533]: I0212 20:35:53.852648 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:35:53.853033 kubelet[1533]: E0212 20:35:53.853003 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:35:53.860153 systemd[1]: Created slice kubepods-besteffort-podfe5233a0_813f_4c97_9aad_a356c4c09ad2.slice. Feb 12 20:35:53.873950 kubelet[1533]: I0212 20:35:53.872601 1533 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 12 20:35:53.875790 systemd[1]: Created slice kubepods-besteffort-pod9a70996f_04bd_4b2f_a844_913d1db69ac5.slice. Feb 12 20:35:53.881735 kubelet[1533]: I0212 20:35:53.881694 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/fe5233a0-813f-4c97-9aad-a356c4c09ad2-kube-proxy\") pod \"kube-proxy-brr9b\" (UID: \"fe5233a0-813f-4c97-9aad-a356c4c09ad2\") " pod="kube-system/kube-proxy-brr9b" Feb 12 20:35:53.881735 kubelet[1533]: I0212 20:35:53.881748 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/fe5233a0-813f-4c97-9aad-a356c4c09ad2-lib-modules\") pod \"kube-proxy-brr9b\" (UID: \"fe5233a0-813f-4c97-9aad-a356c4c09ad2\") " pod="kube-system/kube-proxy-brr9b" Feb 12 20:35:53.882014 kubelet[1533]: I0212 20:35:53.881788 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-cni-bin-dir\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882014 kubelet[1533]: I0212 20:35:53.881837 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-cni-log-dir\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882014 kubelet[1533]: I0212 20:35:53.881873 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-lg5vk\" (UniqueName: \"kubernetes.io/projected/9a70996f-04bd-4b2f-a844-913d1db69ac5-kube-api-access-lg5vk\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882014 kubelet[1533]: I0212 20:35:53.881906 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/30af56de-f111-46fb-96f2-369127a9645f-kubelet-dir\") pod \"csi-node-driver-wc6vg\" (UID: \"30af56de-f111-46fb-96f2-369127a9645f\") " pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:35:53.882014 kubelet[1533]: I0212 20:35:53.881958 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-tjhxc\" (UniqueName: \"kubernetes.io/projected/fe5233a0-813f-4c97-9aad-a356c4c09ad2-kube-api-access-tjhxc\") pod \"kube-proxy-brr9b\" (UID: \"fe5233a0-813f-4c97-9aad-a356c4c09ad2\") " pod="kube-system/kube-proxy-brr9b" Feb 12 20:35:53.882291 kubelet[1533]: I0212 20:35:53.881998 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-lib-modules\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882291 kubelet[1533]: I0212 20:35:53.882047 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-var-run-calico\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882291 kubelet[1533]: I0212 20:35:53.882081 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-var-lib-calico\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882291 kubelet[1533]: I0212 20:35:53.882116 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-flexvol-driver-host\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882291 kubelet[1533]: I0212 20:35:53.882170 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/30af56de-f111-46fb-96f2-369127a9645f-registration-dir\") pod \"csi-node-driver-wc6vg\" (UID: \"30af56de-f111-46fb-96f2-369127a9645f\") " pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:35:53.882623 kubelet[1533]: I0212 20:35:53.882206 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-policysync\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882623 kubelet[1533]: I0212 20:35:53.882242 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/9a70996f-04bd-4b2f-a844-913d1db69ac5-tigera-ca-bundle\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882623 kubelet[1533]: I0212 20:35:53.882275 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/9a70996f-04bd-4b2f-a844-913d1db69ac5-node-certs\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882623 kubelet[1533]: I0212 20:35:53.882310 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/fe5233a0-813f-4c97-9aad-a356c4c09ad2-xtables-lock\") pod \"kube-proxy-brr9b\" (UID: \"fe5233a0-813f-4c97-9aad-a356c4c09ad2\") " pod="kube-system/kube-proxy-brr9b" Feb 12 20:35:53.882623 kubelet[1533]: I0212 20:35:53.882346 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-xtables-lock\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882927 kubelet[1533]: I0212 20:35:53.882383 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/9a70996f-04bd-4b2f-a844-913d1db69ac5-cni-net-dir\") pod \"calico-node-5n8nc\" (UID: \"9a70996f-04bd-4b2f-a844-913d1db69ac5\") " pod="calico-system/calico-node-5n8nc" Feb 12 20:35:53.882927 kubelet[1533]: I0212 20:35:53.882417 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/30af56de-f111-46fb-96f2-369127a9645f-varrun\") pod \"csi-node-driver-wc6vg\" (UID: \"30af56de-f111-46fb-96f2-369127a9645f\") " pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:35:53.882927 kubelet[1533]: I0212 20:35:53.882466 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/30af56de-f111-46fb-96f2-369127a9645f-socket-dir\") pod \"csi-node-driver-wc6vg\" (UID: \"30af56de-f111-46fb-96f2-369127a9645f\") " pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:35:53.882927 kubelet[1533]: I0212 20:35:53.882501 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-9kf4d\" (UniqueName: \"kubernetes.io/projected/30af56de-f111-46fb-96f2-369127a9645f-kube-api-access-9kf4d\") pod \"csi-node-driver-wc6vg\" (UID: \"30af56de-f111-46fb-96f2-369127a9645f\") " pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:35:53.882927 kubelet[1533]: I0212 20:35:53.882515 1533 reconciler.go:41] "Reconciler: start to sync state" Feb 12 20:35:53.987180 kubelet[1533]: E0212 20:35:53.987143 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.987415 kubelet[1533]: W0212 20:35:53.987394 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.987585 kubelet[1533]: E0212 20:35:53.987569 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:53.988369 kubelet[1533]: E0212 20:35:53.988342 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.988542 kubelet[1533]: W0212 20:35:53.988520 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.988708 kubelet[1533]: E0212 20:35:53.988692 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:53.989340 kubelet[1533]: E0212 20:35:53.989317 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.989519 kubelet[1533]: W0212 20:35:53.989495 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.989694 kubelet[1533]: E0212 20:35:53.989677 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:53.996685 kubelet[1533]: E0212 20:35:53.996664 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.996895 kubelet[1533]: W0212 20:35:53.996867 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.997007 kubelet[1533]: E0212 20:35:53.996903 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:53.997592 kubelet[1533]: E0212 20:35:53.997567 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.997592 kubelet[1533]: W0212 20:35:53.997588 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.997793 kubelet[1533]: E0212 20:35:53.997622 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:53.998030 kubelet[1533]: E0212 20:35:53.997966 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:53.998131 kubelet[1533]: W0212 20:35:53.998036 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:53.998131 kubelet[1533]: E0212 20:35:53.998060 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:54.015504 kubelet[1533]: E0212 20:35:54.015391 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:54.015504 kubelet[1533]: W0212 20:35:54.015415 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:54.015504 kubelet[1533]: E0212 20:35:54.015440 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:54.029776 kubelet[1533]: E0212 20:35:54.029749 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:54.030034 kubelet[1533]: W0212 20:35:54.030012 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:54.030193 kubelet[1533]: E0212 20:35:54.030175 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:54.030654 kubelet[1533]: E0212 20:35:54.030635 1533 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:35:54.030834 kubelet[1533]: W0212 20:35:54.030799 1533 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:35:54.031015 kubelet[1533]: E0212 20:35:54.030995 1533 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:35:54.173337 env[1146]: time="2024-02-12T20:35:54.173277894Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-brr9b,Uid:fe5233a0-813f-4c97-9aad-a356c4c09ad2,Namespace:kube-system,Attempt:0,}" Feb 12 20:35:54.182670 env[1146]: time="2024-02-12T20:35:54.182343282Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-5n8nc,Uid:9a70996f-04bd-4b2f-a844-913d1db69ac5,Namespace:calico-system,Attempt:0,}" Feb 12 20:35:54.697269 env[1146]: time="2024-02-12T20:35:54.697205091Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.698652 env[1146]: time="2024-02-12T20:35:54.698579108Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.703127 env[1146]: time="2024-02-12T20:35:54.703059425Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.704349 env[1146]: time="2024-02-12T20:35:54.704295160Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.705283 env[1146]: time="2024-02-12T20:35:54.705247660Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.707601 env[1146]: time="2024-02-12T20:35:54.707554452Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.709296 env[1146]: time="2024-02-12T20:35:54.709232948Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.710318 env[1146]: time="2024-02-12T20:35:54.710282846Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:54.751119 env[1146]: time="2024-02-12T20:35:54.747859153Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:35:54.751119 env[1146]: time="2024-02-12T20:35:54.747931194Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:35:54.751119 env[1146]: time="2024-02-12T20:35:54.747948666Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:35:54.751119 env[1146]: time="2024-02-12T20:35:54.748142076Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e pid=1606 runtime=io.containerd.runc.v2 Feb 12 20:35:54.752206 env[1146]: time="2024-02-12T20:35:54.744662541Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:35:54.752206 env[1146]: time="2024-02-12T20:35:54.744715765Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:35:54.752206 env[1146]: time="2024-02-12T20:35:54.744735212Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:35:54.752206 env[1146]: time="2024-02-12T20:35:54.744937963Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/3353bb1b49eb2750c93a0d2c1ae13dcd8d9e48abf1c05d3af57c35dedc429840 pid=1593 runtime=io.containerd.runc.v2 Feb 12 20:35:54.777962 systemd[1]: Started cri-containerd-4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e.scope. Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.845113 kernel: audit: type=1400 audit(1707770154.801:622): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.845249 kernel: audit: type=1400 audit(1707770154.801:623): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.887558 kernel: audit: type=1400 audit(1707770154.801:624): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.887687 kernel: audit: type=1400 audit(1707770154.801:625): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.887878 kubelet[1533]: E0212 20:35:54.868872 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909851 kernel: audit: type=1400 audit(1707770154.801:626): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.891012 systemd[1]: Started cri-containerd-3353bb1b49eb2750c93a0d2c1ae13dcd8d9e48abf1c05d3af57c35dedc429840.scope. Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.870000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.870000 audit: BPF prog-id=73 op=LOAD Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001bdc48 a2=10 a3=1c items=0 ppid=1606 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.871000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461646561343665316265393863383864336633633731623733373131 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001bd6b0 a2=3c a3=c items=0 ppid=1606 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.871000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461646561343665316265393863383864336633633731623733373131 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.871000 audit: BPF prog-id=74 op=LOAD Feb 12 20:35:54.871000 audit[1621]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bd9d8 a2=78 a3=c0001ad2e0 items=0 ppid=1606 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.871000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461646561343665316265393863383864336633633731623733373131 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.908000 audit: BPF prog-id=75 op=LOAD Feb 12 20:35:54.908000 audit[1621]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c0001bd770 a2=78 a3=c0001ad328 items=0 ppid=1606 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.908000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461646561343665316265393863383864336633633731623733373131 Feb 12 20:35:54.909000 audit: BPF prog-id=75 op=UNLOAD Feb 12 20:35:54.909000 audit: BPF prog-id=74 op=UNLOAD Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { perfmon } for pid=1621 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit[1621]: AVC avc: denied { bpf } for pid=1621 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.909000 audit: BPF prog-id=76 op=LOAD Feb 12 20:35:54.909000 audit[1621]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bdc30 a2=78 a3=c0001ad738 items=0 ppid=1606 pid=1621 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.909000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461646561343665316265393863383864336633633731623733373131 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.931000 audit: BPF prog-id=77 op=LOAD Feb 12 20:35:54.934000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.934000 audit[1622]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000117c48 a2=10 a3=1c items=0 ppid=1593 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333353362623162343965623237353063393361306432633161653133 Feb 12 20:35:54.934000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.934000 audit[1622]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001176b0 a2=3c a3=c items=0 ppid=1593 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333353362623162343965623237353063393361306432633161653133 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.935000 audit: BPF prog-id=78 op=LOAD Feb 12 20:35:54.935000 audit[1622]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001179d8 a2=78 a3=c000280cc0 items=0 ppid=1593 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.935000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333353362623162343965623237353063393361306432633161653133 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.936000 audit: BPF prog-id=79 op=LOAD Feb 12 20:35:54.936000 audit[1622]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000117770 a2=78 a3=c000280d08 items=0 ppid=1593 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.936000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333353362623162343965623237353063393361306432633161653133 Feb 12 20:35:54.937000 audit: BPF prog-id=79 op=UNLOAD Feb 12 20:35:54.937000 audit: BPF prog-id=78 op=UNLOAD Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { perfmon } for pid=1622 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit[1622]: AVC avc: denied { bpf } for pid=1622 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:54.937000 audit: BPF prog-id=80 op=LOAD Feb 12 20:35:54.937000 audit[1622]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000117c30 a2=78 a3=c000281118 items=0 ppid=1593 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:54.937000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333353362623162343965623237353063393361306432633161653133 Feb 12 20:35:54.958493 env[1146]: time="2024-02-12T20:35:54.952525186Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-5n8nc,Uid:9a70996f-04bd-4b2f-a844-913d1db69ac5,Namespace:calico-system,Attempt:0,} returns sandbox id \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\"" Feb 12 20:35:54.962848 env[1146]: time="2024-02-12T20:35:54.962757404Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-brr9b,Uid:fe5233a0-813f-4c97-9aad-a356c4c09ad2,Namespace:kube-system,Attempt:0,} returns sandbox id \"3353bb1b49eb2750c93a0d2c1ae13dcd8d9e48abf1c05d3af57c35dedc429840\"" Feb 12 20:35:54.964315 kubelet[1533]: E0212 20:35:54.964096 1533 gcpcredential.go:74] while reading 'google-dockercfg-url' metadata: http status code: 404 while fetching url http://metadata.google.internal./computeMetadata/v1/instance/attributes/google-dockercfg-url Feb 12 20:35:54.964856 env[1146]: time="2024-02-12T20:35:54.964698067Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 12 20:35:54.998067 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1393741555.mount: Deactivated successfully. Feb 12 20:35:55.869564 kubelet[1533]: E0212 20:35:55.869507 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:55.975891 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3150216588.mount: Deactivated successfully. Feb 12 20:35:56.028131 kubelet[1533]: E0212 20:35:56.028068 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:35:56.619618 env[1146]: time="2024-02-12T20:35:56.619540108Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:56.622649 env[1146]: time="2024-02-12T20:35:56.622597117Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6506d2e0be2d5ec9cb8dbe00c4b4f037c67b6ab4ec14a1f0c83333ac51f4da9a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:56.625546 env[1146]: time="2024-02-12T20:35:56.625503010Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:56.628012 env[1146]: time="2024-02-12T20:35:56.627969437Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:56.629235 env[1146]: time="2024-02-12T20:35:56.629184516Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:6506d2e0be2d5ec9cb8dbe00c4b4f037c67b6ab4ec14a1f0c83333ac51f4da9a\"" Feb 12 20:35:56.630913 env[1146]: time="2024-02-12T20:35:56.630876690Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 12 20:35:56.632979 env[1146]: time="2024-02-12T20:35:56.632931111Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 12 20:35:56.654837 env[1146]: time="2024-02-12T20:35:56.654752430Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de\"" Feb 12 20:35:56.655762 env[1146]: time="2024-02-12T20:35:56.655709545Z" level=info msg="StartContainer for \"5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de\"" Feb 12 20:35:56.682006 systemd[1]: Started cri-containerd-5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de.scope. Feb 12 20:35:56.698490 systemd[1]: run-containerd-runc-k8s.io-5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de-runc.pbkGb0.mount: Deactivated successfully. Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00011f6b0 a2=3c a3=7f2a1c779018 items=0 ppid=1606 pid=1679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:56.718000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565373037666163326532383639363764353835323337653731346533 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit: BPF prog-id=81 op=LOAD Feb 12 20:35:56.718000 audit[1679]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011f9d8 a2=78 a3=c00037c8e8 items=0 ppid=1606 pid=1679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:56.718000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565373037666163326532383639363764353835323337653731346533 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit: BPF prog-id=82 op=LOAD Feb 12 20:35:56.718000 audit[1679]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00011f770 a2=78 a3=c00037c938 items=0 ppid=1606 pid=1679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:56.718000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565373037666163326532383639363764353835323337653731346533 Feb 12 20:35:56.718000 audit: BPF prog-id=82 op=UNLOAD Feb 12 20:35:56.718000 audit: BPF prog-id=81 op=UNLOAD Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { perfmon } for pid=1679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit[1679]: AVC avc: denied { bpf } for pid=1679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:56.718000 audit: BPF prog-id=83 op=LOAD Feb 12 20:35:56.718000 audit[1679]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011fc30 a2=78 a3=c00037c9c8 items=0 ppid=1606 pid=1679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:56.718000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565373037666163326532383639363764353835323337653731346533 Feb 12 20:35:56.746883 env[1146]: time="2024-02-12T20:35:56.746806404Z" level=info msg="StartContainer for \"5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de\" returns successfully" Feb 12 20:35:56.759722 systemd[1]: cri-containerd-5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de.scope: Deactivated successfully. Feb 12 20:35:56.762000 audit: BPF prog-id=83 op=UNLOAD Feb 12 20:35:56.791785 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de-rootfs.mount: Deactivated successfully. Feb 12 20:35:56.856539 env[1146]: time="2024-02-12T20:35:56.856474827Z" level=info msg="shim disconnected" id=5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de Feb 12 20:35:56.856539 env[1146]: time="2024-02-12T20:35:56.856536136Z" level=warning msg="cleaning up after shim disconnected" id=5e707fac2e286967d585237e714e3c60c16b766deea4bd7446bb4a575cf675de namespace=k8s.io Feb 12 20:35:56.856539 env[1146]: time="2024-02-12T20:35:56.856551632Z" level=info msg="cleaning up dead shim" Feb 12 20:35:56.868411 env[1146]: time="2024-02-12T20:35:56.868344350Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:35:56Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1720 runtime=io.containerd.runc.v2\n" Feb 12 20:35:56.870234 kubelet[1533]: E0212 20:35:56.870081 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:57.759638 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1908963916.mount: Deactivated successfully. Feb 12 20:35:57.870927 kubelet[1533]: E0212 20:35:57.870886 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:58.028190 kubelet[1533]: E0212 20:35:58.027706 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:35:58.426376 env[1146]: time="2024-02-12T20:35:58.425846892Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:58.429259 env[1146]: time="2024-02-12T20:35:58.429213528Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:db7b01e105753475c198490cf875df1314fd1a599f67ea1b184586cb399e1cae,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:58.431467 env[1146]: time="2024-02-12T20:35:58.431428113Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:58.433428 env[1146]: time="2024-02-12T20:35:58.433383844Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:35:58.434167 env[1146]: time="2024-02-12T20:35:58.434115062Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:db7b01e105753475c198490cf875df1314fd1a599f67ea1b184586cb399e1cae\"" Feb 12 20:35:58.435949 env[1146]: time="2024-02-12T20:35:58.435916802Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 12 20:35:58.437069 env[1146]: time="2024-02-12T20:35:58.437012536Z" level=info msg="CreateContainer within sandbox \"3353bb1b49eb2750c93a0d2c1ae13dcd8d9e48abf1c05d3af57c35dedc429840\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 12 20:35:58.459363 env[1146]: time="2024-02-12T20:35:58.459295575Z" level=info msg="CreateContainer within sandbox \"3353bb1b49eb2750c93a0d2c1ae13dcd8d9e48abf1c05d3af57c35dedc429840\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"925927153302f610d363e74ef75d8d15d4d1f2d802026339d9f7632aecb941d6\"" Feb 12 20:35:58.460469 env[1146]: time="2024-02-12T20:35:58.460417319Z" level=info msg="StartContainer for \"925927153302f610d363e74ef75d8d15d4d1f2d802026339d9f7632aecb941d6\"" Feb 12 20:35:58.488016 systemd[1]: Started cri-containerd-925927153302f610d363e74ef75d8d15d4d1f2d802026339d9f7632aecb941d6.scope. Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00011f6b0 a2=3c a3=7f698d224558 items=0 ppid=1593 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.511000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353932373135333330326636313064333633653734656637356438 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit: BPF prog-id=84 op=LOAD Feb 12 20:35:58.511000 audit[1745]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011f9d8 a2=78 a3=c000320d18 items=0 ppid=1593 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.511000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353932373135333330326636313064333633653734656637356438 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.511000 audit: BPF prog-id=85 op=LOAD Feb 12 20:35:58.511000 audit[1745]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00011f770 a2=78 a3=c000320d68 items=0 ppid=1593 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.511000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353932373135333330326636313064333633653734656637356438 Feb 12 20:35:58.512000 audit: BPF prog-id=85 op=UNLOAD Feb 12 20:35:58.512000 audit: BPF prog-id=84 op=UNLOAD Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { perfmon } for pid=1745 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit[1745]: AVC avc: denied { bpf } for pid=1745 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:35:58.512000 audit: BPF prog-id=86 op=LOAD Feb 12 20:35:58.512000 audit[1745]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011fc30 a2=78 a3=c000320df8 items=0 ppid=1593 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.512000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353932373135333330326636313064333633653734656637356438 Feb 12 20:35:58.534454 env[1146]: time="2024-02-12T20:35:58.534378888Z" level=info msg="StartContainer for \"925927153302f610d363e74ef75d8d15d4d1f2d802026339d9f7632aecb941d6\" returns successfully" Feb 12 20:35:58.609000 audit[1793]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=1793 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.609000 audit[1793]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffe7dd61c10 a2=0 a3=7ffe7dd61bfc items=0 ppid=1756 pid=1793 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.609000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:35:58.612000 audit[1794]: NETFILTER_CFG table=mangle:15 family=10 entries=1 op=nft_register_chain pid=1794 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:58.612000 audit[1794]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc45bc43c0 a2=0 a3=7ffc45bc43ac items=0 ppid=1756 pid=1794 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.612000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:35:58.612000 audit[1795]: NETFILTER_CFG table=nat:16 family=2 entries=1 op=nft_register_chain pid=1795 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.612000 audit[1795]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffec361e2c0 a2=0 a3=7ffec361e2ac items=0 ppid=1756 pid=1795 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.612000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:35:58.616000 audit[1796]: NETFILTER_CFG table=nat:17 family=10 entries=1 op=nft_register_chain pid=1796 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:58.616000 audit[1796]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffecee6f670 a2=0 a3=7ffecee6f65c items=0 ppid=1756 pid=1796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.616000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:35:58.617000 audit[1797]: NETFILTER_CFG table=filter:18 family=2 entries=1 op=nft_register_chain pid=1797 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.617000 audit[1797]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffd06de6f30 a2=0 a3=7ffd06de6f1c items=0 ppid=1756 pid=1797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.617000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:35:58.619000 audit[1798]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=1798 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:58.619000 audit[1798]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff3d9dcae0 a2=0 a3=7fff3d9dcacc items=0 ppid=1756 pid=1798 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.619000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:35:58.716000 audit[1799]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=1799 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.739569 kernel: kauditd_printk_skb: 214 callbacks suppressed Feb 12 20:35:58.739774 kernel: audit: type=1325 audit(1707770158.716:677): table=filter:20 family=2 entries=1 op=nft_register_chain pid=1799 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.716000 audit[1799]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffe1e85a620 a2=0 a3=7ffe1e85a60c items=0 ppid=1756 pid=1799 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.716000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:35:58.793182 kernel: audit: type=1300 audit(1707770158.716:677): arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffe1e85a620 a2=0 a3=7ffe1e85a60c items=0 ppid=1756 pid=1799 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.793335 kernel: audit: type=1327 audit(1707770158.716:677): proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:35:58.724000 audit[1801]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=1801 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.809895 kernel: audit: type=1325 audit(1707770158.724:678): table=filter:21 family=2 entries=1 op=nft_register_rule pid=1801 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.810063 kernel: audit: type=1300 audit(1707770158.724:678): arch=c000003e syscall=46 success=yes exit=752 a0=3 a1=7ffcc8a40f20 a2=0 a3=7ffcc8a40f0c items=0 ppid=1756 pid=1801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.724000 audit[1801]: SYSCALL arch=c000003e syscall=46 success=yes exit=752 a0=3 a1=7ffcc8a40f20 a2=0 a3=7ffcc8a40f0c items=0 ppid=1756 pid=1801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.724000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 12 20:35:58.843837 kernel: audit: type=1327 audit(1707770158.724:678): proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 12 20:35:58.871389 kubelet[1533]: E0212 20:35:58.871295 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:35:58.874173 kernel: audit: type=1325 audit(1707770158.732:679): table=filter:22 family=2 entries=2 op=nft_register_chain pid=1804 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.732000 audit[1804]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=1804 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.732000 audit[1804]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffc3ed6f270 a2=0 a3=7ffc3ed6f25c items=0 ppid=1756 pid=1804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.922877 kernel: audit: type=1300 audit(1707770158.732:679): arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffc3ed6f270 a2=0 a3=7ffc3ed6f25c items=0 ppid=1756 pid=1804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.952055 kernel: audit: type=1327 audit(1707770158.732:679): proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 12 20:35:58.732000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 12 20:35:58.733000 audit[1805]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=1805 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.733000 audit[1805]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd9f28f580 a2=0 a3=7ffd9f28f56c items=0 ppid=1756 pid=1805 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.733000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:35:58.737000 audit[1807]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=1807 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.737000 audit[1807]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffe9ce08d70 a2=0 a3=7ffe9ce08d5c items=0 ppid=1756 pid=1807 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.737000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:35:58.739000 audit[1808]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=1808 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.739000 audit[1808]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff563d6050 a2=0 a3=7fff563d603c items=0 ppid=1756 pid=1808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.739000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:35:58.744000 audit[1810]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=1810 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.968847 kernel: audit: type=1325 audit(1707770158.733:680): table=filter:23 family=2 entries=1 op=nft_register_chain pid=1805 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.744000 audit[1810]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffc8ebbdb30 a2=0 a3=7ffc8ebbdb1c items=0 ppid=1756 pid=1810 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.744000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:35:58.750000 audit[1813]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=1813 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.750000 audit[1813]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffcf9722ed0 a2=0 a3=7ffcf9722ebc items=0 ppid=1756 pid=1813 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.750000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 12 20:35:58.752000 audit[1814]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=1814 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.752000 audit[1814]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd4d0cb650 a2=0 a3=7ffd4d0cb63c items=0 ppid=1756 pid=1814 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.752000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:35:58.756000 audit[1816]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=1816 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.756000 audit[1816]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffd98b4bfc0 a2=0 a3=7ffd98b4bfac items=0 ppid=1756 pid=1816 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.756000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:35:58.759000 audit[1817]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=1817 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.759000 audit[1817]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffde26bfdb0 a2=0 a3=7ffde26bfd9c items=0 ppid=1756 pid=1817 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.759000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:35:58.763000 audit[1819]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=1819 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.763000 audit[1819]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffe1bca1d20 a2=0 a3=7ffe1bca1d0c items=0 ppid=1756 pid=1819 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.763000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:35:58.769000 audit[1822]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=1822 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.769000 audit[1822]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffee089f150 a2=0 a3=7ffee089f13c items=0 ppid=1756 pid=1822 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.769000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:35:58.778000 audit[1825]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=1825 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.778000 audit[1825]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fff2a7b0560 a2=0 a3=7fff2a7b054c items=0 ppid=1756 pid=1825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.778000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:35:58.780000 audit[1826]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=1826 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.780000 audit[1826]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffe772cd860 a2=0 a3=7ffe772cd84c items=0 ppid=1756 pid=1826 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.780000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:35:58.786000 audit[1828]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=1828 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.786000 audit[1828]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffe834098f0 a2=0 a3=7ffe834098dc items=0 ppid=1756 pid=1828 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.786000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:35:58.978000 audit[1833]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=1833 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.978000 audit[1833]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffcd4692d90 a2=0 a3=7ffcd4692d7c items=0 ppid=1756 pid=1833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.978000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:35:58.988000 audit[1838]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=1838 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.988000 audit[1838]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd69064220 a2=0 a3=7ffd6906420c items=0 ppid=1756 pid=1838 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.988000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:35:58.991000 audit[1840]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=1840 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:35:58.991000 audit[1840]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffe2f1a8290 a2=0 a3=7ffe2f1a827c items=0 ppid=1756 pid=1840 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:58.991000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:35:59.001000 audit[1842]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=1842 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:35:59.001000 audit[1842]: SYSCALL arch=c000003e syscall=46 success=yes exit=2844 a0=3 a1=7ffd59fd77d0 a2=0 a3=7ffd59fd77bc items=0 ppid=1756 pid=1842 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.001000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:35:59.028000 audit[1842]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=1842 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:35:59.028000 audit[1842]: SYSCALL arch=c000003e syscall=46 success=yes exit=24988 a0=3 a1=7ffd59fd77d0 a2=0 a3=7ffd59fd77bc items=0 ppid=1756 pid=1842 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.028000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:35:59.050000 audit[1850]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=1850 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.050000 audit[1850]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffc86d83650 a2=0 a3=7ffc86d8363c items=0 ppid=1756 pid=1850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.050000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:35:59.054000 audit[1853]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=1853 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.054000 audit[1853]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7fffdd5140f0 a2=0 a3=7fffdd5140dc items=0 ppid=1756 pid=1853 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.054000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 12 20:35:59.058830 kubelet[1533]: I0212 20:35:59.058759 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-brr9b" podStartSLOduration=2.588686942 podCreationTimestamp="2024-02-12 20:35:53 +0000 UTC" firstStartedPulling="2024-02-12 20:35:54.964713566 +0000 UTC m=+3.839088335" lastFinishedPulling="2024-02-12 20:35:58.434710504 +0000 UTC m=+7.309085275" observedRunningTime="2024-02-12 20:35:59.057897882 +0000 UTC m=+7.932272665" watchObservedRunningTime="2024-02-12 20:35:59.058683882 +0000 UTC m=+7.933058663" Feb 12 20:35:59.061000 audit[1856]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=1856 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.061000 audit[1856]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffff6966080 a2=0 a3=7ffff696606c items=0 ppid=1756 pid=1856 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.061000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 12 20:35:59.063000 audit[1857]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=1857 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.063000 audit[1857]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffcfb3dd960 a2=0 a3=7ffcfb3dd94c items=0 ppid=1756 pid=1857 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.063000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:35:59.066000 audit[1859]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=1859 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.066000 audit[1859]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffe868a3cd0 a2=0 a3=7ffe868a3cbc items=0 ppid=1756 pid=1859 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.066000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:35:59.068000 audit[1860]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=1860 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.068000 audit[1860]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc2e83d150 a2=0 a3=7ffc2e83d13c items=0 ppid=1756 pid=1860 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.068000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:35:59.071000 audit[1862]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=1862 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.071000 audit[1862]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffdd3984ec0 a2=0 a3=7ffdd3984eac items=0 ppid=1756 pid=1862 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.071000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 12 20:35:59.077000 audit[1865]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=1865 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.077000 audit[1865]: SYSCALL arch=c000003e syscall=46 success=yes exit=828 a0=3 a1=7fff06a5b520 a2=0 a3=7fff06a5b50c items=0 ppid=1756 pid=1865 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.077000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:35:59.079000 audit[1866]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=1866 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.079000 audit[1866]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd3c4fd9d0 a2=0 a3=7ffd3c4fd9bc items=0 ppid=1756 pid=1866 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.079000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:35:59.084000 audit[1868]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=1868 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.084000 audit[1868]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffc0aa52ed0 a2=0 a3=7ffc0aa52ebc items=0 ppid=1756 pid=1868 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.084000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:35:59.086000 audit[1869]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=1869 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.086000 audit[1869]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc1fcea600 a2=0 a3=7ffc1fcea5ec items=0 ppid=1756 pid=1869 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.086000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:35:59.090000 audit[1871]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=1871 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.090000 audit[1871]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffc9d94d760 a2=0 a3=7ffc9d94d74c items=0 ppid=1756 pid=1871 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.090000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:35:59.095000 audit[1874]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=1874 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.095000 audit[1874]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffdf22dc5b0 a2=0 a3=7ffdf22dc59c items=0 ppid=1756 pid=1874 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.095000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:35:59.100000 audit[1877]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=1877 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.100000 audit[1877]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffd4cce810 a2=0 a3=7fffd4cce7fc items=0 ppid=1756 pid=1877 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.100000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 12 20:35:59.102000 audit[1878]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=1878 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.102000 audit[1878]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7fff8b63f380 a2=0 a3=7fff8b63f36c items=0 ppid=1756 pid=1878 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.102000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:35:59.105000 audit[1880]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=1880 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.105000 audit[1880]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7fff563d29e0 a2=0 a3=7fff563d29cc items=0 ppid=1756 pid=1880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.105000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:35:59.110000 audit[1883]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=1883 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.110000 audit[1883]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffc51d703d0 a2=0 a3=7ffc51d703bc items=0 ppid=1756 pid=1883 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.110000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:35:59.112000 audit[1884]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=1884 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.112000 audit[1884]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffeab2de3a0 a2=0 a3=7ffeab2de38c items=0 ppid=1756 pid=1884 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.112000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:35:59.115000 audit[1886]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=1886 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.115000 audit[1886]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7ffd089b1d60 a2=0 a3=7ffd089b1d4c items=0 ppid=1756 pid=1886 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.115000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:35:59.122000 audit[1889]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=1889 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.122000 audit[1889]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7fff42bb2520 a2=0 a3=7fff42bb250c items=0 ppid=1756 pid=1889 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.122000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:35:59.124000 audit[1890]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=1890 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.124000 audit[1890]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffe2fb3db80 a2=0 a3=7ffe2fb3db6c items=0 ppid=1756 pid=1890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.124000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:35:59.127000 audit[1892]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=1892 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:35:59.127000 audit[1892]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7fff5ef24460 a2=0 a3=7fff5ef2444c items=0 ppid=1756 pid=1892 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.127000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:35:59.131000 audit[1894]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=1894 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:35:59.131000 audit[1894]: SYSCALL arch=c000003e syscall=46 success=yes exit=1916 a0=3 a1=7ffe4f43ec40 a2=0 a3=7ffe4f43ec2c items=0 ppid=1756 pid=1894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.131000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:35:59.132000 audit[1894]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=1894 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:35:59.132000 audit[1894]: SYSCALL arch=c000003e syscall=46 success=yes exit=1968 a0=3 a1=7ffe4f43ec40 a2=0 a3=7ffe4f43ec2c items=0 ppid=1756 pid=1894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:35:59.132000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:35:59.673870 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2257983143.mount: Deactivated successfully. Feb 12 20:35:59.872101 kubelet[1533]: E0212 20:35:59.872046 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:00.027651 kubelet[1533]: E0212 20:36:00.027191 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:36:00.872639 kubelet[1533]: E0212 20:36:00.872549 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:01.873670 kubelet[1533]: E0212 20:36:01.873613 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:02.031250 kubelet[1533]: E0212 20:36:02.031210 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:36:02.874566 kubelet[1533]: E0212 20:36:02.874522 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:03.255424 env[1146]: time="2024-02-12T20:36:03.255260019Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:03.258956 env[1146]: time="2024-02-12T20:36:03.258905938Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:8e8d96a874c0e2f137bc6e0ff4b9da4ac2341852e41d99ab81983d329bb87d93,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:03.261939 env[1146]: time="2024-02-12T20:36:03.261879515Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:03.264417 env[1146]: time="2024-02-12T20:36:03.264371594Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:03.265866 env[1146]: time="2024-02-12T20:36:03.265802916Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:8e8d96a874c0e2f137bc6e0ff4b9da4ac2341852e41d99ab81983d329bb87d93\"" Feb 12 20:36:03.268805 env[1146]: time="2024-02-12T20:36:03.268758435Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 12 20:36:03.287210 env[1146]: time="2024-02-12T20:36:03.287143597Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5\"" Feb 12 20:36:03.288061 env[1146]: time="2024-02-12T20:36:03.288018863Z" level=info msg="StartContainer for \"b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5\"" Feb 12 20:36:03.313709 systemd[1]: Started cri-containerd-b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5.scope. Feb 12 20:36:03.325071 systemd[1]: run-containerd-runc-k8s.io-b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5-runc.BI5sLL.mount: Deactivated successfully. Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00011f6b0 a2=3c a3=7ffb5424a178 items=0 ppid=1606 pid=1903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:03.348000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236343261613439316166353766333034323165363364303337333239 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit: BPF prog-id=87 op=LOAD Feb 12 20:36:03.348000 audit[1903]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011f9d8 a2=78 a3=c000218bf8 items=0 ppid=1606 pid=1903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:03.348000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236343261613439316166353766333034323165363364303337333239 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit: BPF prog-id=88 op=LOAD Feb 12 20:36:03.348000 audit[1903]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00011f770 a2=78 a3=c000218c48 items=0 ppid=1606 pid=1903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:03.348000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236343261613439316166353766333034323165363364303337333239 Feb 12 20:36:03.348000 audit: BPF prog-id=88 op=UNLOAD Feb 12 20:36:03.348000 audit: BPF prog-id=87 op=UNLOAD Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { perfmon } for pid=1903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit[1903]: AVC avc: denied { bpf } for pid=1903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:03.348000 audit: BPF prog-id=89 op=LOAD Feb 12 20:36:03.348000 audit[1903]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00011fc30 a2=78 a3=c000218cd8 items=0 ppid=1606 pid=1903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:03.348000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236343261613439316166353766333034323165363364303337333239 Feb 12 20:36:03.372361 env[1146]: time="2024-02-12T20:36:03.372262227Z" level=info msg="StartContainer for \"b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5\" returns successfully" Feb 12 20:36:03.875080 kubelet[1533]: E0212 20:36:03.875009 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:04.027567 kubelet[1533]: E0212 20:36:04.027527 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:36:04.241336 env[1146]: time="2024-02-12T20:36:04.241060051Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:36:04.244736 systemd[1]: cri-containerd-b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5.scope: Deactivated successfully. Feb 12 20:36:04.256853 kernel: kauditd_printk_skb: 168 callbacks suppressed Feb 12 20:36:04.256982 kernel: audit: type=1334 audit(1707770164.250:728): prog-id=89 op=UNLOAD Feb 12 20:36:04.250000 audit: BPF prog-id=89 op=UNLOAD Feb 12 20:36:04.283698 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5-rootfs.mount: Deactivated successfully. Feb 12 20:36:04.298032 kubelet[1533]: I0212 20:36:04.297988 1533 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 12 20:36:04.875836 kubelet[1533]: E0212 20:36:04.875751 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:05.381001 env[1146]: time="2024-02-12T20:36:05.380940396Z" level=info msg="shim disconnected" id=b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5 Feb 12 20:36:05.381001 env[1146]: time="2024-02-12T20:36:05.381003959Z" level=warning msg="cleaning up after shim disconnected" id=b642aa491af57f30421e63d037329210404ff9941bade6d7604c78c3cbd45ea5 namespace=k8s.io Feb 12 20:36:05.381001 env[1146]: time="2024-02-12T20:36:05.381017892Z" level=info msg="cleaning up dead shim" Feb 12 20:36:05.404541 env[1146]: time="2024-02-12T20:36:05.404447157Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:36:05Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1950 runtime=io.containerd.runc.v2\n" Feb 12 20:36:05.876375 kubelet[1533]: E0212 20:36:05.876306 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:06.034224 systemd[1]: Created slice kubepods-besteffort-pod30af56de_f111_46fb_96f2_369127a9645f.slice. Feb 12 20:36:06.037960 env[1146]: time="2024-02-12T20:36:06.037906187Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wc6vg,Uid:30af56de-f111-46fb-96f2-369127a9645f,Namespace:calico-system,Attempt:0,}" Feb 12 20:36:06.073774 env[1146]: time="2024-02-12T20:36:06.073702249Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 12 20:36:06.133429 env[1146]: time="2024-02-12T20:36:06.130539589Z" level=error msg="Failed to destroy network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:06.133087 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014-shm.mount: Deactivated successfully. Feb 12 20:36:06.134610 env[1146]: time="2024-02-12T20:36:06.134538700Z" level=error msg="encountered an error cleaning up failed sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:06.134748 env[1146]: time="2024-02-12T20:36:06.134638035Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wc6vg,Uid:30af56de-f111-46fb-96f2-369127a9645f,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:06.135097 kubelet[1533]: E0212 20:36:06.135071 1533 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:06.135208 kubelet[1533]: E0212 20:36:06.135164 1533 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:36:06.135285 kubelet[1533]: E0212 20:36:06.135214 1533 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-wc6vg" Feb 12 20:36:06.135346 kubelet[1533]: E0212 20:36:06.135328 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-wc6vg_calico-system(30af56de-f111-46fb-96f2-369127a9645f)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-wc6vg_calico-system(30af56de-f111-46fb-96f2-369127a9645f)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:36:06.340558 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 12 20:36:06.363911 kernel: audit: type=1131 audit(1707770166.339:729): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:36:06.339000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:36:06.380000 audit: BPF prog-id=63 op=UNLOAD Feb 12 20:36:06.380000 audit: BPF prog-id=62 op=UNLOAD Feb 12 20:36:06.396405 kernel: audit: type=1334 audit(1707770166.380:730): prog-id=63 op=UNLOAD Feb 12 20:36:06.396580 kernel: audit: type=1334 audit(1707770166.380:731): prog-id=62 op=UNLOAD Feb 12 20:36:06.396626 kernel: audit: type=1334 audit(1707770166.380:732): prog-id=61 op=UNLOAD Feb 12 20:36:06.380000 audit: BPF prog-id=61 op=UNLOAD Feb 12 20:36:06.876650 kubelet[1533]: E0212 20:36:06.876529 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:07.077043 kubelet[1533]: I0212 20:36:07.076150 1533 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:07.077621 env[1146]: time="2024-02-12T20:36:07.077578384Z" level=info msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" Feb 12 20:36:07.158247 env[1146]: time="2024-02-12T20:36:07.158172027Z" level=error msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" failed" error="failed to destroy network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:07.158656 kubelet[1533]: E0212 20:36:07.158596 1533 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:07.158793 kubelet[1533]: E0212 20:36:07.158720 1533 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014} Feb 12 20:36:07.158927 kubelet[1533]: E0212 20:36:07.158800 1533 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"30af56de-f111-46fb-96f2-369127a9645f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:36:07.158927 kubelet[1533]: E0212 20:36:07.158876 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"30af56de-f111-46fb-96f2-369127a9645f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-wc6vg" podUID=30af56de-f111-46fb-96f2-369127a9645f Feb 12 20:36:07.470435 kubelet[1533]: I0212 20:36:07.469330 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:36:07.478164 systemd[1]: Created slice kubepods-besteffort-poda8a1a552_e6b5_4af0_b0f9_435a3d5d36b4.slice. Feb 12 20:36:07.484725 kubelet[1533]: I0212 20:36:07.484688 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-wscm5\" (UniqueName: \"kubernetes.io/projected/a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4-kube-api-access-wscm5\") pod \"nginx-deployment-845c78c8b9-8spkl\" (UID: \"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4\") " pod="default/nginx-deployment-845c78c8b9-8spkl" Feb 12 20:36:07.785338 env[1146]: time="2024-02-12T20:36:07.785169920Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-8spkl,Uid:a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4,Namespace:default,Attempt:0,}" Feb 12 20:36:07.877555 kubelet[1533]: E0212 20:36:07.877487 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:08.320003 env[1146]: time="2024-02-12T20:36:08.319907841Z" level=error msg="Failed to destroy network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:08.324286 env[1146]: time="2024-02-12T20:36:08.323240737Z" level=error msg="encountered an error cleaning up failed sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:08.324286 env[1146]: time="2024-02-12T20:36:08.323322315Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-8spkl,Uid:a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:08.324478 kubelet[1533]: E0212 20:36:08.323702 1533 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:08.324478 kubelet[1533]: E0212 20:36:08.323782 1533 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-8spkl" Feb 12 20:36:08.324478 kubelet[1533]: E0212 20:36:08.323848 1533 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-8spkl" Feb 12 20:36:08.322684 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6-shm.mount: Deactivated successfully. Feb 12 20:36:08.324784 kubelet[1533]: E0212 20:36:08.323953 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-8spkl_default(a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-8spkl_default(a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-8spkl" podUID=a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4 Feb 12 20:36:08.877772 kubelet[1533]: E0212 20:36:08.877680 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:09.081826 kubelet[1533]: I0212 20:36:09.081179 1533 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:09.082206 env[1146]: time="2024-02-12T20:36:09.082166780Z" level=info msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" Feb 12 20:36:09.143627 env[1146]: time="2024-02-12T20:36:09.143115948Z" level=error msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" failed" error="failed to destroy network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:36:09.144312 kubelet[1533]: E0212 20:36:09.144116 1533 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:09.144312 kubelet[1533]: E0212 20:36:09.144166 1533 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6} Feb 12 20:36:09.144312 kubelet[1533]: E0212 20:36:09.144225 1533 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:36:09.144312 kubelet[1533]: E0212 20:36:09.144271 1533 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-8spkl" podUID=a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4 Feb 12 20:36:09.878473 kubelet[1533]: E0212 20:36:09.878385 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:10.878994 kubelet[1533]: E0212 20:36:10.878884 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:11.846745 kubelet[1533]: E0212 20:36:11.846700 1533 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:11.879974 kubelet[1533]: E0212 20:36:11.879914 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:12.439346 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1251211351.mount: Deactivated successfully. Feb 12 20:36:12.503869 env[1146]: time="2024-02-12T20:36:12.503794323Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:12.507086 env[1146]: time="2024-02-12T20:36:12.507037914Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:1843802b91be8ff1c1d35ee08461ebe909e7a2199e59396f69886439a372312c,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:12.509461 env[1146]: time="2024-02-12T20:36:12.509417090Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:12.511670 env[1146]: time="2024-02-12T20:36:12.511625228Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:12.512648 env[1146]: time="2024-02-12T20:36:12.512488772Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:1843802b91be8ff1c1d35ee08461ebe909e7a2199e59396f69886439a372312c\"" Feb 12 20:36:12.533290 env[1146]: time="2024-02-12T20:36:12.533222013Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 12 20:36:12.555029 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1901783159.mount: Deactivated successfully. Feb 12 20:36:12.561292 env[1146]: time="2024-02-12T20:36:12.561233155Z" level=info msg="CreateContainer within sandbox \"4adea46e1be98c88d3f3c71b7371188e9e1abb5ff5e33221bddcdf8ca60e571e\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"da3de50fa5600ee3605856cbe38123e0029af787bf700f339ba44e66969aac1c\"" Feb 12 20:36:12.562355 env[1146]: time="2024-02-12T20:36:12.562313033Z" level=info msg="StartContainer for \"da3de50fa5600ee3605856cbe38123e0029af787bf700f339ba44e66969aac1c\"" Feb 12 20:36:12.586548 systemd[1]: Started cri-containerd-da3de50fa5600ee3605856cbe38123e0029af787bf700f339ba44e66969aac1c.scope. Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.638881 kernel: audit: type=1400 audit(1707770172.615:733): avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7fbc306f9cf8 items=0 ppid=1606 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:12.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461336465353066613536303065653336303538353663626533383132 Feb 12 20:36:12.701394 kernel: audit: type=1300 audit(1707770172.615:733): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7fbc306f9cf8 items=0 ppid=1606 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:12.701585 kernel: audit: type=1327 audit(1707770172.615:733): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461336465353066613536303065653336303538353663626533383132 Feb 12 20:36:12.701643 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.742746 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.763978 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.764150 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.785470 env[1146]: time="2024-02-12T20:36:12.785358117Z" level=info msg="StartContainer for \"da3de50fa5600ee3605856cbe38123e0029af787bf700f339ba44e66969aac1c\" returns successfully" Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.806794 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.829384 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.850530 kernel: audit: type=1400 audit(1707770172.615:734): avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit: BPF prog-id=90 op=LOAD Feb 12 20:36:12.615000 audit[2083]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0000a2218 items=0 ppid=1606 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:12.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461336465353066613536303065653336303538353663626533383132 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit: BPF prog-id=91 op=LOAD Feb 12 20:36:12.615000 audit[2083]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0000a2268 items=0 ppid=1606 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:12.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461336465353066613536303065653336303538353663626533383132 Feb 12 20:36:12.615000 audit: BPF prog-id=91 op=UNLOAD Feb 12 20:36:12.615000 audit: BPF prog-id=90 op=UNLOAD Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { perfmon } for pid=2083 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit[2083]: AVC avc: denied { bpf } for pid=2083 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:12.615000 audit: BPF prog-id=92 op=LOAD Feb 12 20:36:12.615000 audit[2083]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c0000a22f8 items=0 ppid=1606 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:12.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461336465353066613536303065653336303538353663626533383132 Feb 12 20:36:12.880945 kubelet[1533]: E0212 20:36:12.880906 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:12.903290 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 12 20:36:12.903459 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 12 20:36:13.118506 kubelet[1533]: I0212 20:36:13.118373 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-5n8nc" podStartSLOduration=2.566216756 podCreationTimestamp="2024-02-12 20:35:53 +0000 UTC" firstStartedPulling="2024-02-12 20:35:54.960840986 +0000 UTC m=+3.835215754" lastFinishedPulling="2024-02-12 20:36:12.512945163 +0000 UTC m=+21.387319937" observedRunningTime="2024-02-12 20:36:13.116194947 +0000 UTC m=+21.990569731" watchObservedRunningTime="2024-02-12 20:36:13.118320939 +0000 UTC m=+21.992695722" Feb 12 20:36:13.881635 kubelet[1533]: E0212 20:36:13.881569 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:14.232000 audit[2178]: AVC avc: denied { write } for pid=2178 comm="tee" name="fd" dev="proc" ino=19289 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.236000 audit[2186]: AVC avc: denied { write } for pid=2186 comm="tee" name="fd" dev="proc" ino=19294 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.241000 audit[2179]: AVC avc: denied { write } for pid=2179 comm="tee" name="fd" dev="proc" ino=19298 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.232000 audit[2178]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc4d947960 a2=241 a3=1b6 items=1 ppid=2147 pid=2178 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.232000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 12 20:36:14.232000 audit: PATH item=0 name="/dev/fd/63" inode=18401 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.232000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.236000 audit[2186]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff35cf2961 a2=241 a3=1b6 items=1 ppid=2158 pid=2186 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.236000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 12 20:36:14.236000 audit: PATH item=0 name="/dev/fd/63" inode=18404 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.236000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.241000 audit[2179]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc53616960 a2=241 a3=1b6 items=1 ppid=2146 pid=2179 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.241000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 12 20:36:14.241000 audit: PATH item=0 name="/dev/fd/63" inode=19284 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.241000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.257000 audit[2206]: AVC avc: denied { write } for pid=2206 comm="tee" name="fd" dev="proc" ino=19316 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.259000 audit[2210]: AVC avc: denied { write } for pid=2210 comm="tee" name="fd" dev="proc" ino=19319 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.257000 audit[2206]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc08abc960 a2=241 a3=1b6 items=1 ppid=2150 pid=2206 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.257000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 12 20:36:14.257000 audit: PATH item=0 name="/dev/fd/63" inode=19299 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.259000 audit[2210]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffd563a2951 a2=241 a3=1b6 items=1 ppid=2151 pid=2210 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.259000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 12 20:36:14.259000 audit: PATH item=0 name="/dev/fd/63" inode=19305 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.257000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.259000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.268000 audit[2197]: AVC avc: denied { write } for pid=2197 comm="tee" name="fd" dev="proc" ino=18417 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.268000 audit[2197]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffe2b40e950 a2=241 a3=1b6 items=1 ppid=2155 pid=2197 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.268000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 12 20:36:14.268000 audit: PATH item=0 name="/dev/fd/63" inode=19295 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.268000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.271000 audit[2213]: AVC avc: denied { write } for pid=2213 comm="tee" name="fd" dev="proc" ino=18421 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:36:14.271000 audit[2213]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc25026962 a2=241 a3=1b6 items=1 ppid=2154 pid=2213 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.271000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 12 20:36:14.271000 audit: PATH item=0 name="/dev/fd/63" inode=18414 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:14.271000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:36:14.559943 kernel: Initializing XFRM netlink socket Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit: BPF prog-id=93 op=LOAD Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7ffd4b1685a0 a2=70 a3=7f18ef3d6000 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit: BPF prog-id=93 op=UNLOAD Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit: BPF prog-id=94 op=LOAD Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7ffd4b1685a0 a2=70 a3=6e items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit: BPF prog-id=94 op=UNLOAD Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=0 a1=7ffd4b168550 a2=70 a3=7ffd4b1685a0 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit: BPF prog-id=95 op=LOAD Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7ffd4b168530 a2=70 a3=7ffd4b1685a0 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit: BPF prog-id=95 op=UNLOAD Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7ffd4b168610 a2=70 a3=0 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7ffd4b168600 a2=70 a3=0 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.714000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.714000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=3 a0=0 a1=7ffd4b168640 a2=70 a3=0 items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.714000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { perfmon } for pid=2286 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit[2286]: AVC avc: denied { bpf } for pid=2286 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.715000 audit: BPF prog-id=96 op=LOAD Feb 12 20:36:14.715000 audit[2286]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7ffd4b168560 a2=70 a3=ffffffff items=0 ppid=2152 pid=2286 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.715000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:36:14.734000 audit[2289]: AVC avc: denied { bpf } for pid=2289 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.734000 audit[2289]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffc8dd755f0 a2=70 a3=fff80800 items=0 ppid=2152 pid=2289 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.734000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:36:14.734000 audit[2289]: AVC avc: denied { bpf } for pid=2289 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:14.734000 audit[2289]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffc8dd754c0 a2=70 a3=3 items=0 ppid=2152 pid=2289 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.734000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:36:14.744000 audit: BPF prog-id=96 op=UNLOAD Feb 12 20:36:14.817000 audit[2313]: NETFILTER_CFG table=mangle:65 family=2 entries=19 op=nft_register_chain pid=2313 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:14.817000 audit[2313]: SYSCALL arch=c000003e syscall=46 success=yes exit=6800 a0=3 a1=7fff6acaaf50 a2=0 a3=7fff6acaaf3c items=0 ppid=2152 pid=2313 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.817000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:14.820000 audit[2312]: NETFILTER_CFG table=nat:66 family=2 entries=16 op=nft_register_chain pid=2312 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:14.820000 audit[2312]: SYSCALL arch=c000003e syscall=46 success=yes exit=5188 a0=3 a1=7ffe3dd8f480 a2=0 a3=564e48b1f000 items=0 ppid=2152 pid=2312 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.820000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:14.824000 audit[2311]: NETFILTER_CFG table=raw:67 family=2 entries=19 op=nft_register_chain pid=2311 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:14.824000 audit[2311]: SYSCALL arch=c000003e syscall=46 success=yes exit=6132 a0=3 a1=7ffd98bbb6d0 a2=0 a3=559d9ead8000 items=0 ppid=2152 pid=2311 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.824000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:14.827000 audit[2314]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2314 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:14.827000 audit[2314]: SYSCALL arch=c000003e syscall=46 success=yes exit=18472 a0=3 a1=7ffe9fe74a90 a2=0 a3=55ad7263a000 items=0 ppid=2152 pid=2314 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:14.827000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:14.881986 kubelet[1533]: E0212 20:36:14.881936 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:15.575525 systemd-networkd[1031]: vxlan.calico: Link UP Feb 12 20:36:15.575539 systemd-networkd[1031]: vxlan.calico: Gained carrier Feb 12 20:36:15.883176 kubelet[1533]: E0212 20:36:15.883017 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:16.146070 kubelet[1533]: I0212 20:36:16.145922 1533 prober_manager.go:287] "Failed to trigger a manual run" probe="Readiness" Feb 12 20:36:16.760017 systemd-networkd[1031]: vxlan.calico: Gained IPv6LL Feb 12 20:36:16.883653 kubelet[1533]: E0212 20:36:16.883606 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:17.883845 kubelet[1533]: E0212 20:36:17.883773 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:18.029648 env[1146]: time="2024-02-12T20:36:18.029549174Z" level=info msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.090 [INFO][2382] k8s.go 578: Cleaning up netns ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.091 [INFO][2382] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" iface="eth0" netns="/var/run/netns/cni-2d00d9a4-04bf-1cb7-6ccb-e30517712136" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.091 [INFO][2382] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" iface="eth0" netns="/var/run/netns/cni-2d00d9a4-04bf-1cb7-6ccb-e30517712136" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.091 [INFO][2382] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" iface="eth0" netns="/var/run/netns/cni-2d00d9a4-04bf-1cb7-6ccb-e30517712136" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.091 [INFO][2382] k8s.go 585: Releasing IP address(es) ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.091 [INFO][2382] utils.go 188: Calico CNI releasing IP address ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.116 [INFO][2388] ipam_plugin.go 415: Releasing address using handleID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.117 [INFO][2388] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.117 [INFO][2388] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.126 [WARNING][2388] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.126 [INFO][2388] ipam_plugin.go 443: Releasing address using workloadID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.128 [INFO][2388] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:18.131287 env[1146]: 2024-02-12 20:36:18.129 [INFO][2382] k8s.go 591: Teardown processing complete. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:18.131287 env[1146]: time="2024-02-12T20:36:18.131373929Z" level=info msg="TearDown network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" successfully" Feb 12 20:36:18.131287 env[1146]: time="2024-02-12T20:36:18.131416465Z" level=info msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" returns successfully" Feb 12 20:36:18.131287 env[1146]: time="2024-02-12T20:36:18.135303137Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wc6vg,Uid:30af56de-f111-46fb-96f2-369127a9645f,Namespace:calico-system,Attempt:1,}" Feb 12 20:36:18.133736 systemd[1]: run-netns-cni\x2d2d00d9a4\x2d04bf\x2d1cb7\x2d6ccb\x2de30517712136.mount: Deactivated successfully. Feb 12 20:36:18.286929 systemd-networkd[1031]: calicd0672b9c7b: Link UP Feb 12 20:36:18.295004 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:36:18.303859 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calicd0672b9c7b: link becomes ready Feb 12 20:36:18.304201 systemd-networkd[1031]: calicd0672b9c7b: Gained carrier Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.202 [INFO][2395] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.128.0.61-k8s-csi--node--driver--wc6vg-eth0 csi-node-driver- calico-system 30af56de-f111-46fb-96f2-369127a9645f 951 0 2024-02-12 20:35:53 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.128.0.61 csi-node-driver-wc6vg eth0 default [] [] [kns.calico-system ksa.calico-system.default] calicd0672b9c7b [] []}} ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.202 [INFO][2395] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.233 [INFO][2406] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" HandleID="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.247 [INFO][2406] ipam_plugin.go 268: Auto assigning IP ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" HandleID="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0004a1b40), Attrs:map[string]string{"namespace":"calico-system", "node":"10.128.0.61", "pod":"csi-node-driver-wc6vg", "timestamp":"2024-02-12 20:36:18.233736878 +0000 UTC"}, Hostname:"10.128.0.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.248 [INFO][2406] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.248 [INFO][2406] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.248 [INFO][2406] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.128.0.61' Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.250 [INFO][2406] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.255 [INFO][2406] ipam.go 372: Looking up existing affinities for host host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.260 [INFO][2406] ipam.go 489: Trying affinity for 192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.262 [INFO][2406] ipam.go 155: Attempting to load block cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.265 [INFO][2406] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.265 [INFO][2406] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.128/26 handle="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.267 [INFO][2406] ipam.go 1682: Creating new handle: k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4 Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.271 [INFO][2406] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.128/26 handle="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.278 [INFO][2406] ipam.go 1216: Successfully claimed IPs: [192.168.81.129/26] block=192.168.81.128/26 handle="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.278 [INFO][2406] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.129/26] handle="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" host="10.128.0.61" Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.278 [INFO][2406] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:18.325246 env[1146]: 2024-02-12 20:36:18.278 [INFO][2406] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.129/26] IPv6=[] ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" HandleID="k8s-pod-network.035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.281 [INFO][2395] k8s.go 385: Populated endpoint ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-csi--node--driver--wc6vg-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"30af56de-f111-46fb-96f2-369127a9645f", ResourceVersion:"951", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 35, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"", Pod:"csi-node-driver-wc6vg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calicd0672b9c7b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.282 [INFO][2395] k8s.go 386: Calico CNI using IPs: [192.168.81.129/32] ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.282 [INFO][2395] dataplane_linux.go 68: Setting the host side veth name to calicd0672b9c7b ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.305 [INFO][2395] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.306 [INFO][2395] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-csi--node--driver--wc6vg-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"30af56de-f111-46fb-96f2-369127a9645f", ResourceVersion:"951", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 35, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4", Pod:"csi-node-driver-wc6vg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calicd0672b9c7b", MAC:"b6:08:42:b4:71:67", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:18.327370 env[1146]: 2024-02-12 20:36:18.316 [INFO][2395] k8s.go 491: Wrote updated endpoint to datastore ContainerID="035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4" Namespace="calico-system" Pod="csi-node-driver-wc6vg" WorkloadEndpoint="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:18.357895 env[1146]: time="2024-02-12T20:36:18.356792755Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:36:18.357895 env[1146]: time="2024-02-12T20:36:18.356926939Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:36:18.357895 env[1146]: time="2024-02-12T20:36:18.356948822Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:36:18.357895 env[1146]: time="2024-02-12T20:36:18.357129588Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4 pid=2435 runtime=io.containerd.runc.v2 Feb 12 20:36:18.367000 audit[2446]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=2446 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:18.378189 kernel: kauditd_printk_skb: 151 callbacks suppressed Feb 12 20:36:18.378264 kernel: audit: type=1325 audit(1707770178.367:764): table=filter:69 family=2 entries=36 op=nft_register_chain pid=2446 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:18.367000 audit[2446]: SYSCALL arch=c000003e syscall=46 success=yes exit=19908 a0=3 a1=7ffe5ff624b0 a2=0 a3=7ffe5ff6249c items=0 ppid=2152 pid=2446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.414823 systemd[1]: Started cri-containerd-035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4.scope. Feb 12 20:36:18.429337 kernel: audit: type=1300 audit(1707770178.367:764): arch=c000003e syscall=46 success=yes exit=19908 a0=3 a1=7ffe5ff624b0 a2=0 a3=7ffe5ff6249c items=0 ppid=2152 pid=2446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.367000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:18.448992 kernel: audit: type=1327 audit(1707770178.367:764): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.481862 kernel: audit: type=1400 audit(1707770178.458:765): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.524026 kernel: audit: type=1400 audit(1707770178.458:766): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.524189 kernel: audit: type=1400 audit(1707770178.458:767): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.546388 kernel: audit: type=1400 audit(1707770178.458:768): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.546522 kernel: audit: type=1400 audit(1707770178.458:769): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.588291 kernel: audit: type=1400 audit(1707770178.458:770): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.588488 kernel: audit: type=1400 audit(1707770178.458:771): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.458000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.479000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.479000 audit: BPF prog-id=97 op=LOAD Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2435 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.480000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3033353030326635396437393866653930353266336339376233356362 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=2435 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.480000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3033353030326635396437393866653930353266336339376233356362 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.480000 audit: BPF prog-id=98 op=LOAD Feb 12 20:36:18.480000 audit[2447]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0001956a0 items=0 ppid=2435 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.480000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3033353030326635396437393866653930353266336339376233356362 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit: BPF prog-id=99 op=LOAD Feb 12 20:36:18.501000 audit[2447]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c0001956e8 items=0 ppid=2435 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.501000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3033353030326635396437393866653930353266336339376233356362 Feb 12 20:36:18.501000 audit: BPF prog-id=99 op=UNLOAD Feb 12 20:36:18.501000 audit: BPF prog-id=98 op=UNLOAD Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { perfmon } for pid=2447 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit[2447]: AVC avc: denied { bpf } for pid=2447 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:18.501000 audit: BPF prog-id=100 op=LOAD Feb 12 20:36:18.501000 audit[2447]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000195af8 items=0 ppid=2435 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:18.501000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3033353030326635396437393866653930353266336339376233356362 Feb 12 20:36:18.625495 env[1146]: time="2024-02-12T20:36:18.625437420Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wc6vg,Uid:30af56de-f111-46fb-96f2-369127a9645f,Namespace:calico-system,Attempt:1,} returns sandbox id \"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4\"" Feb 12 20:36:18.627927 env[1146]: time="2024-02-12T20:36:18.627868849Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 12 20:36:18.884428 kubelet[1533]: E0212 20:36:18.884267 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:19.575227 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3836596897.mount: Deactivated successfully. Feb 12 20:36:19.885021 kubelet[1533]: E0212 20:36:19.884847 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:19.986333 env[1146]: time="2024-02-12T20:36:19.986254802Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:19.989524 env[1146]: time="2024-02-12T20:36:19.989469605Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:91c1c91da7602f16686c149419195b486669f3a1828fd320cf332fdc6a25297d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:19.992111 env[1146]: time="2024-02-12T20:36:19.992054117Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:19.994341 env[1146]: time="2024-02-12T20:36:19.994285688Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:19.995226 env[1146]: time="2024-02-12T20:36:19.995181944Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:91c1c91da7602f16686c149419195b486669f3a1828fd320cf332fdc6a25297d\"" Feb 12 20:36:19.998255 env[1146]: time="2024-02-12T20:36:19.998214968Z" level=info msg="CreateContainer within sandbox \"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 12 20:36:20.021187 env[1146]: time="2024-02-12T20:36:20.021127962Z" level=info msg="CreateContainer within sandbox \"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"47acb19459eb42e51fcef67b73a683825bd01a4fa0eb2c2f0a14e54dd9387f34\"" Feb 12 20:36:20.022065 env[1146]: time="2024-02-12T20:36:20.022024375Z" level=info msg="StartContainer for \"47acb19459eb42e51fcef67b73a683825bd01a4fa0eb2c2f0a14e54dd9387f34\"" Feb 12 20:36:20.061960 systemd[1]: Started cri-containerd-47acb19459eb42e51fcef67b73a683825bd01a4fa0eb2c2f0a14e54dd9387f34.scope. Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7f4b2dd68ff8 items=0 ppid=2435 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:20.081000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437616362313934353965623432653531666365663637623733613638 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit: BPF prog-id=101 op=LOAD Feb 12 20:36:20.081000 audit[2484]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0003d0068 items=0 ppid=2435 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:20.081000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437616362313934353965623432653531666365663637623733613638 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit: BPF prog-id=102 op=LOAD Feb 12 20:36:20.081000 audit[2484]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0003d00b8 items=0 ppid=2435 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:20.081000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437616362313934353965623432653531666365663637623733613638 Feb 12 20:36:20.081000 audit: BPF prog-id=102 op=UNLOAD Feb 12 20:36:20.081000 audit: BPF prog-id=101 op=UNLOAD Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { perfmon } for pid=2484 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit[2484]: AVC avc: denied { bpf } for pid=2484 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:20.081000 audit: BPF prog-id=103 op=LOAD Feb 12 20:36:20.081000 audit[2484]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c0003d0148 items=0 ppid=2435 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:20.081000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3437616362313934353965623432653531666365663637623733613638 Feb 12 20:36:20.088406 systemd-networkd[1031]: calicd0672b9c7b: Gained IPv6LL Feb 12 20:36:20.105966 env[1146]: time="2024-02-12T20:36:20.105873049Z" level=info msg="StartContainer for \"47acb19459eb42e51fcef67b73a683825bd01a4fa0eb2c2f0a14e54dd9387f34\" returns successfully" Feb 12 20:36:20.107946 env[1146]: time="2024-02-12T20:36:20.107903374Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 12 20:36:20.768946 update_engine[1136]: I0212 20:36:20.768875 1136 update_attempter.cc:509] Updating boot flags... Feb 12 20:36:20.885989 kubelet[1533]: E0212 20:36:20.885893 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:21.456149 env[1146]: time="2024-02-12T20:36:21.456078859Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:21.459695 env[1146]: time="2024-02-12T20:36:21.459632663Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:d36ef67f7b24c4facd86d0bc06b0cd907431a822dee695eb06b86a905bff85d4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:21.462896 env[1146]: time="2024-02-12T20:36:21.462849281Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:21.465172 env[1146]: time="2024-02-12T20:36:21.465127701Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:21.466191 env[1146]: time="2024-02-12T20:36:21.466107004Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:d36ef67f7b24c4facd86d0bc06b0cd907431a822dee695eb06b86a905bff85d4\"" Feb 12 20:36:21.469714 env[1146]: time="2024-02-12T20:36:21.469666002Z" level=info msg="CreateContainer within sandbox \"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 12 20:36:21.492413 env[1146]: time="2024-02-12T20:36:21.492355908Z" level=info msg="CreateContainer within sandbox \"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"ec45128933d9109de55d909bc472d416c43e5fdce59719bb2e52c2c0c29ffb67\"" Feb 12 20:36:21.493737 env[1146]: time="2024-02-12T20:36:21.493672116Z" level=info msg="StartContainer for \"ec45128933d9109de55d909bc472d416c43e5fdce59719bb2e52c2c0c29ffb67\"" Feb 12 20:36:21.524863 systemd[1]: Started cri-containerd-ec45128933d9109de55d909bc472d416c43e5fdce59719bb2e52c2c0c29ffb67.scope. Feb 12 20:36:21.552000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.552000 audit[2531]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001cf6b0 a2=3c a3=7f5b0033eac8 items=0 ppid=2435 pid=2531 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:21.552000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563343531323839333364393130396465353564393039626334373264 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit: BPF prog-id=104 op=LOAD Feb 12 20:36:21.553000 audit[2531]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001cf9d8 a2=78 a3=c000356248 items=0 ppid=2435 pid=2531 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:21.553000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563343531323839333364393130396465353564393039626334373264 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit: BPF prog-id=105 op=LOAD Feb 12 20:36:21.553000 audit[2531]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c0001cf770 a2=78 a3=c000356298 items=0 ppid=2435 pid=2531 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:21.553000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563343531323839333364393130396465353564393039626334373264 Feb 12 20:36:21.553000 audit: BPF prog-id=105 op=UNLOAD Feb 12 20:36:21.553000 audit: BPF prog-id=104 op=UNLOAD Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { perfmon } for pid=2531 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit[2531]: AVC avc: denied { bpf } for pid=2531 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:21.553000 audit: BPF prog-id=106 op=LOAD Feb 12 20:36:21.553000 audit[2531]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001cfc30 a2=78 a3=c000356328 items=0 ppid=2435 pid=2531 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:21.553000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563343531323839333364393130396465353564393039626334373264 Feb 12 20:36:21.579930 env[1146]: time="2024-02-12T20:36:21.579859864Z" level=info msg="StartContainer for \"ec45128933d9109de55d909bc472d416c43e5fdce59719bb2e52c2c0c29ffb67\" returns successfully" Feb 12 20:36:21.886538 kubelet[1533]: E0212 20:36:21.886390 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:21.970247 kubelet[1533]: I0212 20:36:21.970200 1533 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 12 20:36:21.970247 kubelet[1533]: I0212 20:36:21.970251 1533 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 12 20:36:22.132206 kubelet[1533]: I0212 20:36:22.132149 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-wc6vg" podStartSLOduration=26.292950499 podCreationTimestamp="2024-02-12 20:35:53 +0000 UTC" firstStartedPulling="2024-02-12 20:36:18.627460157 +0000 UTC m=+27.501834922" lastFinishedPulling="2024-02-12 20:36:21.466607489 +0000 UTC m=+30.340982262" observedRunningTime="2024-02-12 20:36:22.131867902 +0000 UTC m=+31.006242687" watchObservedRunningTime="2024-02-12 20:36:22.132097839 +0000 UTC m=+31.006472619" Feb 12 20:36:22.887334 kubelet[1533]: E0212 20:36:22.887269 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:23.028594 env[1146]: time="2024-02-12T20:36:23.028532134Z" level=info msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.084 [INFO][2576] k8s.go 578: Cleaning up netns ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.084 [INFO][2576] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" iface="eth0" netns="/var/run/netns/cni-544b48c6-77ce-8c3c-1907-2d5d3fce4646" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.084 [INFO][2576] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" iface="eth0" netns="/var/run/netns/cni-544b48c6-77ce-8c3c-1907-2d5d3fce4646" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.085 [INFO][2576] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" iface="eth0" netns="/var/run/netns/cni-544b48c6-77ce-8c3c-1907-2d5d3fce4646" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.085 [INFO][2576] k8s.go 585: Releasing IP address(es) ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.085 [INFO][2576] utils.go 188: Calico CNI releasing IP address ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.109 [INFO][2583] ipam_plugin.go 415: Releasing address using handleID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.109 [INFO][2583] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.109 [INFO][2583] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.117 [WARNING][2583] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.117 [INFO][2583] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.119 [INFO][2583] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:23.122970 env[1146]: 2024-02-12 20:36:23.121 [INFO][2576] k8s.go 591: Teardown processing complete. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:23.124050 env[1146]: time="2024-02-12T20:36:23.123994884Z" level=info msg="TearDown network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" successfully" Feb 12 20:36:23.124223 env[1146]: time="2024-02-12T20:36:23.124194376Z" level=info msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" returns successfully" Feb 12 20:36:23.125217 env[1146]: time="2024-02-12T20:36:23.125149264Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-8spkl,Uid:a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4,Namespace:default,Attempt:1,}" Feb 12 20:36:23.126579 systemd[1]: run-netns-cni\x2d544b48c6\x2d77ce\x2d8c3c\x2d1907\x2d2d5d3fce4646.mount: Deactivated successfully. Feb 12 20:36:23.284712 systemd-networkd[1031]: cali35b9c9f73b4: Link UP Feb 12 20:36:23.291875 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:36:23.301100 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali35b9c9f73b4: link becomes ready Feb 12 20:36:23.300702 systemd-networkd[1031]: cali35b9c9f73b4: Gained carrier Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.195 [INFO][2589] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0 nginx-deployment-845c78c8b9- default a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4 978 0 2024-02-12 20:36:07 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.128.0.61 nginx-deployment-845c78c8b9-8spkl eth0 default [] [] [kns.default ksa.default.default] cali35b9c9f73b4 [] []}} ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.195 [INFO][2589] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.234 [INFO][2600] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" HandleID="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.250 [INFO][2600] ipam_plugin.go 268: Auto assigning IP ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" HandleID="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc00023d9d0), Attrs:map[string]string{"namespace":"default", "node":"10.128.0.61", "pod":"nginx-deployment-845c78c8b9-8spkl", "timestamp":"2024-02-12 20:36:23.23401406 +0000 UTC"}, Hostname:"10.128.0.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.250 [INFO][2600] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.250 [INFO][2600] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.250 [INFO][2600] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.128.0.61' Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.253 [INFO][2600] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.258 [INFO][2600] ipam.go 372: Looking up existing affinities for host host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.263 [INFO][2600] ipam.go 489: Trying affinity for 192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.266 [INFO][2600] ipam.go 155: Attempting to load block cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.268 [INFO][2600] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.269 [INFO][2600] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.128/26 handle="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.270 [INFO][2600] ipam.go 1682: Creating new handle: k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.274 [INFO][2600] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.128/26 handle="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.280 [INFO][2600] ipam.go 1216: Successfully claimed IPs: [192.168.81.130/26] block=192.168.81.128/26 handle="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.280 [INFO][2600] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.130/26] handle="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" host="10.128.0.61" Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.280 [INFO][2600] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:23.318148 env[1146]: 2024-02-12 20:36:23.280 [INFO][2600] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.130/26] IPv6=[] ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" HandleID="k8s-pod-network.330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.281 [INFO][2589] k8s.go 385: Populated endpoint ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4", ResourceVersion:"978", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-8spkl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali35b9c9f73b4", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.281 [INFO][2589] k8s.go 386: Calico CNI using IPs: [192.168.81.130/32] ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.282 [INFO][2589] dataplane_linux.go 68: Setting the host side veth name to cali35b9c9f73b4 ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.301 [INFO][2589] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.302 [INFO][2589] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4", ResourceVersion:"978", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e", Pod:"nginx-deployment-845c78c8b9-8spkl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali35b9c9f73b4", MAC:"52:cb:00:3f:fa:be", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:23.319406 env[1146]: 2024-02-12 20:36:23.308 [INFO][2589] k8s.go 491: Wrote updated endpoint to datastore ContainerID="330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e" Namespace="default" Pod="nginx-deployment-845c78c8b9-8spkl" WorkloadEndpoint="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:23.343000 audit[2623]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=2623 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:23.343000 audit[2623]: SYSCALL arch=c000003e syscall=46 success=yes exit=21064 a0=3 a1=7fffe3ca8950 a2=0 a3=7fffe3ca893c items=0 ppid=2152 pid=2623 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.343000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:23.355391 env[1146]: time="2024-02-12T20:36:23.353509857Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:36:23.355391 env[1146]: time="2024-02-12T20:36:23.353562854Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:36:23.355391 env[1146]: time="2024-02-12T20:36:23.353582064Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:36:23.355954 env[1146]: time="2024-02-12T20:36:23.355878998Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e pid=2631 runtime=io.containerd.runc.v2 Feb 12 20:36:23.387696 systemd[1]: run-containerd-runc-k8s.io-330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e-runc.sXDd1n.mount: Deactivated successfully. Feb 12 20:36:23.392509 systemd[1]: Started cri-containerd-330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e.scope. Feb 12 20:36:23.435588 kernel: kauditd_printk_skb: 139 callbacks suppressed Feb 12 20:36:23.435766 kernel: audit: type=1400 audit(1707770183.408:796): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.478472 kernel: audit: type=1400 audit(1707770183.408:797): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.478539 kernel: audit: type=1400 audit(1707770183.408:798): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.478585 kernel: audit: type=1400 audit(1707770183.408:799): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.521774 kernel: audit: type=1400 audit(1707770183.408:800): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.544130 kernel: audit: type=1400 audit(1707770183.408:801): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.544299 kernel: audit: type=1400 audit(1707770183.408:802): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.585753 kernel: audit: type=1400 audit(1707770183.408:803): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.585925 kernel: audit: type=1400 audit(1707770183.408:804): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.408000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.434000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.627240 kernel: audit: type=1400 audit(1707770183.434:805): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.434000 audit: BPF prog-id=107 op=LOAD Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2631 pid=2641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.435000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333306562353136363862613639363535366635396430323135343134 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=2631 pid=2641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.435000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333306562353136363862613639363535366635396430323135343134 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.435000 audit: BPF prog-id=108 op=LOAD Feb 12 20:36:23.435000 audit[2641]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c000210360 items=0 ppid=2631 pid=2641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.435000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333306562353136363862613639363535366635396430323135343134 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit: BPF prog-id=109 op=LOAD Feb 12 20:36:23.456000 audit[2641]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c0002103a8 items=0 ppid=2631 pid=2641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.456000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333306562353136363862613639363535366635396430323135343134 Feb 12 20:36:23.456000 audit: BPF prog-id=109 op=UNLOAD Feb 12 20:36:23.456000 audit: BPF prog-id=108 op=UNLOAD Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { perfmon } for pid=2641 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit[2641]: AVC avc: denied { bpf } for pid=2641 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:23.456000 audit: BPF prog-id=110 op=LOAD Feb 12 20:36:23.456000 audit[2641]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c0002107b8 items=0 ppid=2631 pid=2641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:23.456000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333306562353136363862613639363535366635396430323135343134 Feb 12 20:36:23.644408 env[1146]: time="2024-02-12T20:36:23.644344535Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-8spkl,Uid:a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4,Namespace:default,Attempt:1,} returns sandbox id \"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e\"" Feb 12 20:36:23.646623 env[1146]: time="2024-02-12T20:36:23.646569367Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:36:23.888534 kubelet[1533]: E0212 20:36:23.888399 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:24.569199 systemd-networkd[1031]: cali35b9c9f73b4: Gained IPv6LL Feb 12 20:36:24.889077 kubelet[1533]: E0212 20:36:24.888912 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:25.889297 kubelet[1533]: E0212 20:36:25.889224 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:26.522014 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3700570774.mount: Deactivated successfully. Feb 12 20:36:26.890183 kubelet[1533]: E0212 20:36:26.889731 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:27.616633 env[1146]: time="2024-02-12T20:36:27.616560632Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:27.620847 env[1146]: time="2024-02-12T20:36:27.620777989Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:27.625389 env[1146]: time="2024-02-12T20:36:27.625331865Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:27.628655 env[1146]: time="2024-02-12T20:36:27.628594356Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:27.629688 env[1146]: time="2024-02-12T20:36:27.629636222Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a\"" Feb 12 20:36:27.633356 env[1146]: time="2024-02-12T20:36:27.633300991Z" level=info msg="CreateContainer within sandbox \"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 12 20:36:27.653615 env[1146]: time="2024-02-12T20:36:27.653551798Z" level=info msg="CreateContainer within sandbox \"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"e30184749bd0534cfeda41dfe402d572150dd9ecaeddfab058ea0feb8781d58f\"" Feb 12 20:36:27.654558 env[1146]: time="2024-02-12T20:36:27.654443602Z" level=info msg="StartContainer for \"e30184749bd0534cfeda41dfe402d572150dd9ecaeddfab058ea0feb8781d58f\"" Feb 12 20:36:27.692370 systemd[1]: Started cri-containerd-e30184749bd0534cfeda41dfe402d572150dd9ecaeddfab058ea0feb8781d58f.scope. Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.708000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.709000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.709000 audit: BPF prog-id=111 op=LOAD Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2631 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:27.710000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533303138343734396264303533346366656461343164666534303264 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=8 items=0 ppid=2631 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:27.710000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533303138343734396264303533346366656461343164666534303264 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit: BPF prog-id=112 op=LOAD Feb 12 20:36:27.710000 audit[2679]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0003935c0 items=0 ppid=2631 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:27.710000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533303138343734396264303533346366656461343164666534303264 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit: BPF prog-id=113 op=LOAD Feb 12 20:36:27.710000 audit[2679]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c000393608 items=0 ppid=2631 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:27.710000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533303138343734396264303533346366656461343164666534303264 Feb 12 20:36:27.710000 audit: BPF prog-id=113 op=UNLOAD Feb 12 20:36:27.710000 audit: BPF prog-id=112 op=UNLOAD Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { perfmon } for pid=2679 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit[2679]: AVC avc: denied { bpf } for pid=2679 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:27.710000 audit: BPF prog-id=114 op=LOAD Feb 12 20:36:27.710000 audit[2679]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000393a18 items=0 ppid=2631 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:27.710000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533303138343734396264303533346366656461343164666534303264 Feb 12 20:36:27.732062 env[1146]: time="2024-02-12T20:36:27.731986370Z" level=info msg="StartContainer for \"e30184749bd0534cfeda41dfe402d572150dd9ecaeddfab058ea0feb8781d58f\" returns successfully" Feb 12 20:36:27.890829 kubelet[1533]: E0212 20:36:27.890675 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:28.146141 kubelet[1533]: I0212 20:36:28.145903 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-8spkl" podStartSLOduration=17.161738005 podCreationTimestamp="2024-02-12 20:36:07 +0000 UTC" firstStartedPulling="2024-02-12 20:36:23.645885394 +0000 UTC m=+32.520260158" lastFinishedPulling="2024-02-12 20:36:27.630009392 +0000 UTC m=+36.504384164" observedRunningTime="2024-02-12 20:36:28.145720217 +0000 UTC m=+37.020095007" watchObservedRunningTime="2024-02-12 20:36:28.145862011 +0000 UTC m=+37.020236791" Feb 12 20:36:28.645298 systemd[1]: run-containerd-runc-k8s.io-e30184749bd0534cfeda41dfe402d572150dd9ecaeddfab058ea0feb8781d58f-runc.RVEWdm.mount: Deactivated successfully. Feb 12 20:36:28.890848 kubelet[1533]: E0212 20:36:28.890785 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:29.891962 kubelet[1533]: E0212 20:36:29.891894 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:30.892090 kubelet[1533]: E0212 20:36:30.892018 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:31.846988 kubelet[1533]: E0212 20:36:31.846921 1533 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:31.892441 kubelet[1533]: E0212 20:36:31.892377 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:32.892615 kubelet[1533]: E0212 20:36:32.892540 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:32.913000 audit[2734]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=2734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:32.920431 kernel: kauditd_printk_skb: 104 callbacks suppressed Feb 12 20:36:32.920579 kernel: audit: type=1325 audit(1707770192.913:832): table=filter:71 family=2 entries=20 op=nft_register_rule pid=2734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:32.913000 audit[2734]: SYSCALL arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffc41369c00 a2=0 a3=7ffc41369bec items=0 ppid=1756 pid=2734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:32.986102 kernel: audit: type=1300 audit(1707770192.913:832): arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffc41369c00 a2=0 a3=7ffc41369bec items=0 ppid=1756 pid=2734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:32.986249 kernel: audit: type=1327 audit(1707770192.913:832): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:32.913000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:32.986353 kubelet[1533]: I0212 20:36:32.973057 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:36:32.981834 systemd[1]: Created slice kubepods-besteffort-poddfc63dc2_5041_454b_bfd1_5270c5cd82a0.slice. Feb 12 20:36:32.989000 audit[2734]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=2734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:32.989000 audit[2734]: SYSCALL arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7ffc41369c00 a2=0 a3=31030 items=0 ppid=1756 pid=2734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.039380 kernel: audit: type=1325 audit(1707770192.989:833): table=nat:72 family=2 entries=20 op=nft_register_rule pid=2734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:33.039537 kernel: audit: type=1300 audit(1707770192.989:833): arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7ffc41369c00 a2=0 a3=31030 items=0 ppid=1756 pid=2734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.039606 kernel: audit: type=1327 audit(1707770192.989:833): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:32.989000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:33.019000 audit[2739]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=2739 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:33.072329 kernel: audit: type=1325 audit(1707770193.019:834): table=filter:73 family=2 entries=32 op=nft_register_rule pid=2739 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:33.072503 kernel: audit: type=1300 audit(1707770193.019:834): arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffe70375100 a2=0 a3=7ffe703750ec items=0 ppid=1756 pid=2739 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.019000 audit[2739]: SYSCALL arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffe70375100 a2=0 a3=7ffe703750ec items=0 ppid=1756 pid=2739 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.088229 kubelet[1533]: I0212 20:36:33.088184 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/dfc63dc2-5041-454b-bfd1-5270c5cd82a0-data\") pod \"nfs-server-provisioner-0\" (UID: \"dfc63dc2-5041-454b-bfd1-5270c5cd82a0\") " pod="default/nfs-server-provisioner-0" Feb 12 20:36:33.088563 kubelet[1533]: I0212 20:36:33.088524 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-t5rlc\" (UniqueName: \"kubernetes.io/projected/dfc63dc2-5041-454b-bfd1-5270c5cd82a0-kube-api-access-t5rlc\") pod \"nfs-server-provisioner-0\" (UID: \"dfc63dc2-5041-454b-bfd1-5270c5cd82a0\") " pod="default/nfs-server-provisioner-0" Feb 12 20:36:33.105735 kernel: audit: type=1327 audit(1707770193.019:834): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:33.019000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:33.020000 audit[2739]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=2739 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:33.020000 audit[2739]: SYSCALL arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7ffe70375100 a2=0 a3=31030 items=0 ppid=1756 pid=2739 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.020000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:33.140004 kernel: audit: type=1325 audit(1707770193.020:835): table=nat:74 family=2 entries=20 op=nft_register_rule pid=2739 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:33.287906 env[1146]: time="2024-02-12T20:36:33.287847432Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:dfc63dc2-5041-454b-bfd1-5270c5cd82a0,Namespace:default,Attempt:0,}" Feb 12 20:36:33.439264 systemd-networkd[1031]: cali60e51b789ff: Link UP Feb 12 20:36:33.454753 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:36:33.454935 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 12 20:36:33.456104 systemd-networkd[1031]: cali60e51b789ff: Gained carrier Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.358 [INFO][2741] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.128.0.61-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default dfc63dc2-5041-454b-bfd1-5270c5cd82a0 1027 0 2024-02-12 20:36:32 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 10.128.0.61 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.358 [INFO][2741] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.389 [INFO][2754] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" HandleID="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Workload="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.403 [INFO][2754] ipam_plugin.go 268: Auto assigning IP ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" HandleID="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Workload="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0000c2a60), Attrs:map[string]string{"namespace":"default", "node":"10.128.0.61", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-12 20:36:33.38966015 +0000 UTC"}, Hostname:"10.128.0.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.404 [INFO][2754] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.404 [INFO][2754] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.404 [INFO][2754] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.128.0.61' Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.406 [INFO][2754] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.411 [INFO][2754] ipam.go 372: Looking up existing affinities for host host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.416 [INFO][2754] ipam.go 489: Trying affinity for 192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.419 [INFO][2754] ipam.go 155: Attempting to load block cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.421 [INFO][2754] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.421 [INFO][2754] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.128/26 handle="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.423 [INFO][2754] ipam.go 1682: Creating new handle: k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3 Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.428 [INFO][2754] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.128/26 handle="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.434 [INFO][2754] ipam.go 1216: Successfully claimed IPs: [192.168.81.131/26] block=192.168.81.128/26 handle="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.434 [INFO][2754] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.131/26] handle="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" host="10.128.0.61" Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.434 [INFO][2754] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:33.471089 env[1146]: 2024-02-12 20:36:33.434 [INFO][2754] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.131/26] IPv6=[] ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" HandleID="k8s-pod-network.395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Workload="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.472342 env[1146]: 2024-02-12 20:36:33.435 [INFO][2741] k8s.go 385: Populated endpoint ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"dfc63dc2-5041-454b-bfd1-5270c5cd82a0", ResourceVersion:"1027", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.81.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:33.472342 env[1146]: 2024-02-12 20:36:33.436 [INFO][2741] k8s.go 386: Calico CNI using IPs: [192.168.81.131/32] ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.472342 env[1146]: 2024-02-12 20:36:33.436 [INFO][2741] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.472342 env[1146]: 2024-02-12 20:36:33.455 [INFO][2741] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.472725 env[1146]: 2024-02-12 20:36:33.457 [INFO][2741] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"dfc63dc2-5041-454b-bfd1-5270c5cd82a0", ResourceVersion:"1027", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.81.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"f2:a6:cc:e2:4c:40", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:33.472725 env[1146]: 2024-02-12 20:36:33.467 [INFO][2741] k8s.go 491: Wrote updated endpoint to datastore ContainerID="395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.128.0.61-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:36:33.493032 env[1146]: time="2024-02-12T20:36:33.492341058Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:36:33.493032 env[1146]: time="2024-02-12T20:36:33.492773783Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:36:33.493032 env[1146]: time="2024-02-12T20:36:33.492796558Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:36:33.493546 env[1146]: time="2024-02-12T20:36:33.493449186Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3 pid=2779 runtime=io.containerd.runc.v2 Feb 12 20:36:33.525463 systemd[1]: Started cri-containerd-395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3.scope. Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.557000 audit: BPF prog-id=115 op=LOAD Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000147c48 a2=10 a3=1c items=0 ppid=2779 pid=2789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.558000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339356635613434383735633139373435616464313934613435326266 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001476b0 a2=3c a3=c items=0 ppid=2779 pid=2789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.558000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339356635613434383735633139373435616464313934613435326266 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit: BPF prog-id=116 op=LOAD Feb 12 20:36:33.558000 audit[2789]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001479d8 a2=78 a3=c0002fc570 items=0 ppid=2779 pid=2789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.558000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339356635613434383735633139373435616464313934613435326266 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit: BPF prog-id=117 op=LOAD Feb 12 20:36:33.558000 audit[2789]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000147770 a2=78 a3=c0002fc5b8 items=0 ppid=2779 pid=2789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.558000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339356635613434383735633139373435616464313934613435326266 Feb 12 20:36:33.558000 audit: BPF prog-id=117 op=UNLOAD Feb 12 20:36:33.558000 audit: BPF prog-id=116 op=UNLOAD Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { perfmon } for pid=2789 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit[2789]: AVC avc: denied { bpf } for pid=2789 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:33.558000 audit: BPF prog-id=118 op=LOAD Feb 12 20:36:33.558000 audit[2789]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000147c30 a2=78 a3=c0002fc9c8 items=0 ppid=2779 pid=2789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.558000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339356635613434383735633139373435616464313934613435326266 Feb 12 20:36:33.583000 audit[2809]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=2809 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:33.583000 audit[2809]: SYSCALL arch=c000003e syscall=46 success=yes exit=19500 a0=3 a1=7ffce9604070 a2=0 a3=7ffce960405c items=0 ppid=2152 pid=2809 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:33.583000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:33.607293 env[1146]: time="2024-02-12T20:36:33.607123821Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:dfc63dc2-5041-454b-bfd1-5270c5cd82a0,Namespace:default,Attempt:0,} returns sandbox id \"395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3\"" Feb 12 20:36:33.609322 env[1146]: time="2024-02-12T20:36:33.609248081Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 12 20:36:33.892869 kubelet[1533]: E0212 20:36:33.892692 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:34.205891 systemd[1]: run-containerd-runc-k8s.io-395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3-runc.qag7wW.mount: Deactivated successfully. Feb 12 20:36:34.893634 kubelet[1533]: E0212 20:36:34.893545 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:35.320466 systemd-networkd[1031]: cali60e51b789ff: Gained IPv6LL Feb 12 20:36:35.894205 kubelet[1533]: E0212 20:36:35.894153 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:36.258901 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1699258446.mount: Deactivated successfully. Feb 12 20:36:36.895370 kubelet[1533]: E0212 20:36:36.895279 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:37.895500 kubelet[1533]: E0212 20:36:37.895451 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:38.786070 env[1146]: time="2024-02-12T20:36:38.785997969Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:38.788937 env[1146]: time="2024-02-12T20:36:38.788890532Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:38.791652 env[1146]: time="2024-02-12T20:36:38.791605529Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:38.794078 env[1146]: time="2024-02-12T20:36:38.794035646Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:38.795110 env[1146]: time="2024-02-12T20:36:38.795054906Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4\"" Feb 12 20:36:38.798151 env[1146]: time="2024-02-12T20:36:38.798110548Z" level=info msg="CreateContainer within sandbox \"395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 12 20:36:38.814041 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1749711994.mount: Deactivated successfully. Feb 12 20:36:38.824941 env[1146]: time="2024-02-12T20:36:38.824877610Z" level=info msg="CreateContainer within sandbox \"395f5a44875c19745add194a452bf213801ac1ba792c14d2021394edf68325b3\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"e3c14932bb05e6b5e1821404b496f45f0fa250eeca2f44b15c663b56cb841f05\"" Feb 12 20:36:38.825771 env[1146]: time="2024-02-12T20:36:38.825705125Z" level=info msg="StartContainer for \"e3c14932bb05e6b5e1821404b496f45f0fa250eeca2f44b15c663b56cb841f05\"" Feb 12 20:36:38.850441 systemd[1]: Started cri-containerd-e3c14932bb05e6b5e1821404b496f45f0fa250eeca2f44b15c663b56cb841f05.scope. Feb 12 20:36:38.879169 kernel: kauditd_printk_skb: 62 callbacks suppressed Feb 12 20:36:38.879329 kernel: audit: type=1400 audit(1707770198.872:855): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.900299 kubelet[1533]: E0212 20:36:38.900002 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:38.920722 kernel: audit: type=1400 audit(1707770198.872:856): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.920904 kernel: audit: type=1400 audit(1707770198.872:857): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.986324 kernel: audit: type=1400 audit(1707770198.872:858): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.987021 kernel: audit: type=1400 audit(1707770198.872:859): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.987122 kernel: audit: type=1400 audit(1707770198.872:860): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:39.007616 kernel: audit: type=1400 audit(1707770198.872:861): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:39.049123 kernel: audit: type=1400 audit(1707770198.872:862): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:39.049300 kernel: audit: type=1400 audit(1707770198.872:863): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:39.090630 kernel: audit: type=1400 audit(1707770198.919:864): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit: BPF prog-id=119 op=LOAD Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2779 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:38.919000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533633134393332626230356536623565313832313430346234393666 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=8 items=0 ppid=2779 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:39.091558 env[1146]: time="2024-02-12T20:36:39.091427055Z" level=info msg="StartContainer for \"e3c14932bb05e6b5e1821404b496f45f0fa250eeca2f44b15c663b56cb841f05\" returns successfully" Feb 12 20:36:38.919000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533633134393332626230356536623565313832313430346234393666 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.919000 audit: BPF prog-id=120 op=LOAD Feb 12 20:36:38.919000 audit[2835]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0001dac10 items=0 ppid=2779 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:38.919000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533633134393332626230356536623565313832313430346234393666 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.940000 audit: BPF prog-id=121 op=LOAD Feb 12 20:36:38.940000 audit[2835]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c000220e28 items=0 ppid=2779 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:38.940000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533633134393332626230356536623565313832313430346234393666 Feb 12 20:36:38.941000 audit: BPF prog-id=121 op=UNLOAD Feb 12 20:36:38.941000 audit: BPF prog-id=120 op=UNLOAD Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:38.941000 audit: BPF prog-id=122 op=LOAD Feb 12 20:36:38.941000 audit[2835]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000221238 items=0 ppid=2779 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:38.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6533633134393332626230356536623565313832313430346234393666 Feb 12 20:36:39.130000 audit[2862]: AVC avc: denied { search } for pid=2862 comm="rpcbind" name="crypto" dev="proc" ino=22877 scontext=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:36:39.130000 audit[2862]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7fa10475b0c0 a2=0 a3=0 items=0 ppid=2845 pid=2862 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 key=(null) Feb 12 20:36:39.130000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 12 20:36:39.182000 audit[2867]: AVC avc: denied { search } for pid=2867 comm="dbus-daemon" name="crypto" dev="proc" ino=22877 scontext=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:36:39.182000 audit[2867]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7faa173e20c0 a2=0 a3=0 items=0 ppid=2845 pid=2867 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 key=(null) Feb 12 20:36:39.182000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:36:39.188000 audit[2868]: AVC avc: denied { watch } for pid=2868 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=20111 scontext=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c665,c911 tclass=dir permissive=0 Feb 12 20:36:39.188000 audit[2868]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=6 a1=56552120e7e0 a2=2c8 a3=7ffd65c7ceec items=0 ppid=2845 pid=2868 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 key=(null) Feb 12 20:36:39.188000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:36:39.193000 audit[2869]: AVC avc: denied { read } for pid=2869 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=22392 scontext=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 12 20:36:39.193000 audit[2869]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7f2ad268e320 a1=80000 a2=d a3=7ffc5e3c3520 items=0 ppid=2845 pid=2869 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 key=(null) Feb 12 20:36:39.193000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:36:39.196057 kubelet[1533]: I0212 20:36:39.196020 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.009369924 podCreationTimestamp="2024-02-12 20:36:32 +0000 UTC" firstStartedPulling="2024-02-12 20:36:33.608867486 +0000 UTC m=+42.483242258" lastFinishedPulling="2024-02-12 20:36:38.795465142 +0000 UTC m=+47.669839918" observedRunningTime="2024-02-12 20:36:39.195173219 +0000 UTC m=+48.069548092" watchObservedRunningTime="2024-02-12 20:36:39.195967584 +0000 UTC m=+48.070342365" Feb 12 20:36:39.195000 audit[2869]: AVC avc: denied { search } for pid=2869 comm="ganesha.nfsd" name="crypto" dev="proc" ino=22877 scontext=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:36:39.195000 audit[2869]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f2ad1be20c0 a2=0 a3=0 items=0 ppid=2845 pid=2869 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c665,c911 key=(null) Feb 12 20:36:39.195000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:36:39.232000 audit[2885]: NETFILTER_CFG table=filter:76 family=2 entries=20 op=nft_register_rule pid=2885 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:39.232000 audit[2885]: SYSCALL arch=c000003e syscall=46 success=yes exit=2844 a0=3 a1=7ffcd5f7cea0 a2=0 a3=7ffcd5f7ce8c items=0 ppid=1756 pid=2885 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:39.232000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:39.236000 audit[2885]: NETFILTER_CFG table=nat:77 family=2 entries=104 op=nft_register_chain pid=2885 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:39.236000 audit[2885]: SYSCALL arch=c000003e syscall=46 success=yes exit=47436 a0=3 a1=7ffcd5f7cea0 a2=0 a3=7ffcd5f7ce8c items=0 ppid=1756 pid=2885 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:39.236000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:39.900909 kubelet[1533]: E0212 20:36:39.900844 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:40.902050 kubelet[1533]: E0212 20:36:40.901970 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:41.902613 kubelet[1533]: E0212 20:36:41.902546 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:42.903436 kubelet[1533]: E0212 20:36:42.903330 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:43.904252 kubelet[1533]: E0212 20:36:43.904190 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:44.905287 kubelet[1533]: E0212 20:36:44.905231 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:45.906102 kubelet[1533]: E0212 20:36:45.906038 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:46.176710 systemd[1]: run-containerd-runc-k8s.io-da3de50fa5600ee3605856cbe38123e0029af787bf700f339ba44e66969aac1c-runc.xYDYPR.mount: Deactivated successfully. Feb 12 20:36:46.907168 kubelet[1533]: E0212 20:36:46.907104 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:47.907298 kubelet[1533]: E0212 20:36:47.907227 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:48.582000 audit[2922]: NETFILTER_CFG table=filter:78 family=2 entries=9 op=nft_register_rule pid=2922 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.588277 kubelet[1533]: I0212 20:36:48.587095 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:36:48.590277 kernel: kauditd_printk_skb: 68 callbacks suppressed Feb 12 20:36:48.590415 kernel: audit: type=1325 audit(1707770208.582:880): table=filter:78 family=2 entries=9 op=nft_register_rule pid=2922 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.595206 systemd[1]: Created slice kubepods-besteffort-podb6c09b01_6df4_488b_bdce_7b40008ae5fd.slice. Feb 12 20:36:48.582000 audit[2922]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7fffa2458d10 a2=0 a3=7fffa2458cfc items=0 ppid=1756 pid=2922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.638843 kernel: audit: type=1300 audit(1707770208.582:880): arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7fffa2458d10 a2=0 a3=7fffa2458cfc items=0 ppid=1756 pid=2922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.639438 kernel: audit: type=1327 audit(1707770208.582:880): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.582000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.582000 audit[2922]: NETFILTER_CFG table=nat:79 family=2 entries=44 op=nft_register_rule pid=2922 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.671571 kernel: audit: type=1325 audit(1707770208.582:881): table=nat:79 family=2 entries=44 op=nft_register_rule pid=2922 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.671721 kernel: audit: type=1300 audit(1707770208.582:881): arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7fffa2458d10 a2=0 a3=7fffa2458cfc items=0 ppid=1756 pid=2922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.582000 audit[2922]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7fffa2458d10 a2=0 a3=7fffa2458cfc items=0 ppid=1756 pid=2922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.697341 kubelet[1533]: I0212 20:36:48.697291 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/b6c09b01-6df4-488b-bdce-7b40008ae5fd-calico-apiserver-certs\") pod \"calico-apiserver-5c9bdf4cbf-kj9k7\" (UID: \"b6c09b01-6df4-488b-bdce-7b40008ae5fd\") " pod="calico-apiserver/calico-apiserver-5c9bdf4cbf-kj9k7" Feb 12 20:36:48.697733 kubelet[1533]: I0212 20:36:48.697714 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-fnff6\" (UniqueName: \"kubernetes.io/projected/b6c09b01-6df4-488b-bdce-7b40008ae5fd-kube-api-access-fnff6\") pod \"calico-apiserver-5c9bdf4cbf-kj9k7\" (UID: \"b6c09b01-6df4-488b-bdce-7b40008ae5fd\") " pod="calico-apiserver/calico-apiserver-5c9bdf4cbf-kj9k7" Feb 12 20:36:48.582000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.722050 kernel: audit: type=1327 audit(1707770208.582:881): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.722000 audit[2924]: NETFILTER_CFG table=filter:80 family=2 entries=10 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.722000 audit[2924]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffecca934c0 a2=0 a3=7ffecca934ac items=0 ppid=1756 pid=2924 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.772873 kernel: audit: type=1325 audit(1707770208.722:882): table=filter:80 family=2 entries=10 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.773038 kernel: audit: type=1300 audit(1707770208.722:882): arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffecca934c0 a2=0 a3=7ffecca934ac items=0 ppid=1756 pid=2924 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.773083 kernel: audit: type=1327 audit(1707770208.722:882): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.722000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.724000 audit[2924]: NETFILTER_CFG table=nat:81 family=2 entries=44 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.724000 audit[2924]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffecca934c0 a2=0 a3=7ffecca934ac items=0 ppid=1756 pid=2924 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:48.724000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:48.809630 kubelet[1533]: E0212 20:36:48.809502 1533 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Feb 12 20:36:48.809630 kubelet[1533]: E0212 20:36:48.809609 1533 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/b6c09b01-6df4-488b-bdce-7b40008ae5fd-calico-apiserver-certs podName:b6c09b01-6df4-488b-bdce-7b40008ae5fd nodeName:}" failed. No retries permitted until 2024-02-12 20:36:49.309577227 +0000 UTC m=+58.183952005 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/b6c09b01-6df4-488b-bdce-7b40008ae5fd-calico-apiserver-certs") pod "calico-apiserver-5c9bdf4cbf-kj9k7" (UID: "b6c09b01-6df4-488b-bdce-7b40008ae5fd") : secret "calico-apiserver-certs" not found Feb 12 20:36:48.809895 kernel: audit: type=1325 audit(1707770208.724:883): table=nat:81 family=2 entries=44 op=nft_register_rule pid=2924 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:48.908126 kubelet[1533]: E0212 20:36:48.908065 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:49.308069 kubelet[1533]: I0212 20:36:49.307922 1533 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:36:49.313438 kubelet[1533]: E0212 20:36:49.313394 1533 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Feb 12 20:36:49.313609 kubelet[1533]: E0212 20:36:49.313467 1533 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/b6c09b01-6df4-488b-bdce-7b40008ae5fd-calico-apiserver-certs podName:b6c09b01-6df4-488b-bdce-7b40008ae5fd nodeName:}" failed. No retries permitted until 2024-02-12 20:36:50.313447732 +0000 UTC m=+59.187822497 (durationBeforeRetry 1s). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/b6c09b01-6df4-488b-bdce-7b40008ae5fd-calico-apiserver-certs") pod "calico-apiserver-5c9bdf4cbf-kj9k7" (UID: "b6c09b01-6df4-488b-bdce-7b40008ae5fd") : secret "calico-apiserver-certs" not found Feb 12 20:36:49.316427 systemd[1]: Created slice kubepods-besteffort-podc7956f31_c3f4_4054_bf87_96b56837f948.slice. Feb 12 20:36:49.413582 kubelet[1533]: I0212 20:36:49.413536 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-ebb669dd-6b34-4c05-b3cc-df3eefabf6fe\" (UniqueName: \"kubernetes.io/nfs/c7956f31-c3f4-4054-bf87-96b56837f948-pvc-ebb669dd-6b34-4c05-b3cc-df3eefabf6fe\") pod \"test-pod-1\" (UID: \"c7956f31-c3f4-4054-bf87-96b56837f948\") " pod="default/test-pod-1" Feb 12 20:36:49.413984 kubelet[1533]: I0212 20:36:49.413954 1533 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-x896w\" (UniqueName: \"kubernetes.io/projected/c7956f31-c3f4-4054-bf87-96b56837f948-kube-api-access-x896w\") pod \"test-pod-1\" (UID: \"c7956f31-c3f4-4054-bf87-96b56837f948\") " pod="default/test-pod-1" Feb 12 20:36:49.540000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.547931 kernel: Failed to create system directory netfs Feb 12 20:36:49.547996 kernel: Failed to create system directory netfs Feb 12 20:36:49.540000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.540000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.557882 kernel: Failed to create system directory netfs Feb 12 20:36:49.557986 kernel: Failed to create system directory netfs Feb 12 20:36:49.540000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.540000 audit[2929]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55561ba715e0 a1=153bc a2=55561a6fa2b0 a3=5 items=0 ppid=1219 pid=2929 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:49.540000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.585654 kernel: Failed to create system directory fscache Feb 12 20:36:49.585760 kernel: Failed to create system directory fscache Feb 12 20:36:49.585800 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.596121 kernel: Failed to create system directory fscache Feb 12 20:36:49.596233 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.606819 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.617651 kernel: Failed to create system directory fscache Feb 12 20:36:49.617767 kernel: Failed to create system directory fscache Feb 12 20:36:49.617803 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.628168 kernel: Failed to create system directory fscache Feb 12 20:36:49.628305 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.639066 kernel: Failed to create system directory fscache Feb 12 20:36:49.639215 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.571000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.649589 kernel: Failed to create system directory fscache Feb 12 20:36:49.571000 audit[2929]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55561bc869c0 a1=4c0fc a2=55561a6fa2b0 a3=5 items=0 ppid=1219 pid=2929 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:49.571000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:36:49.654854 kernel: FS-Cache: Loaded Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.699085 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.699225 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.699263 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.709583 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.709726 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.719841 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.719939 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.730139 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.730261 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.740398 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.740491 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.750686 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.750795 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.766111 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.766224 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.766264 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.776549 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.787454 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.787528 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.787579 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.798183 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.798272 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.808605 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.808691 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.818845 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.818957 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.829268 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.829352 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.840858 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.840942 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.851078 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.851179 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.856438 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.867536 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.867643 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.877775 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.877887 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.888069 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.888160 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.898460 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.898573 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.909039 kubelet[1533]: E0212 20:36:49.908969 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:49.909533 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.909580 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.919699 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.919796 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.935219 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.935311 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.935349 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.945437 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.945519 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.955651 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.955744 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.965863 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.965955 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.976082 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.976172 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.986330 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.986435 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.996628 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.996699 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.006893 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.006983 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.017087 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.017160 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.030061 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.030182 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.037436 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.037539 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.047716 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.047870 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.052836 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.063202 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.063276 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.073839 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.073917 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.084108 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.084189 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.094430 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.094499 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.104849 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.104958 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.115183 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.115273 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.125502 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.125574 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.135838 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.135945 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.146269 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.146420 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.156558 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.156642 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.166794 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.166899 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.177263 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.177354 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.187840 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.187950 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.198119 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.198198 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.208358 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.208464 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.218831 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.218918 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.229838 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.229940 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.240048 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.240128 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.250341 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.250440 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.260640 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.260734 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.270874 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.270970 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.275922 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.281094 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.291294 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.291383 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.301556 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.301649 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.311744 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.311969 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.316923 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.331034 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.342729 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.342839 kernel: Failed to create system directory sunrpc Feb 12 20:36:50.342877 kernel: Failed to create system directory sunrpc Feb 12 20:36:49.677000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.366931 kernel: RPC: Registered named UNIX socket transport module. Feb 12 20:36:50.367085 kernel: RPC: Registered udp transport module. Feb 12 20:36:50.367127 kernel: RPC: Registered tcp transport module. Feb 12 20:36:50.371783 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 12 20:36:49.677000 audit[2929]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55561bcd2ad0 a1=1588c4 a2=55561a6fa2b0 a3=5 items=6 ppid=1219 pid=2929 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:49.677000 audit: CWD cwd="/" Feb 12 20:36:49.677000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PATH item=1 name=(null) inode=23286 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PATH item=2 name=(null) inode=23286 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PATH item=3 name=(null) inode=23287 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PATH item=4 name=(null) inode=23286 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PATH item=5 name=(null) inode=23288 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:36:49.677000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:36:50.405145 env[1146]: time="2024-02-12T20:36:50.405088255Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-5c9bdf4cbf-kj9k7,Uid:b6c09b01-6df4-488b-bdce-7b40008ae5fd,Namespace:calico-apiserver,Attempt:0,}" Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.427961 kernel: Failed to create system directory nfs Feb 12 20:36:50.428158 kernel: Failed to create system directory nfs Feb 12 20:36:50.428220 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.437844 kernel: Failed to create system directory nfs Feb 12 20:36:50.437946 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.447781 kernel: Failed to create system directory nfs Feb 12 20:36:50.447933 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.457547 kernel: Failed to create system directory nfs Feb 12 20:36:50.468074 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.476869 kernel: Failed to create system directory nfs Feb 12 20:36:50.476961 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.481868 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.491940 kernel: Failed to create system directory nfs Feb 12 20:36:50.493831 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.508996 kernel: Failed to create system directory nfs Feb 12 20:36:50.509137 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.514723 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.519846 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.530102 kernel: Failed to create system directory nfs Feb 12 20:36:50.530219 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.535273 kernel: Failed to create system directory nfs Feb 12 20:36:50.535610 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.546043 kernel: Failed to create system directory nfs Feb 12 20:36:50.546168 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.556132 kernel: Failed to create system directory nfs Feb 12 20:36:50.556256 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.566083 kernel: Failed to create system directory nfs Feb 12 20:36:50.566282 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.576134 kernel: Failed to create system directory nfs Feb 12 20:36:50.576370 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.586018 kernel: Failed to create system directory nfs Feb 12 20:36:50.586210 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.595845 kernel: Failed to create system directory nfs Feb 12 20:36:50.596054 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.605847 kernel: Failed to create system directory nfs Feb 12 20:36:50.606103 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.615870 kernel: Failed to create system directory nfs Feb 12 20:36:50.615956 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.621929 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.630932 kernel: Failed to create system directory nfs Feb 12 20:36:50.631121 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.641010 kernel: Failed to create system directory nfs Feb 12 20:36:50.641110 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.650852 kernel: Failed to create system directory nfs Feb 12 20:36:50.650986 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.660799 kernel: Failed to create system directory nfs Feb 12 20:36:50.660925 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.665736 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.675792 kernel: Failed to create system directory nfs Feb 12 20:36:50.675373 systemd-networkd[1031]: cali75917be3040: Link UP Feb 12 20:36:50.683869 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:36:50.684215 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.696116 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali75917be3040: link becomes ready Feb 12 20:36:50.696201 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.697931 systemd-networkd[1031]: cali75917be3040: Gained carrier Feb 12 20:36:50.700859 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.713246 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.550 [INFO][2934] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0 calico-apiserver-5c9bdf4cbf- calico-apiserver b6c09b01-6df4-488b-bdce-7b40008ae5fd 1126 0 2024-02-12 20:36:48 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:5c9bdf4cbf projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 10.128.0.61 calico-apiserver-5c9bdf4cbf-kj9k7 eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali75917be3040 [] []}} ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.550 [INFO][2934] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.611 [INFO][2946] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" HandleID="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Workload="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.630 [INFO][2946] ipam_plugin.go 268: Auto assigning IP ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" HandleID="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Workload="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc00027cb30), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"10.128.0.61", "pod":"calico-apiserver-5c9bdf4cbf-kj9k7", "timestamp":"2024-02-12 20:36:50.611663007 +0000 UTC"}, Hostname:"10.128.0.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.630 [INFO][2946] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.630 [INFO][2946] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.630 [INFO][2946] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.128.0.61' Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.634 [INFO][2946] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.642 [INFO][2946] ipam.go 372: Looking up existing affinities for host host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.649 [INFO][2946] ipam.go 489: Trying affinity for 192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.651 [INFO][2946] ipam.go 155: Attempting to load block cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.654 [INFO][2946] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.654 [INFO][2946] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.128/26 handle="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.656 [INFO][2946] ipam.go 1682: Creating new handle: k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.662 [INFO][2946] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.128/26 handle="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.669 [INFO][2946] ipam.go 1216: Successfully claimed IPs: [192.168.81.132/26] block=192.168.81.128/26 handle="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.669 [INFO][2946] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.132/26] handle="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" host="10.128.0.61" Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.669 [INFO][2946] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:50.720721 env[1146]: 2024-02-12 20:36:50.669 [INFO][2946] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.132/26] IPv6=[] ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" HandleID="k8s-pod-network.a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Workload="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.671 [INFO][2934] k8s.go 385: Populated endpoint ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0", GenerateName:"calico-apiserver-5c9bdf4cbf-", Namespace:"calico-apiserver", SelfLink:"", UID:"b6c09b01-6df4-488b-bdce-7b40008ae5fd", ResourceVersion:"1126", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"5c9bdf4cbf", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"", Pod:"calico-apiserver-5c9bdf4cbf-kj9k7", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.81.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali75917be3040", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.672 [INFO][2934] k8s.go 386: Calico CNI using IPs: [192.168.81.132/32] ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.672 [INFO][2934] dataplane_linux.go 68: Setting the host side veth name to cali75917be3040 ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.676 [INFO][2934] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.696 [INFO][2934] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0", GenerateName:"calico-apiserver-5c9bdf4cbf-", Namespace:"calico-apiserver", SelfLink:"", UID:"b6c09b01-6df4-488b-bdce-7b40008ae5fd", ResourceVersion:"1126", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"5c9bdf4cbf", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f", Pod:"calico-apiserver-5c9bdf4cbf-kj9k7", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.81.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali75917be3040", MAC:"ba:30:9d:df:3c:99", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:50.721891 env[1146]: 2024-02-12 20:36:50.715 [INFO][2934] k8s.go 491: Wrote updated endpoint to datastore ContainerID="a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f" Namespace="calico-apiserver" Pod="calico-apiserver-5c9bdf4cbf-kj9k7" WorkloadEndpoint="10.128.0.61-k8s-calico--apiserver--5c9bdf4cbf--kj9k7-eth0" Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.730672 kernel: Failed to create system directory nfs Feb 12 20:36:50.730795 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.739846 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.747838 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.762355 kernel: Failed to create system directory nfs Feb 12 20:36:50.762471 kernel: Failed to create system directory nfs Feb 12 20:36:50.409000 audit[2929]: AVC avc: denied { confidentiality } for pid=2929 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.771000 audit[2970]: NETFILTER_CFG table=filter:82 family=2 entries=55 op=nft_register_chain pid=2970 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:50.771000 audit[2970]: SYSCALL arch=c000003e syscall=46 success=yes exit=28104 a0=3 a1=7fff631e1af0 a2=0 a3=7fff631e1adc items=0 ppid=2152 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.771000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:50.779049 env[1146]: time="2024-02-12T20:36:50.778937088Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:36:50.779297 env[1146]: time="2024-02-12T20:36:50.779250427Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:36:50.779449 env[1146]: time="2024-02-12T20:36:50.779418340Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:36:50.779932 env[1146]: time="2024-02-12T20:36:50.779879594Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f pid=2978 runtime=io.containerd.runc.v2 Feb 12 20:36:50.817989 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 12 20:36:50.409000 audit[2929]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55561be75680 a1=e29dc a2=55561a6fa2b0 a3=5 items=0 ppid=1219 pid=2929 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.409000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:36:50.822711 systemd[1]: Started cri-containerd-a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f.scope. Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.844000 audit: BPF prog-id=123 op=LOAD Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2978 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.849000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133343736383135656532666331623661353638633839356139313632 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=2978 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.849000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133343736383135656532666331623661353638633839356139313632 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit: BPF prog-id=124 op=LOAD Feb 12 20:36:50.849000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c00030f540 items=0 ppid=2978 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.849000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133343736383135656532666331623661353638633839356139313632 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit: BPF prog-id=125 op=LOAD Feb 12 20:36:50.849000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c00030f588 items=0 ppid=2978 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.849000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133343736383135656532666331623661353638633839356139313632 Feb 12 20:36:50.849000 audit: BPF prog-id=125 op=UNLOAD Feb 12 20:36:50.849000 audit: BPF prog-id=124 op=UNLOAD Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:50.849000 audit: BPF prog-id=126 op=LOAD Feb 12 20:36:50.849000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c00030f998 items=0 ppid=2978 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.849000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133343736383135656532666331623661353638633839356139313632 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.904904 env[1146]: time="2024-02-12T20:36:50.901787768Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-5c9bdf4cbf-kj9k7,Uid:b6c09b01-6df4-488b-bdce-7b40008ae5fd,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f\"" Feb 12 20:36:50.904904 env[1146]: time="2024-02-12T20:36:50.904138536Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.905945 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.906034 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.909400 kubelet[1533]: E0212 20:36:50.909333 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.915539 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.920842 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.926220 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.931425 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.931934 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.941821 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.941902 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.946823 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.952353 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.966278 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.966398 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.974471 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.974570 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.985069 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.985141 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.996160 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.996227 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.001913 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.007893 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.017028 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.017117 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.026859 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.032152 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.032254 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.037914 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.046864 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.046987 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.052144 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.061719 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.061828 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.066911 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.076748 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.076973 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.086618 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.086702 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.096516 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.096624 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.107008 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.107106 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.111853 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.116897 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.121942 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.131800 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.131930 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.141929 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.143168 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.151999 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.152115 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.162012 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.162117 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.172187 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.172306 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.182260 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.182359 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.187402 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.197595 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.197686 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.208192 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.208284 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.218120 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.218212 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.228314 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.228400 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.233651 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.243624 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.243709 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.253683 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.253801 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.258922 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.268779 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.268941 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.278615 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.278687 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.288547 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.288662 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.298599 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.298791 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.308649 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.308769 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.318517 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.318638 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.328684 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.328788 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.338693 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.338803 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.348513 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.348652 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.358607 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.358744 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.363937 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.368916 kernel: Failed to create system directory nfs4 Feb 12 20:36:50.879000 audit[3001]: AVC avc: denied { confidentiality } for pid=3001 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.378574 kernel: Failed to create system directory nfs4 Feb 12 20:36:51.573710 kernel: NFS: Registering the id_resolver key type Feb 12 20:36:51.573923 kernel: Key type id_resolver registered Feb 12 20:36:51.573968 kernel: Key type id_legacy registered Feb 12 20:36:50.879000 audit[3001]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7f879db14010 a1=1d3cc4 a2=564179ff92b0 a3=5 items=0 ppid=1219 pid=3001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:50.879000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.603026 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.603159 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.603195 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.608923 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.618427 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.618615 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.629073 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.629202 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.639745 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.639976 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.650240 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.650371 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.660561 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.660644 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.671194 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.671303 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.676410 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.681929 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.692175 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.692301 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.702437 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.702547 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.707736 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.712874 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.723399 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.723519 kernel: Failed to create system directory rpcgss Feb 12 20:36:51.588000 audit[3014]: AVC avc: denied { confidentiality } for pid=3014 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:36:51.588000 audit[3014]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7efe2a038010 a1=4f524 a2=5645ed74c2b0 a3=5 items=0 ppid=1219 pid=3014 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:51.588000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 12 20:36:51.759201 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3282498576.mount: Deactivated successfully. Feb 12 20:36:51.768754 systemd-networkd[1031]: cali75917be3040: Gained IPv6LL Feb 12 20:36:51.775280 nfsidmap[3020]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'c.flatcar-212911.internal' Feb 12 20:36:51.785011 nfsidmap[3021]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'c.flatcar-212911.internal' Feb 12 20:36:51.797000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1283]: AVC avc: denied { watch_reads } for pid=1283 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1283]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=557611340130 a2=10 a3=b6f74fdb1703a05 items=0 ppid=1 pid=1283 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:51.797000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:36:51.797000 audit[1283]: AVC avc: denied { watch_reads } for pid=1283 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1283]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=557611340130 a2=10 a3=b6f74fdb1703a05 items=0 ppid=1 pid=1283 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:51.797000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:36:51.797000 audit[1283]: AVC avc: denied { watch_reads } for pid=1283 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:36:51.797000 audit[1283]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=557611340130 a2=10 a3=b6f74fdb1703a05 items=0 ppid=1 pid=1283 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:51.797000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:36:51.847133 kubelet[1533]: E0212 20:36:51.847071 1533 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:51.865570 env[1146]: time="2024-02-12T20:36:51.862674663Z" level=info msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" Feb 12 20:36:51.910059 kubelet[1533]: E0212 20:36:51.909991 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.935 [WARNING][3037] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-csi--node--driver--wc6vg-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"30af56de-f111-46fb-96f2-369127a9645f", ResourceVersion:"974", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 35, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4", Pod:"csi-node-driver-wc6vg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calicd0672b9c7b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.935 [INFO][3037] k8s.go 578: Cleaning up netns ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.935 [INFO][3037] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" iface="eth0" netns="" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.935 [INFO][3037] k8s.go 585: Releasing IP address(es) ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.935 [INFO][3037] utils.go 188: Calico CNI releasing IP address ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.994 [INFO][3043] ipam_plugin.go 415: Releasing address using handleID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.994 [INFO][3043] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:51.994 [INFO][3043] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:52.006 [WARNING][3043] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:52.006 [INFO][3043] ipam_plugin.go 443: Releasing address using workloadID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:52.009 [INFO][3043] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:52.012323 env[1146]: 2024-02-12 20:36:52.011 [INFO][3037] k8s.go 591: Teardown processing complete. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.013226 env[1146]: time="2024-02-12T20:36:52.012350595Z" level=info msg="TearDown network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" successfully" Feb 12 20:36:52.013226 env[1146]: time="2024-02-12T20:36:52.012455862Z" level=info msg="StopPodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" returns successfully" Feb 12 20:36:52.013376 env[1146]: time="2024-02-12T20:36:52.013324254Z" level=info msg="RemovePodSandbox for \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" Feb 12 20:36:52.013470 env[1146]: time="2024-02-12T20:36:52.013384042Z" level=info msg="Forcibly stopping sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\"" Feb 12 20:36:52.030063 env[1146]: time="2024-02-12T20:36:52.030012923Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:c7956f31-c3f4-4054-bf87-96b56837f948,Namespace:default,Attempt:0,}" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.136 [WARNING][3066] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-csi--node--driver--wc6vg-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"30af56de-f111-46fb-96f2-369127a9645f", ResourceVersion:"974", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 35, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"035002f59d798fe9052f3c97b35cbd38d310c8696e63e20e2d2a1be0ea1893e4", Pod:"csi-node-driver-wc6vg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calicd0672b9c7b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.136 [INFO][3066] k8s.go 578: Cleaning up netns ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.136 [INFO][3066] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" iface="eth0" netns="" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.136 [INFO][3066] k8s.go 585: Releasing IP address(es) ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.136 [INFO][3066] utils.go 188: Calico CNI releasing IP address ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.235 [INFO][3078] ipam_plugin.go 415: Releasing address using handleID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.236 [INFO][3078] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.236 [INFO][3078] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.255 [WARNING][3078] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.256 [INFO][3078] ipam_plugin.go 443: Releasing address using workloadID ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" HandleID="k8s-pod-network.3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Workload="10.128.0.61-k8s-csi--node--driver--wc6vg-eth0" Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.271 [INFO][3078] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:52.274111 env[1146]: 2024-02-12 20:36:52.272 [INFO][3066] k8s.go 591: Teardown processing complete. ContainerID="3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014" Feb 12 20:36:52.275185 env[1146]: time="2024-02-12T20:36:52.275126531Z" level=info msg="TearDown network for sandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" successfully" Feb 12 20:36:52.280666 env[1146]: time="2024-02-12T20:36:52.280609822Z" level=info msg="RemovePodSandbox \"3f92e5d324602205bb138339650f7e8195754e1afb14cdc35415630e2cb3a014\" returns successfully" Feb 12 20:36:52.281643 env[1146]: time="2024-02-12T20:36:52.281594346Z" level=info msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" Feb 12 20:36:52.532683 systemd-networkd[1031]: cali5ec59c6bf6e: Link UP Feb 12 20:36:52.547753 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:36:52.547954 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 12 20:36:52.549339 systemd-networkd[1031]: cali5ec59c6bf6e: Gained carrier Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.432 [WARNING][3113] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4", ResourceVersion:"997", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e", Pod:"nginx-deployment-845c78c8b9-8spkl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali35b9c9f73b4", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.432 [INFO][3113] k8s.go 578: Cleaning up netns ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.432 [INFO][3113] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" iface="eth0" netns="" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.432 [INFO][3113] k8s.go 585: Releasing IP address(es) ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.432 [INFO][3113] utils.go 188: Calico CNI releasing IP address ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.463 [INFO][3119] ipam_plugin.go 415: Releasing address using handleID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.463 [INFO][3119] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.527 [INFO][3119] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.537 [WARNING][3119] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.537 [INFO][3119] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.540 [INFO][3119] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:52.564402 env[1146]: 2024-02-12 20:36:52.558 [INFO][3113] k8s.go 591: Teardown processing complete. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.571493 env[1146]: time="2024-02-12T20:36:52.565387944Z" level=info msg="TearDown network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" successfully" Feb 12 20:36:52.571493 env[1146]: time="2024-02-12T20:36:52.565449646Z" level=info msg="StopPodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" returns successfully" Feb 12 20:36:52.573918 env[1146]: time="2024-02-12T20:36:52.573872947Z" level=info msg="RemovePodSandbox for \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" Feb 12 20:36:52.574127 env[1146]: time="2024-02-12T20:36:52.574071604Z" level=info msg="Forcibly stopping sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\"" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.265 [INFO][3073] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.128.0.61-k8s-test--pod--1-eth0 default c7956f31-c3f4-4054-bf87-96b56837f948 1136 0 2024-02-12 20:36:33 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.128.0.61 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.265 [INFO][3073] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.332 [INFO][3098] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" HandleID="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Workload="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.377 [INFO][3098] ipam_plugin.go 268: Auto assigning IP ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" HandleID="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Workload="10.128.0.61-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000118970), Attrs:map[string]string{"namespace":"default", "node":"10.128.0.61", "pod":"test-pod-1", "timestamp":"2024-02-12 20:36:52.332282659 +0000 UTC"}, Hostname:"10.128.0.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.377 [INFO][3098] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.377 [INFO][3098] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.377 [INFO][3098] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.128.0.61' Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.382 [INFO][3098] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.427 [INFO][3098] ipam.go 372: Looking up existing affinities for host host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.471 [INFO][3098] ipam.go 489: Trying affinity for 192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.474 [INFO][3098] ipam.go 155: Attempting to load block cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.489 [INFO][3098] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.128/26 host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.489 [INFO][3098] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.128/26 handle="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.493 [INFO][3098] ipam.go 1682: Creating new handle: k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83 Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.504 [INFO][3098] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.128/26 handle="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.526 [INFO][3098] ipam.go 1216: Successfully claimed IPs: [192.168.81.133/26] block=192.168.81.128/26 handle="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.526 [INFO][3098] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.133/26] handle="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" host="10.128.0.61" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.527 [INFO][3098] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.527 [INFO][3098] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.133/26] IPv6=[] ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" HandleID="k8s-pod-network.158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Workload="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.529 [INFO][3073] k8s.go 385: Populated endpoint ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"c7956f31-c3f4-4054-bf87-96b56837f948", ResourceVersion:"1136", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 33, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.133/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.589130 env[1146]: 2024-02-12 20:36:52.529 [INFO][3073] k8s.go 386: Calico CNI using IPs: [192.168.81.133/32] ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.590564 env[1146]: 2024-02-12 20:36:52.529 [INFO][3073] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.590564 env[1146]: 2024-02-12 20:36:52.550 [INFO][3073] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.590564 env[1146]: 2024-02-12 20:36:52.558 [INFO][3073] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"c7956f31-c3f4-4054-bf87-96b56837f948", ResourceVersion:"1136", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 33, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.133/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"ea:9b:7b:fb:1b:4f", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.590564 env[1146]: 2024-02-12 20:36:52.586 [INFO][3073] k8s.go 491: Wrote updated endpoint to datastore ContainerID="158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.128.0.61-k8s-test--pod--1-eth0" Feb 12 20:36:52.621000 audit[3147]: NETFILTER_CFG table=filter:83 family=2 entries=42 op=nft_register_chain pid=3147 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:36:52.621000 audit[3147]: SYSCALL arch=c000003e syscall=46 success=yes exit=20268 a0=3 a1=7ffc3368fee0 a2=0 a3=7ffc3368fecc items=0 ppid=2152 pid=3147 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.621000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:36:52.634877 env[1146]: time="2024-02-12T20:36:52.630626100Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:36:52.634877 env[1146]: time="2024-02-12T20:36:52.630685085Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:36:52.634877 env[1146]: time="2024-02-12T20:36:52.630712151Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:36:52.634877 env[1146]: time="2024-02-12T20:36:52.630913864Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83 pid=3154 runtime=io.containerd.runc.v2 Feb 12 20:36:52.656118 systemd[1]: Started cri-containerd-158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83.scope. Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.690000 audit: BPF prog-id=127 op=LOAD Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=3154 pid=3170 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.692000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135386166356164323734386430633131326438313265656563316361 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=3154 pid=3170 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.692000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135386166356164323734386430633131326438313265656563316361 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit: BPF prog-id=128 op=LOAD Feb 12 20:36:52.692000 audit[3170]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c000300e30 items=0 ppid=3154 pid=3170 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.692000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135386166356164323734386430633131326438313265656563316361 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit: BPF prog-id=129 op=LOAD Feb 12 20:36:52.692000 audit[3170]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c000300e78 items=0 ppid=3154 pid=3170 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.692000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135386166356164323734386430633131326438313265656563316361 Feb 12 20:36:52.692000 audit: BPF prog-id=129 op=UNLOAD Feb 12 20:36:52.692000 audit: BPF prog-id=128 op=UNLOAD Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { perfmon } for pid=3170 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit[3170]: AVC avc: denied { bpf } for pid=3170 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:52.692000 audit: BPF prog-id=130 op=LOAD Feb 12 20:36:52.692000 audit[3170]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000301288 items=0 ppid=3154 pid=3170 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:52.692000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135386166356164323734386430633131326438313265656563316361 Feb 12 20:36:52.766773 env[1146]: time="2024-02-12T20:36:52.766705595Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:c7956f31-c3f4-4054-bf87-96b56837f948,Namespace:default,Attempt:0,} returns sandbox id \"158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83\"" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.769 [WARNING][3171] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"a8a1a552-e6b5-4af0-b0f9-435a3d5d36b4", ResourceVersion:"997", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 36, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.128.0.61", ContainerID:"330eb51668ba696556f59d0215414e0834777386626ff9c7a8875695051ca36e", Pod:"nginx-deployment-845c78c8b9-8spkl", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali35b9c9f73b4", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.769 [INFO][3171] k8s.go 578: Cleaning up netns ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.769 [INFO][3171] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" iface="eth0" netns="" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.769 [INFO][3171] k8s.go 585: Releasing IP address(es) ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.769 [INFO][3171] utils.go 188: Calico CNI releasing IP address ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.813 [INFO][3203] ipam_plugin.go 415: Releasing address using handleID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.813 [INFO][3203] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.813 [INFO][3203] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.826 [WARNING][3203] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.826 [INFO][3203] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" HandleID="k8s-pod-network.96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Workload="10.128.0.61-k8s-nginx--deployment--845c78c8b9--8spkl-eth0" Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.829 [INFO][3203] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:36:52.837458 env[1146]: 2024-02-12 20:36:52.830 [INFO][3171] k8s.go 591: Teardown processing complete. ContainerID="96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6" Feb 12 20:36:52.838480 env[1146]: time="2024-02-12T20:36:52.838428826Z" level=info msg="TearDown network for sandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" successfully" Feb 12 20:36:52.843249 env[1146]: time="2024-02-12T20:36:52.843203598Z" level=info msg="RemovePodSandbox \"96a4da6ab6de0d844a40d8285ae361958bf13d16d01758d784700270a50a41d6\" returns successfully" Feb 12 20:36:52.910823 kubelet[1533]: E0212 20:36:52.910714 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:53.771345 env[1146]: time="2024-02-12T20:36:53.771266958Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:53.774354 env[1146]: time="2024-02-12T20:36:53.774305157Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:848c5b919e8d33dbad8c8c64aa6aec07c29cfe6e4f6312ceafc1641ea929f91a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:53.776880 env[1146]: time="2024-02-12T20:36:53.776838019Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:53.779798 env[1146]: time="2024-02-12T20:36:53.779750716Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:53.781057 env[1146]: time="2024-02-12T20:36:53.781007122Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:848c5b919e8d33dbad8c8c64aa6aec07c29cfe6e4f6312ceafc1641ea929f91a\"" Feb 12 20:36:53.782552 env[1146]: time="2024-02-12T20:36:53.782496316Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:36:53.784804 env[1146]: time="2024-02-12T20:36:53.784750808Z" level=info msg="CreateContainer within sandbox \"a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 12 20:36:53.805131 env[1146]: time="2024-02-12T20:36:53.805072166Z" level=info msg="CreateContainer within sandbox \"a3476815ee2fc1b6a568c895a9162adb8c3e078d024cace66775c48e5ab9583f\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"2f8bef51ce6145b04aaf3da5147cb4e65cc3055cb33a6705834a7cbc02b2862d\"" Feb 12 20:36:53.806008 env[1146]: time="2024-02-12T20:36:53.805952952Z" level=info msg="StartContainer for \"2f8bef51ce6145b04aaf3da5147cb4e65cc3055cb33a6705834a7cbc02b2862d\"" Feb 12 20:36:53.820076 systemd-networkd[1031]: cali5ec59c6bf6e: Gained IPv6LL Feb 12 20:36:53.837875 systemd[1]: Started cri-containerd-2f8bef51ce6145b04aaf3da5147cb4e65cc3055cb33a6705834a7cbc02b2862d.scope. Feb 12 20:36:53.895642 kernel: kauditd_printk_skb: 476 callbacks suppressed Feb 12 20:36:53.895799 kernel: audit: type=1400 audit(1707770213.868:934): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.923897 kernel: audit: type=1400 audit(1707770213.868:935): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.923949 kubelet[1533]: E0212 20:36:53.911397 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.949889 kernel: audit: type=1400 audit(1707770213.868:936): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.950047 kernel: audit: type=1400 audit(1707770213.868:937): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.009248 kernel: audit: type=1400 audit(1707770213.868:938): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.009465 kernel: audit: type=1400 audit(1707770213.868:939): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.009519 kernel: audit: type=1400 audit(1707770213.868:940): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.031912 kernel: audit: type=1400 audit(1707770213.868:941): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.035026 env[1146]: time="2024-02-12T20:36:54.034982433Z" level=info msg="StartContainer for \"2f8bef51ce6145b04aaf3da5147cb4e65cc3055cb33a6705834a7cbc02b2862d\" returns successfully" Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.069415 env[1146]: time="2024-02-12T20:36:54.069361349Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:54.072375 kernel: audit: type=1400 audit(1707770213.868:942): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.093197 kernel: audit: type=1400 audit(1707770213.868:943): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.093457 env[1146]: time="2024-02-12T20:36:54.077063216Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:53.868000 audit: BPF prog-id=131 op=LOAD Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014dc48 a2=10 a3=1c items=0 ppid=2978 pid=3217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:53.869000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266386265663531636536313435623034616166336461353134376362 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00014d6b0 a2=3c a3=8 items=0 ppid=2978 pid=3217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:53.869000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266386265663531636536313435623034616166336461353134376362 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.869000 audit: BPF prog-id=132 op=LOAD Feb 12 20:36:53.869000 audit[3217]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014d9d8 a2=78 a3=c00032bd40 items=0 ppid=2978 pid=3217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:53.869000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266386265663531636536313435623034616166336461353134376362 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.895000 audit: BPF prog-id=133 op=LOAD Feb 12 20:36:53.895000 audit[3217]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00014d770 a2=78 a3=c00032bd88 items=0 ppid=2978 pid=3217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:53.895000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266386265663531636536313435623034616166336461353134376362 Feb 12 20:36:53.895000 audit: BPF prog-id=133 op=UNLOAD Feb 12 20:36:53.895000 audit: BPF prog-id=132 op=UNLOAD Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { perfmon } for pid=3217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit[3217]: AVC avc: denied { bpf } for pid=3217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:53.896000 audit: BPF prog-id=134 op=LOAD Feb 12 20:36:53.896000 audit[3217]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014dc30 a2=78 a3=c000396198 items=0 ppid=2978 pid=3217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:53.896000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266386265663531636536313435623034616166336461353134376362 Feb 12 20:36:54.101247 env[1146]: time="2024-02-12T20:36:54.101203988Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:54.105839 env[1146]: time="2024-02-12T20:36:54.104430927Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:36:54.105839 env[1146]: time="2024-02-12T20:36:54.104887823Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a\"" Feb 12 20:36:54.108857 env[1146]: time="2024-02-12T20:36:54.108792225Z" level=info msg="CreateContainer within sandbox \"158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 12 20:36:54.138663 env[1146]: time="2024-02-12T20:36:54.138600165Z" level=info msg="CreateContainer within sandbox \"158af5ad2748d0c112d812eeec1caf73021156d46de4b63b0bc0e2ce10bd7c83\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"b04087056ab72bb9b2065f86ba95edbb3c64fef5e5b260593abd785b2b1d8c90\"" Feb 12 20:36:54.139540 env[1146]: time="2024-02-12T20:36:54.139496185Z" level=info msg="StartContainer for \"b04087056ab72bb9b2065f86ba95edbb3c64fef5e5b260593abd785b2b1d8c90\"" Feb 12 20:36:54.166000 audit[3261]: NETFILTER_CFG table=filter:84 family=2 entries=10 op=nft_register_rule pid=3261 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:54.166000 audit[3261]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffc5ff2f5b0 a2=0 a3=7ffc5ff2f59c items=0 ppid=1756 pid=3261 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.166000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:54.176000 audit[3261]: NETFILTER_CFG table=nat:85 family=2 entries=44 op=nft_register_rule pid=3261 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:54.176000 audit[3261]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffc5ff2f5b0 a2=0 a3=7ffc5ff2f59c items=0 ppid=1756 pid=3261 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.176000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:54.178404 systemd[1]: Started cri-containerd-b04087056ab72bb9b2065f86ba95edbb3c64fef5e5b260593abd785b2b1d8c90.scope. Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.210000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.210000 audit: BPF prog-id=135 op=LOAD Feb 12 20:36:54.212000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.212000 audit[3256]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000117c48 a2=10 a3=1c items=0 ppid=3154 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.212000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230343038373035366162373262623962323036356638366261393565 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001176b0 a2=3c a3=8 items=0 ppid=3154 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.213000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230343038373035366162373262623962323036356638366261393565 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.213000 audit: BPF prog-id=136 op=LOAD Feb 12 20:36:54.213000 audit[3256]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001179d8 a2=78 a3=c000213600 items=0 ppid=3154 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.213000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230343038373035366162373262623962323036356638366261393565 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.215000 audit: BPF prog-id=137 op=LOAD Feb 12 20:36:54.215000 audit[3256]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000117770 a2=78 a3=c000213648 items=0 ppid=3154 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.215000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230343038373035366162373262623962323036356638366261393565 Feb 12 20:36:54.216000 audit: BPF prog-id=137 op=UNLOAD Feb 12 20:36:54.216000 audit: BPF prog-id=136 op=UNLOAD Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { perfmon } for pid=3256 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit[3256]: AVC avc: denied { bpf } for pid=3256 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:36:54.216000 audit: BPF prog-id=138 op=LOAD Feb 12 20:36:54.216000 audit[3256]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000117c30 a2=78 a3=c000213a58 items=0 ppid=3154 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.216000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230343038373035366162373262623962323036356638366261393565 Feb 12 20:36:54.250908 kubelet[1533]: I0212 20:36:54.250666 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-5c9bdf4cbf-kj9k7" podStartSLOduration=3.372330254 podCreationTimestamp="2024-02-12 20:36:48 +0000 UTC" firstStartedPulling="2024-02-12 20:36:50.903446979 +0000 UTC m=+59.777821753" lastFinishedPulling="2024-02-12 20:36:53.781718154 +0000 UTC m=+62.656092929" observedRunningTime="2024-02-12 20:36:54.245741306 +0000 UTC m=+63.120116084" watchObservedRunningTime="2024-02-12 20:36:54.25060143 +0000 UTC m=+63.124976212" Feb 12 20:36:54.255090 env[1146]: time="2024-02-12T20:36:54.255037047Z" level=info msg="StartContainer for \"b04087056ab72bb9b2065f86ba95edbb3c64fef5e5b260593abd785b2b1d8c90\" returns successfully" Feb 12 20:36:54.278000 audit[3291]: NETFILTER_CFG table=filter:86 family=2 entries=10 op=nft_register_rule pid=3291 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:54.278000 audit[3291]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7fffa1eb1570 a2=0 a3=7fffa1eb155c items=0 ppid=1756 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.278000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:54.281000 audit[3291]: NETFILTER_CFG table=nat:87 family=2 entries=44 op=nft_register_rule pid=3291 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:36:54.281000 audit[3291]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7fffa1eb1570 a2=0 a3=7fffa1eb155c items=0 ppid=1756 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:36:54.281000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:36:54.775000 audit[3227]: AVC avc: denied { watch } for pid=3227 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_36_50.3873765086/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c119,c994 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c119,c994 tclass=file permissive=0 Feb 12 20:36:54.775000 audit[3227]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=8 a1=c000058840 a2=fc6 a3=0 items=0 ppid=2978 pid=3227 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c119,c994 key=(null) Feb 12 20:36:54.775000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:36:54.798906 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1444145506.mount: Deactivated successfully. Feb 12 20:36:54.912094 kubelet[1533]: E0212 20:36:54.912031 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:55.248707 kubelet[1533]: I0212 20:36:55.248665 1533 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=20.911808769 podCreationTimestamp="2024-02-12 20:36:33 +0000 UTC" firstStartedPulling="2024-02-12 20:36:52.769576146 +0000 UTC m=+61.643950913" lastFinishedPulling="2024-02-12 20:36:54.106380087 +0000 UTC m=+62.980754848" observedRunningTime="2024-02-12 20:36:55.248192797 +0000 UTC m=+64.122567578" watchObservedRunningTime="2024-02-12 20:36:55.248612704 +0000 UTC m=+64.122987485" Feb 12 20:36:55.912456 kubelet[1533]: E0212 20:36:55.912392 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:56.912728 kubelet[1533]: E0212 20:36:56.912662 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:57.913706 kubelet[1533]: E0212 20:36:57.913639 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:58.914378 kubelet[1533]: E0212 20:36:58.914307 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:36:59.914730 kubelet[1533]: E0212 20:36:59.914675 1533 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"