Feb 9 18:52:55.826494 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (x86_64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP Fri Feb 9 17:23:38 -00 2024 Feb 9 18:52:55.826514 kernel: Command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected verity.usrhash=4dbf910aaff679d18007a871aba359cc2cf6cb85992bb7598afad40271debbd6 Feb 9 18:52:55.826522 kernel: BIOS-provided physical RAM map: Feb 9 18:52:55.826527 kernel: BIOS-e820: [mem 0x0000000000000000-0x000000000009fbff] usable Feb 9 18:52:55.826533 kernel: BIOS-e820: [mem 0x000000000009fc00-0x000000000009ffff] reserved Feb 9 18:52:55.826538 kernel: BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved Feb 9 18:52:55.826544 kernel: BIOS-e820: [mem 0x0000000000100000-0x000000009cfdcfff] usable Feb 9 18:52:55.826550 kernel: BIOS-e820: [mem 0x000000009cfdd000-0x000000009cffffff] reserved Feb 9 18:52:55.826556 kernel: BIOS-e820: [mem 0x00000000feffc000-0x00000000feffffff] reserved Feb 9 18:52:55.826562 kernel: BIOS-e820: [mem 0x00000000fffc0000-0x00000000ffffffff] reserved Feb 9 18:52:55.826567 kernel: BIOS-e820: [mem 0x000000fd00000000-0x000000ffffffffff] reserved Feb 9 18:52:55.826572 kernel: NX (Execute Disable) protection: active Feb 9 18:52:55.826578 kernel: SMBIOS 2.8 present. Feb 9 18:52:55.826583 kernel: DMI: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.2-debian-1.16.2-1 04/01/2014 Feb 9 18:52:55.826592 kernel: Hypervisor detected: KVM Feb 9 18:52:55.826598 kernel: kvm-clock: Using msrs 4b564d01 and 4b564d00 Feb 9 18:52:55.826603 kernel: kvm-clock: cpu 0, msr 8cfaa001, primary cpu clock Feb 9 18:52:55.826609 kernel: kvm-clock: using sched offset of 2111723521 cycles Feb 9 18:52:55.826616 kernel: clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns Feb 9 18:52:55.826632 kernel: tsc: Detected 2794.750 MHz processor Feb 9 18:52:55.826645 kernel: e820: update [mem 0x00000000-0x00000fff] usable ==> reserved Feb 9 18:52:55.826659 kernel: e820: remove [mem 0x000a0000-0x000fffff] usable Feb 9 18:52:55.826667 kernel: last_pfn = 0x9cfdd max_arch_pfn = 0x400000000 Feb 9 18:52:55.826675 kernel: x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT Feb 9 18:52:55.826681 kernel: Using GB pages for direct mapping Feb 9 18:52:55.826687 kernel: ACPI: Early table checksum verification disabled Feb 9 18:52:55.826693 kernel: ACPI: RSDP 0x00000000000F59C0 000014 (v00 BOCHS ) Feb 9 18:52:55.826699 kernel: ACPI: RSDT 0x000000009CFE1BDD 000034 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826705 kernel: ACPI: FACP 0x000000009CFE1A79 000074 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826713 kernel: ACPI: DSDT 0x000000009CFE0040 001A39 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826719 kernel: ACPI: FACS 0x000000009CFE0000 000040 Feb 9 18:52:55.826725 kernel: ACPI: APIC 0x000000009CFE1AED 000090 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826733 kernel: ACPI: HPET 0x000000009CFE1B7D 000038 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826739 kernel: ACPI: WAET 0x000000009CFE1BB5 000028 (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 18:52:55.826745 kernel: ACPI: Reserving FACP table memory at [mem 0x9cfe1a79-0x9cfe1aec] Feb 9 18:52:55.826751 kernel: ACPI: Reserving DSDT table memory at [mem 0x9cfe0040-0x9cfe1a78] Feb 9 18:52:55.826757 kernel: ACPI: Reserving FACS table memory at [mem 0x9cfe0000-0x9cfe003f] Feb 9 18:52:55.826763 kernel: ACPI: Reserving APIC table memory at [mem 0x9cfe1aed-0x9cfe1b7c] Feb 9 18:52:55.826768 kernel: ACPI: Reserving HPET table memory at [mem 0x9cfe1b7d-0x9cfe1bb4] Feb 9 18:52:55.826775 kernel: ACPI: Reserving WAET table memory at [mem 0x9cfe1bb5-0x9cfe1bdc] Feb 9 18:52:55.826784 kernel: No NUMA configuration found Feb 9 18:52:55.826790 kernel: Faking a node at [mem 0x0000000000000000-0x000000009cfdcfff] Feb 9 18:52:55.826797 kernel: NODE_DATA(0) allocated [mem 0x9cfd7000-0x9cfdcfff] Feb 9 18:52:55.826803 kernel: Zone ranges: Feb 9 18:52:55.826810 kernel: DMA [mem 0x0000000000001000-0x0000000000ffffff] Feb 9 18:52:55.826817 kernel: DMA32 [mem 0x0000000001000000-0x000000009cfdcfff] Feb 9 18:52:55.826824 kernel: Normal empty Feb 9 18:52:55.826831 kernel: Movable zone start for each node Feb 9 18:52:55.826837 kernel: Early memory node ranges Feb 9 18:52:55.826844 kernel: node 0: [mem 0x0000000000001000-0x000000000009efff] Feb 9 18:52:55.826851 kernel: node 0: [mem 0x0000000000100000-0x000000009cfdcfff] Feb 9 18:52:55.826857 kernel: Initmem setup node 0 [mem 0x0000000000001000-0x000000009cfdcfff] Feb 9 18:52:55.826865 kernel: On node 0, zone DMA: 1 pages in unavailable ranges Feb 9 18:52:55.826874 kernel: On node 0, zone DMA: 97 pages in unavailable ranges Feb 9 18:52:55.826882 kernel: On node 0, zone DMA32: 12323 pages in unavailable ranges Feb 9 18:52:55.826897 kernel: ACPI: PM-Timer IO Port: 0x608 Feb 9 18:52:55.826904 kernel: ACPI: LAPIC_NMI (acpi_id[0xff] dfl dfl lint[0x1]) Feb 9 18:52:55.826911 kernel: IOAPIC[0]: apic_id 0, version 17, address 0xfec00000, GSI 0-23 Feb 9 18:52:55.826917 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 0 global_irq 2 dfl dfl) Feb 9 18:52:55.826924 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 5 global_irq 5 high level) Feb 9 18:52:55.826930 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 high level) Feb 9 18:52:55.826937 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 10 global_irq 10 high level) Feb 9 18:52:55.826943 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 11 global_irq 11 high level) Feb 9 18:52:55.826950 kernel: ACPI: Using ACPI (MADT) for SMP configuration information Feb 9 18:52:55.826958 kernel: ACPI: HPET id: 0x8086a201 base: 0xfed00000 Feb 9 18:52:55.826964 kernel: TSC deadline timer available Feb 9 18:52:55.826971 kernel: smpboot: Allowing 4 CPUs, 0 hotplug CPUs Feb 9 18:52:55.826977 kernel: kvm-guest: KVM setup pv remote TLB flush Feb 9 18:52:55.826984 kernel: kvm-guest: setup PV sched yield Feb 9 18:52:55.826990 kernel: [mem 0x9d000000-0xfeffbfff] available for PCI devices Feb 9 18:52:55.826997 kernel: Booting paravirtualized kernel on KVM Feb 9 18:52:55.827003 kernel: clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns Feb 9 18:52:55.827010 kernel: setup_percpu: NR_CPUS:512 nr_cpumask_bits:512 nr_cpu_ids:4 nr_node_ids:1 Feb 9 18:52:55.827018 kernel: percpu: Embedded 55 pages/cpu s185624 r8192 d31464 u524288 Feb 9 18:52:55.827024 kernel: pcpu-alloc: s185624 r8192 d31464 u524288 alloc=1*2097152 Feb 9 18:52:55.827031 kernel: pcpu-alloc: [0] 0 1 2 3 Feb 9 18:52:55.827037 kernel: kvm-guest: setup async PF for cpu 0 Feb 9 18:52:55.827043 kernel: kvm-guest: stealtime: cpu 0, msr 9a41c0c0 Feb 9 18:52:55.827050 kernel: kvm-guest: PV spinlocks enabled Feb 9 18:52:55.827056 kernel: PV qspinlock hash table entries: 256 (order: 0, 4096 bytes, linear) Feb 9 18:52:55.827063 kernel: Built 1 zonelists, mobility grouping on. Total pages: 632733 Feb 9 18:52:55.827070 kernel: Policy zone: DMA32 Feb 9 18:52:55.827077 kernel: Kernel command line: rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected verity.usrhash=4dbf910aaff679d18007a871aba359cc2cf6cb85992bb7598afad40271debbd6 Feb 9 18:52:55.827085 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 9 18:52:55.827092 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 9 18:52:55.827098 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 9 18:52:55.827105 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 9 18:52:55.827112 kernel: Memory: 2438768K/2571756K available (12294K kernel code, 2275K rwdata, 13700K rodata, 45496K init, 4048K bss, 132728K reserved, 0K cma-reserved) Feb 9 18:52:55.827119 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1 Feb 9 18:52:55.827125 kernel: ftrace: allocating 34475 entries in 135 pages Feb 9 18:52:55.827131 kernel: ftrace: allocated 135 pages with 4 groups Feb 9 18:52:55.827139 kernel: rcu: Hierarchical RCU implementation. Feb 9 18:52:55.827146 kernel: rcu: RCU event tracing is enabled. Feb 9 18:52:55.827153 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=4. Feb 9 18:52:55.827159 kernel: Rude variant of Tasks RCU enabled. Feb 9 18:52:55.827166 kernel: Tracing variant of Tasks RCU enabled. Feb 9 18:52:55.827172 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 9 18:52:55.827179 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=4 Feb 9 18:52:55.827185 kernel: NR_IRQS: 33024, nr_irqs: 456, preallocated irqs: 16 Feb 9 18:52:55.827192 kernel: random: crng init done Feb 9 18:52:55.827199 kernel: Console: colour VGA+ 80x25 Feb 9 18:52:55.827206 kernel: printk: console [ttyS0] enabled Feb 9 18:52:55.827212 kernel: ACPI: Core revision 20210730 Feb 9 18:52:55.827219 kernel: clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 19112604467 ns Feb 9 18:52:55.827225 kernel: APIC: Switch to symmetric I/O mode setup Feb 9 18:52:55.827232 kernel: x2apic enabled Feb 9 18:52:55.827238 kernel: Switched APIC routing to physical x2apic. Feb 9 18:52:55.827245 kernel: kvm-guest: setup PV IPIs Feb 9 18:52:55.827251 kernel: ..TIMER: vector=0x30 apic1=0 pin1=2 apic2=-1 pin2=-1 Feb 9 18:52:55.827259 kernel: tsc: Marking TSC unstable due to TSCs unsynchronized Feb 9 18:52:55.827265 kernel: Calibrating delay loop (skipped) preset value.. 5589.50 BogoMIPS (lpj=2794750) Feb 9 18:52:55.827272 kernel: x86/cpu: User Mode Instruction Prevention (UMIP) activated Feb 9 18:52:55.827278 kernel: Last level iTLB entries: 4KB 512, 2MB 255, 4MB 127 Feb 9 18:52:55.827285 kernel: Last level dTLB entries: 4KB 512, 2MB 255, 4MB 127, 1GB 0 Feb 9 18:52:55.827291 kernel: Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization Feb 9 18:52:55.827298 kernel: Spectre V2 : Mitigation: Retpolines Feb 9 18:52:55.827304 kernel: Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch Feb 9 18:52:55.827311 kernel: Spectre V2 : Spectre v2 / SpectreRSB : Filling RSB on VMEXIT Feb 9 18:52:55.827334 kernel: Spectre V2 : Enabling Speculation Barrier for firmware calls Feb 9 18:52:55.827341 kernel: RETBleed: Mitigation: untrained return thunk Feb 9 18:52:55.827359 kernel: Spectre V2 : mitigation: Enabling conditional Indirect Branch Prediction Barrier Feb 9 18:52:55.827367 kernel: Speculative Store Bypass: Mitigation: Speculative Store Bypass disabled via prctl and seccomp Feb 9 18:52:55.827374 kernel: x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' Feb 9 18:52:55.827381 kernel: x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' Feb 9 18:52:55.827387 kernel: x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' Feb 9 18:52:55.827394 kernel: x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 Feb 9 18:52:55.827401 kernel: x86/fpu: Enabled xstate features 0x7, context size is 832 bytes, using 'standard' format. Feb 9 18:52:55.827409 kernel: Freeing SMP alternatives memory: 32K Feb 9 18:52:55.827416 kernel: pid_max: default: 32768 minimum: 301 Feb 9 18:52:55.827423 kernel: LSM: Security Framework initializing Feb 9 18:52:55.827430 kernel: SELinux: Initializing. Feb 9 18:52:55.827437 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 18:52:55.827444 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 18:52:55.827451 kernel: smpboot: CPU0: AMD EPYC 7402P 24-Core Processor (family: 0x17, model: 0x31, stepping: 0x0) Feb 9 18:52:55.827459 kernel: Performance Events: Fam17h+ core perfctr, AMD PMU driver. Feb 9 18:52:55.827465 kernel: ... version: 0 Feb 9 18:52:55.827472 kernel: ... bit width: 48 Feb 9 18:52:55.827479 kernel: ... generic registers: 6 Feb 9 18:52:55.827487 kernel: ... value mask: 0000ffffffffffff Feb 9 18:52:55.827496 kernel: ... max period: 00007fffffffffff Feb 9 18:52:55.827503 kernel: ... fixed-purpose events: 0 Feb 9 18:52:55.827510 kernel: ... event mask: 000000000000003f Feb 9 18:52:55.827516 kernel: signal: max sigframe size: 1776 Feb 9 18:52:55.827525 kernel: rcu: Hierarchical SRCU implementation. Feb 9 18:52:55.827531 kernel: smp: Bringing up secondary CPUs ... Feb 9 18:52:55.827538 kernel: x86: Booting SMP configuration: Feb 9 18:52:55.827545 kernel: .... node #0, CPUs: #1 Feb 9 18:52:55.827552 kernel: kvm-clock: cpu 1, msr 8cfaa041, secondary cpu clock Feb 9 18:52:55.827559 kernel: kvm-guest: setup async PF for cpu 1 Feb 9 18:52:55.827565 kernel: kvm-guest: stealtime: cpu 1, msr 9a49c0c0 Feb 9 18:52:55.827572 kernel: #2 Feb 9 18:52:55.827579 kernel: kvm-clock: cpu 2, msr 8cfaa081, secondary cpu clock Feb 9 18:52:55.827586 kernel: kvm-guest: setup async PF for cpu 2 Feb 9 18:52:55.827594 kernel: kvm-guest: stealtime: cpu 2, msr 9a51c0c0 Feb 9 18:52:55.827601 kernel: #3 Feb 9 18:52:55.827607 kernel: kvm-clock: cpu 3, msr 8cfaa0c1, secondary cpu clock Feb 9 18:52:55.827614 kernel: kvm-guest: setup async PF for cpu 3 Feb 9 18:52:55.827621 kernel: kvm-guest: stealtime: cpu 3, msr 9a59c0c0 Feb 9 18:52:55.827628 kernel: smp: Brought up 1 node, 4 CPUs Feb 9 18:52:55.827634 kernel: smpboot: Max logical packages: 1 Feb 9 18:52:55.827641 kernel: smpboot: Total of 4 processors activated (22358.00 BogoMIPS) Feb 9 18:52:55.827648 kernel: devtmpfs: initialized Feb 9 18:52:55.827656 kernel: x86/mm: Memory block size: 128MB Feb 9 18:52:55.827663 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 9 18:52:55.827670 kernel: futex hash table entries: 1024 (order: 4, 65536 bytes, linear) Feb 9 18:52:55.827683 kernel: pinctrl core: initialized pinctrl subsystem Feb 9 18:52:55.827696 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 9 18:52:55.827705 kernel: audit: initializing netlink subsys (disabled) Feb 9 18:52:55.827712 kernel: audit: type=2000 audit(1707504775.635:1): state=initialized audit_enabled=0 res=1 Feb 9 18:52:55.827719 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 9 18:52:55.827726 kernel: thermal_sys: Registered thermal governor 'user_space' Feb 9 18:52:55.827734 kernel: cpuidle: using governor menu Feb 9 18:52:55.827743 kernel: ACPI: bus type PCI registered Feb 9 18:52:55.827750 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 9 18:52:55.827757 kernel: dca service started, version 1.12.1 Feb 9 18:52:55.827764 kernel: PCI: Using configuration type 1 for base access Feb 9 18:52:55.827771 kernel: PCI: Using configuration type 1 for extended access Feb 9 18:52:55.827778 kernel: kprobes: kprobe jump-optimization is enabled. All kprobes are optimized if possible. Feb 9 18:52:55.827785 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 9 18:52:55.827792 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 9 18:52:55.827799 kernel: ACPI: Added _OSI(Module Device) Feb 9 18:52:55.827806 kernel: ACPI: Added _OSI(Processor Device) Feb 9 18:52:55.827813 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 9 18:52:55.827820 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 9 18:52:55.827827 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 9 18:52:55.827834 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 9 18:52:55.827841 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 9 18:52:55.827848 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 9 18:52:55.827855 kernel: ACPI: Interpreter enabled Feb 9 18:52:55.827863 kernel: ACPI: PM: (supports S0 S3 S5) Feb 9 18:52:55.827870 kernel: ACPI: Using IOAPIC for interrupt routing Feb 9 18:52:55.827877 kernel: PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug Feb 9 18:52:55.827890 kernel: ACPI: Enabled 2 GPEs in block 00 to 0F Feb 9 18:52:55.827898 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Feb 9 18:52:55.828014 kernel: acpi PNP0A03:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 9 18:52:55.828025 kernel: acpiphp: Slot [3] registered Feb 9 18:52:55.828032 kernel: acpiphp: Slot [4] registered Feb 9 18:52:55.828041 kernel: acpiphp: Slot [5] registered Feb 9 18:52:55.828049 kernel: acpiphp: Slot [6] registered Feb 9 18:52:55.828056 kernel: acpiphp: Slot [7] registered Feb 9 18:52:55.828062 kernel: acpiphp: Slot [8] registered Feb 9 18:52:55.828069 kernel: acpiphp: Slot [9] registered Feb 9 18:52:55.828076 kernel: acpiphp: Slot [10] registered Feb 9 18:52:55.828083 kernel: acpiphp: Slot [11] registered Feb 9 18:52:55.828089 kernel: acpiphp: Slot [12] registered Feb 9 18:52:55.828096 kernel: acpiphp: Slot [13] registered Feb 9 18:52:55.828103 kernel: acpiphp: Slot [14] registered Feb 9 18:52:55.828110 kernel: acpiphp: Slot [15] registered Feb 9 18:52:55.828119 kernel: acpiphp: Slot [16] registered Feb 9 18:52:55.828128 kernel: acpiphp: Slot [17] registered Feb 9 18:52:55.828135 kernel: acpiphp: Slot [18] registered Feb 9 18:52:55.828142 kernel: acpiphp: Slot [19] registered Feb 9 18:52:55.828148 kernel: acpiphp: Slot [20] registered Feb 9 18:52:55.828155 kernel: acpiphp: Slot [21] registered Feb 9 18:52:55.828162 kernel: acpiphp: Slot [22] registered Feb 9 18:52:55.828169 kernel: acpiphp: Slot [23] registered Feb 9 18:52:55.828177 kernel: acpiphp: Slot [24] registered Feb 9 18:52:55.828184 kernel: acpiphp: Slot [25] registered Feb 9 18:52:55.828190 kernel: acpiphp: Slot [26] registered Feb 9 18:52:55.828197 kernel: acpiphp: Slot [27] registered Feb 9 18:52:55.828204 kernel: acpiphp: Slot [28] registered Feb 9 18:52:55.828211 kernel: acpiphp: Slot [29] registered Feb 9 18:52:55.828218 kernel: acpiphp: Slot [30] registered Feb 9 18:52:55.828224 kernel: acpiphp: Slot [31] registered Feb 9 18:52:55.828231 kernel: PCI host bridge to bus 0000:00 Feb 9 18:52:55.828311 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] Feb 9 18:52:55.828390 kernel: pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] Feb 9 18:52:55.828452 kernel: pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff window] Feb 9 18:52:55.828513 kernel: pci_bus 0000:00: root bus resource [mem 0x9d000000-0xfebfffff window] Feb 9 18:52:55.828574 kernel: pci_bus 0000:00: root bus resource [mem 0x100000000-0x17fffffff window] Feb 9 18:52:55.829225 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Feb 9 18:52:55.829313 kernel: pci 0000:00:00.0: [8086:1237] type 00 class 0x060000 Feb 9 18:52:55.829415 kernel: pci 0000:00:01.0: [8086:7000] type 00 class 0x060100 Feb 9 18:52:55.829509 kernel: pci 0000:00:01.1: [8086:7010] type 00 class 0x010180 Feb 9 18:52:55.829578 kernel: pci 0000:00:01.1: reg 0x20: [io 0xc0c0-0xc0cf] Feb 9 18:52:55.829646 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x10: [io 0x01f0-0x01f7] Feb 9 18:52:55.829712 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x14: [io 0x03f6] Feb 9 18:52:55.829780 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x18: [io 0x0170-0x0177] Feb 9 18:52:55.829850 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x1c: [io 0x0376] Feb 9 18:52:55.829936 kernel: pci 0000:00:01.3: [8086:7113] type 00 class 0x068000 Feb 9 18:52:55.830004 kernel: pci 0000:00:01.3: quirk: [io 0x0600-0x063f] claimed by PIIX4 ACPI Feb 9 18:52:55.830076 kernel: pci 0000:00:01.3: quirk: [io 0x0700-0x070f] claimed by PIIX4 SMB Feb 9 18:52:55.830150 kernel: pci 0000:00:02.0: [1234:1111] type 00 class 0x030000 Feb 9 18:52:55.830216 kernel: pci 0000:00:02.0: reg 0x10: [mem 0xfd000000-0xfdffffff pref] Feb 9 18:52:55.830281 kernel: pci 0000:00:02.0: reg 0x18: [mem 0xfebd0000-0xfebd0fff] Feb 9 18:52:55.830362 kernel: pci 0000:00:02.0: reg 0x30: [mem 0xfebc0000-0xfebcffff pref] Feb 9 18:52:55.830429 kernel: pci 0000:00:02.0: Video device with shadowed ROM at [mem 0x000c0000-0x000dffff] Feb 9 18:52:55.830502 kernel: pci 0000:00:03.0: [1af4:1005] type 00 class 0x00ff00 Feb 9 18:52:55.830569 kernel: pci 0000:00:03.0: reg 0x10: [io 0xc080-0xc09f] Feb 9 18:52:55.830639 kernel: pci 0000:00:03.0: reg 0x14: [mem 0xfebd1000-0xfebd1fff] Feb 9 18:52:55.830713 kernel: pci 0000:00:03.0: reg 0x20: [mem 0xfe000000-0xfe003fff 64bit pref] Feb 9 18:52:55.830790 kernel: pci 0000:00:04.0: [1af4:1001] type 00 class 0x010000 Feb 9 18:52:55.830862 kernel: pci 0000:00:04.0: reg 0x10: [io 0xc000-0xc07f] Feb 9 18:52:55.830938 kernel: pci 0000:00:04.0: reg 0x14: [mem 0xfebd2000-0xfebd2fff] Feb 9 18:52:55.831007 kernel: pci 0000:00:04.0: reg 0x20: [mem 0xfe004000-0xfe007fff 64bit pref] Feb 9 18:52:55.831080 kernel: pci 0000:00:05.0: [1af4:1000] type 00 class 0x020000 Feb 9 18:52:55.831147 kernel: pci 0000:00:05.0: reg 0x10: [io 0xc0a0-0xc0bf] Feb 9 18:52:55.831214 kernel: pci 0000:00:05.0: reg 0x14: [mem 0xfebd3000-0xfebd3fff] Feb 9 18:52:55.831280 kernel: pci 0000:00:05.0: reg 0x20: [mem 0xfe008000-0xfe00bfff 64bit pref] Feb 9 18:52:55.831367 kernel: pci 0000:00:05.0: reg 0x30: [mem 0xfeb80000-0xfebbffff pref] Feb 9 18:52:55.831377 kernel: ACPI: PCI: Interrupt link LNKA configured for IRQ 10 Feb 9 18:52:55.831385 kernel: ACPI: PCI: Interrupt link LNKB configured for IRQ 10 Feb 9 18:52:55.831392 kernel: ACPI: PCI: Interrupt link LNKC configured for IRQ 11 Feb 9 18:52:55.831399 kernel: ACPI: PCI: Interrupt link LNKD configured for IRQ 11 Feb 9 18:52:55.831406 kernel: ACPI: PCI: Interrupt link LNKS configured for IRQ 9 Feb 9 18:52:55.831413 kernel: iommu: Default domain type: Translated Feb 9 18:52:55.831420 kernel: iommu: DMA domain TLB invalidation policy: lazy mode Feb 9 18:52:55.831488 kernel: pci 0000:00:02.0: vgaarb: setting as boot VGA device Feb 9 18:52:55.831557 kernel: pci 0000:00:02.0: vgaarb: VGA device added: decodes=io+mem,owns=io+mem,locks=none Feb 9 18:52:55.831623 kernel: pci 0000:00:02.0: vgaarb: bridge control possible Feb 9 18:52:55.831633 kernel: vgaarb: loaded Feb 9 18:52:55.831640 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 9 18:52:55.831647 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 9 18:52:55.831654 kernel: PTP clock support registered Feb 9 18:52:55.831661 kernel: PCI: Using ACPI for IRQ routing Feb 9 18:52:55.831668 kernel: PCI: pci_cache_line_size set to 64 bytes Feb 9 18:52:55.831677 kernel: e820: reserve RAM buffer [mem 0x0009fc00-0x0009ffff] Feb 9 18:52:55.831684 kernel: e820: reserve RAM buffer [mem 0x9cfdd000-0x9fffffff] Feb 9 18:52:55.831691 kernel: hpet0: at MMIO 0xfed00000, IRQs 2, 8, 0 Feb 9 18:52:55.831698 kernel: hpet0: 3 comparators, 64-bit 100.000000 MHz counter Feb 9 18:52:55.831705 kernel: clocksource: Switched to clocksource kvm-clock Feb 9 18:52:55.831712 kernel: VFS: Disk quotas dquot_6.6.0 Feb 9 18:52:55.831718 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 9 18:52:55.831725 kernel: pnp: PnP ACPI init Feb 9 18:52:55.831812 kernel: pnp 00:02: [dma 2] Feb 9 18:52:55.831824 kernel: pnp: PnP ACPI: found 6 devices Feb 9 18:52:55.831831 kernel: clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns Feb 9 18:52:55.831838 kernel: NET: Registered PF_INET protocol family Feb 9 18:52:55.831845 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 9 18:52:55.831852 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 9 18:52:55.831859 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 9 18:52:55.831866 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 9 18:52:55.831873 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 9 18:52:55.831881 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 9 18:52:55.831899 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 18:52:55.831908 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 18:52:55.831916 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 9 18:52:55.831923 kernel: NET: Registered PF_XDP protocol family Feb 9 18:52:55.831990 kernel: pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] Feb 9 18:52:55.832049 kernel: pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] Feb 9 18:52:55.832108 kernel: pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff window] Feb 9 18:52:55.832167 kernel: pci_bus 0000:00: resource 7 [mem 0x9d000000-0xfebfffff window] Feb 9 18:52:55.832229 kernel: pci_bus 0000:00: resource 8 [mem 0x100000000-0x17fffffff window] Feb 9 18:52:55.832300 kernel: pci 0000:00:01.0: PIIX3: Enabling Passive Release Feb 9 18:52:55.832381 kernel: pci 0000:00:00.0: Limiting direct PCI/PCI transfers Feb 9 18:52:55.832449 kernel: pci 0000:00:01.0: Activating ISA DMA hang workarounds Feb 9 18:52:55.832458 kernel: PCI: CLS 0 bytes, default 64 Feb 9 18:52:55.832465 kernel: Initialise system trusted keyrings Feb 9 18:52:55.832472 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 9 18:52:55.832479 kernel: Key type asymmetric registered Feb 9 18:52:55.832488 kernel: Asymmetric key parser 'x509' registered Feb 9 18:52:55.832496 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 9 18:52:55.832502 kernel: io scheduler mq-deadline registered Feb 9 18:52:55.832509 kernel: io scheduler kyber registered Feb 9 18:52:55.832517 kernel: io scheduler bfq registered Feb 9 18:52:55.832524 kernel: ioatdma: Intel(R) QuickData Technology Driver 5.00 Feb 9 18:52:55.832532 kernel: ACPI: \_SB_.LNKC: Enabled at IRQ 11 Feb 9 18:52:55.832542 kernel: ACPI: \_SB_.LNKD: Enabled at IRQ 10 Feb 9 18:52:55.832549 kernel: ACPI: \_SB_.LNKA: Enabled at IRQ 10 Feb 9 18:52:55.832557 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 9 18:52:55.832564 kernel: 00:04: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A Feb 9 18:52:55.832572 kernel: i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 Feb 9 18:52:55.832578 kernel: serio: i8042 KBD port at 0x60,0x64 irq 1 Feb 9 18:52:55.832585 kernel: serio: i8042 AUX port at 0x60,0x64 irq 12 Feb 9 18:52:55.832593 kernel: input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input0 Feb 9 18:52:55.832671 kernel: rtc_cmos 00:05: RTC can wake from S4 Feb 9 18:52:55.833419 kernel: rtc_cmos 00:05: registered as rtc0 Feb 9 18:52:55.833551 kernel: rtc_cmos 00:05: setting system clock to 2024-02-09T18:52:55 UTC (1707504775) Feb 9 18:52:55.833635 kernel: rtc_cmos 00:05: alarms up to one day, y3k, 242 bytes nvram, hpet irqs Feb 9 18:52:55.833646 kernel: NET: Registered PF_INET6 protocol family Feb 9 18:52:55.833655 kernel: Segment Routing with IPv6 Feb 9 18:52:55.833665 kernel: In-situ OAM (IOAM) with IPv6 Feb 9 18:52:55.833675 kernel: NET: Registered PF_PACKET protocol family Feb 9 18:52:55.833685 kernel: Key type dns_resolver registered Feb 9 18:52:55.833695 kernel: IPI shorthand broadcast: enabled Feb 9 18:52:55.833703 kernel: sched_clock: Marking stable (383119694, 70189095)->(459032586, -5723797) Feb 9 18:52:55.833713 kernel: registered taskstats version 1 Feb 9 18:52:55.833720 kernel: Loading compiled-in X.509 certificates Feb 9 18:52:55.833728 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: 56154408a02b3bd349a9e9180c9bd837fd1d636a' Feb 9 18:52:55.833735 kernel: Key type .fscrypt registered Feb 9 18:52:55.833742 kernel: Key type fscrypt-provisioning registered Feb 9 18:52:55.833749 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 9 18:52:55.833756 kernel: ima: Allocated hash algorithm: sha1 Feb 9 18:52:55.833763 kernel: ima: No architecture policies found Feb 9 18:52:55.833772 kernel: Freeing unused kernel image (initmem) memory: 45496K Feb 9 18:52:55.833779 kernel: Write protecting the kernel read-only data: 28672k Feb 9 18:52:55.833786 kernel: Freeing unused kernel image (text/rodata gap) memory: 2040K Feb 9 18:52:55.833794 kernel: Freeing unused kernel image (rodata/data gap) memory: 636K Feb 9 18:52:55.833801 kernel: Run /init as init process Feb 9 18:52:55.833808 kernel: with arguments: Feb 9 18:52:55.833816 kernel: /init Feb 9 18:52:55.833824 kernel: with environment: Feb 9 18:52:55.833839 kernel: HOME=/ Feb 9 18:52:55.833847 kernel: TERM=linux Feb 9 18:52:55.833856 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 9 18:52:55.833867 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 18:52:55.833877 systemd[1]: Detected virtualization kvm. Feb 9 18:52:55.833893 systemd[1]: Detected architecture x86-64. Feb 9 18:52:55.833901 systemd[1]: Running in initrd. Feb 9 18:52:55.833909 systemd[1]: No hostname configured, using default hostname. Feb 9 18:52:55.833916 systemd[1]: Hostname set to . Feb 9 18:52:55.833925 systemd[1]: Initializing machine ID from VM UUID. Feb 9 18:52:55.833933 systemd[1]: Queued start job for default target initrd.target. Feb 9 18:52:55.833941 systemd[1]: Started systemd-ask-password-console.path. Feb 9 18:52:55.833948 systemd[1]: Reached target cryptsetup.target. Feb 9 18:52:55.833956 systemd[1]: Reached target paths.target. Feb 9 18:52:55.833963 systemd[1]: Reached target slices.target. Feb 9 18:52:55.833970 systemd[1]: Reached target swap.target. Feb 9 18:52:55.833978 systemd[1]: Reached target timers.target. Feb 9 18:52:55.833987 systemd[1]: Listening on iscsid.socket. Feb 9 18:52:55.833995 systemd[1]: Listening on iscsiuio.socket. Feb 9 18:52:55.834003 systemd[1]: Listening on systemd-journald-audit.socket. Feb 9 18:52:55.834010 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 9 18:52:55.834018 systemd[1]: Listening on systemd-journald.socket. Feb 9 18:52:55.834026 systemd[1]: Listening on systemd-networkd.socket. Feb 9 18:52:55.834033 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 18:52:55.834042 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 18:52:55.834050 systemd[1]: Reached target sockets.target. Feb 9 18:52:55.834057 systemd[1]: Starting kmod-static-nodes.service... Feb 9 18:52:55.834065 systemd[1]: Finished network-cleanup.service. Feb 9 18:52:55.834072 systemd[1]: Starting systemd-fsck-usr.service... Feb 9 18:52:55.834080 systemd[1]: Starting systemd-journald.service... Feb 9 18:52:55.834088 systemd[1]: Starting systemd-modules-load.service... Feb 9 18:52:55.834097 systemd[1]: Starting systemd-resolved.service... Feb 9 18:52:55.834104 systemd[1]: Starting systemd-vconsole-setup.service... Feb 9 18:52:55.834112 systemd[1]: Finished kmod-static-nodes.service. Feb 9 18:52:55.834120 systemd[1]: Finished systemd-fsck-usr.service. Feb 9 18:52:55.834127 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 18:52:55.834139 systemd-journald[198]: Journal started Feb 9 18:52:55.834184 systemd-journald[198]: Runtime Journal (/run/log/journal/600f9d04579f4c1e86a223ed8c8c1602) is 6.0M, max 48.5M, 42.5M free. Feb 9 18:52:55.825565 systemd-modules-load[199]: Inserted module 'overlay' Feb 9 18:52:55.851648 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 18:52:55.851664 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 9 18:52:55.851680 kernel: Bridge firewalling registered Feb 9 18:52:55.844299 systemd-resolved[200]: Positive Trust Anchors: Feb 9 18:52:55.852000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.844309 systemd-resolved[200]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 18:52:55.855495 kernel: audit: type=1130 audit(1707504775.852:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.855512 systemd[1]: Started systemd-journald.service. Feb 9 18:52:55.844346 systemd-resolved[200]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 18:52:55.846527 systemd-resolved[200]: Defaulting to hostname 'linux'. Feb 9 18:52:55.847764 systemd-modules-load[199]: Inserted module 'br_netfilter' Feb 9 18:52:55.860000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.861011 systemd[1]: Started systemd-resolved.service. Feb 9 18:52:55.863793 kernel: audit: type=1130 audit(1707504775.860:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.863000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.864263 systemd[1]: Finished systemd-vconsole-setup.service. Feb 9 18:52:55.867492 kernel: audit: type=1130 audit(1707504775.863:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.867505 kernel: SCSI subsystem initialized Feb 9 18:52:55.867514 kernel: audit: type=1130 audit(1707504775.867:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.867000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.867598 systemd[1]: Reached target nss-lookup.target. Feb 9 18:52:55.871106 systemd[1]: Starting dracut-cmdline-ask.service... Feb 9 18:52:55.878159 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 9 18:52:55.878189 kernel: device-mapper: uevent: version 1.0.3 Feb 9 18:52:55.878199 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 9 18:52:55.880787 systemd-modules-load[199]: Inserted module 'dm_multipath' Feb 9 18:52:55.881541 systemd[1]: Finished systemd-modules-load.service. Feb 9 18:52:55.882000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.883175 systemd[1]: Starting systemd-sysctl.service... Feb 9 18:52:55.885748 kernel: audit: type=1130 audit(1707504775.882:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.885971 systemd[1]: Finished dracut-cmdline-ask.service. Feb 9 18:52:55.889603 kernel: audit: type=1130 audit(1707504775.886:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.886000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.888755 systemd[1]: Starting dracut-cmdline.service... Feb 9 18:52:55.890352 systemd[1]: Finished systemd-sysctl.service. Feb 9 18:52:55.893462 kernel: audit: type=1130 audit(1707504775.890:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.890000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:55.896518 dracut-cmdline[220]: dracut-dracut-053 Feb 9 18:52:55.898268 dracut-cmdline[220]: Using kernel command line parameters: rd.driver.pre=btrfs rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected verity.usrhash=4dbf910aaff679d18007a871aba359cc2cf6cb85992bb7598afad40271debbd6 Feb 9 18:52:55.950349 kernel: Loading iSCSI transport class v2.0-870. Feb 9 18:52:55.960346 kernel: iscsi: registered transport (tcp) Feb 9 18:52:55.978604 kernel: iscsi: registered transport (qla4xxx) Feb 9 18:52:55.978636 kernel: QLogic iSCSI HBA Driver Feb 9 18:52:56.003801 systemd[1]: Finished dracut-cmdline.service. Feb 9 18:52:56.003000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.007029 systemd[1]: Starting dracut-pre-udev.service... Feb 9 18:52:56.007996 kernel: audit: type=1130 audit(1707504776.003:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.052360 kernel: raid6: avx2x4 gen() 28001 MB/s Feb 9 18:52:56.069347 kernel: raid6: avx2x4 xor() 8053 MB/s Feb 9 18:52:56.086344 kernel: raid6: avx2x2 gen() 32348 MB/s Feb 9 18:52:56.103340 kernel: raid6: avx2x2 xor() 19197 MB/s Feb 9 18:52:56.120353 kernel: raid6: avx2x1 gen() 26280 MB/s Feb 9 18:52:56.137343 kernel: raid6: avx2x1 xor() 15245 MB/s Feb 9 18:52:56.154343 kernel: raid6: sse2x4 gen() 14726 MB/s Feb 9 18:52:56.171343 kernel: raid6: sse2x4 xor() 7666 MB/s Feb 9 18:52:56.188342 kernel: raid6: sse2x2 gen() 16302 MB/s Feb 9 18:52:56.205342 kernel: raid6: sse2x2 xor() 9769 MB/s Feb 9 18:52:56.222341 kernel: raid6: sse2x1 gen() 12805 MB/s Feb 9 18:52:56.239792 kernel: raid6: sse2x1 xor() 7755 MB/s Feb 9 18:52:56.239804 kernel: raid6: using algorithm avx2x2 gen() 32348 MB/s Feb 9 18:52:56.239815 kernel: raid6: .... xor() 19197 MB/s, rmw enabled Feb 9 18:52:56.239825 kernel: raid6: using avx2x2 recovery algorithm Feb 9 18:52:56.251351 kernel: xor: automatically using best checksumming function avx Feb 9 18:52:56.338348 kernel: Btrfs loaded, crc32c=crc32c-intel, zoned=no, fsverity=no Feb 9 18:52:56.347301 systemd[1]: Finished dracut-pre-udev.service. Feb 9 18:52:56.350409 kernel: audit: type=1130 audit(1707504776.347:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.347000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.350000 audit: BPF prog-id=7 op=LOAD Feb 9 18:52:56.350000 audit: BPF prog-id=8 op=LOAD Feb 9 18:52:56.350778 systemd[1]: Starting systemd-udevd.service... Feb 9 18:52:56.361679 systemd-udevd[400]: Using default interface naming scheme 'v252'. Feb 9 18:52:56.365418 systemd[1]: Started systemd-udevd.service. Feb 9 18:52:56.366363 systemd[1]: Starting dracut-pre-trigger.service... Feb 9 18:52:56.365000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.375887 dracut-pre-trigger[405]: rd.md=0: removing MD RAID activation Feb 9 18:52:56.401233 systemd[1]: Finished dracut-pre-trigger.service. Feb 9 18:52:56.400000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.402438 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 18:52:56.436371 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 18:52:56.436000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:56.461590 kernel: virtio_blk virtio1: [vda] 19775488 512-byte logical blocks (10.1 GB/9.43 GiB) Feb 9 18:52:56.465340 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 9 18:52:56.465360 kernel: GPT:9289727 != 19775487 Feb 9 18:52:56.465369 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 9 18:52:56.465378 kernel: GPT:9289727 != 19775487 Feb 9 18:52:56.465386 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 9 18:52:56.465398 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 18:52:56.472346 kernel: cryptd: max_cpu_qlen set to 1000 Feb 9 18:52:56.477341 kernel: libata version 3.00 loaded. Feb 9 18:52:56.479582 kernel: ata_piix 0000:00:01.1: version 2.13 Feb 9 18:52:56.486351 kernel: AVX2 version of gcm_enc/dec engaged. Feb 9 18:52:56.486381 kernel: AES CTR mode by8 optimization enabled Feb 9 18:52:56.486392 kernel: scsi host0: ata_piix Feb 9 18:52:56.487345 kernel: scsi host1: ata_piix Feb 9 18:52:56.487474 kernel: ata1: PATA max MWDMA2 cmd 0x1f0 ctl 0x3f6 bmdma 0xc0c0 irq 14 Feb 9 18:52:56.487486 kernel: ata2: PATA max MWDMA2 cmd 0x170 ctl 0x376 bmdma 0xc0c8 irq 15 Feb 9 18:52:56.492338 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/vda6 scanned by (udev-worker) (457) Feb 9 18:52:56.493612 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 9 18:52:56.514665 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 9 18:52:56.521864 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 9 18:52:56.525974 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 9 18:52:56.530978 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 18:52:56.532846 systemd[1]: Starting disk-uuid.service... Feb 9 18:52:56.556681 disk-uuid[519]: Primary Header is updated. Feb 9 18:52:56.556681 disk-uuid[519]: Secondary Entries is updated. Feb 9 18:52:56.556681 disk-uuid[519]: Secondary Header is updated. Feb 9 18:52:56.559338 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 18:52:56.561344 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 18:52:56.564350 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 18:52:56.641047 kernel: ata2.00: ATAPI: QEMU DVD-ROM, 2.5+, max UDMA/100 Feb 9 18:52:56.641103 kernel: scsi 1:0:0:0: CD-ROM QEMU QEMU DVD-ROM 2.5+ PQ: 0 ANSI: 5 Feb 9 18:52:56.670341 kernel: sr 1:0:0:0: [sr0] scsi3-mmc drive: 4x/4x cd/rw xa/form2 tray Feb 9 18:52:56.670509 kernel: cdrom: Uniform CD-ROM driver Revision: 3.20 Feb 9 18:52:56.687348 kernel: sr 1:0:0:0: Attached scsi CD-ROM sr0 Feb 9 18:52:57.564049 disk-uuid[520]: The operation has completed successfully. Feb 9 18:52:57.564889 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 18:52:57.588102 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 9 18:52:57.588000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.588000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.588182 systemd[1]: Finished disk-uuid.service. Feb 9 18:52:57.592132 systemd[1]: Starting verity-setup.service... Feb 9 18:52:57.605353 kernel: device-mapper: verity: sha256 using implementation "sha256-ni" Feb 9 18:52:57.620859 systemd[1]: Found device dev-mapper-usr.device. Feb 9 18:52:57.622720 systemd[1]: Mounting sysusr-usr.mount... Feb 9 18:52:57.624635 systemd[1]: Finished verity-setup.service. Feb 9 18:52:57.625000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.687349 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 9 18:52:57.687484 systemd[1]: Mounted sysusr-usr.mount. Feb 9 18:52:57.688659 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 9 18:52:57.690564 systemd[1]: Starting ignition-setup.service... Feb 9 18:52:57.692284 systemd[1]: Starting parse-ip-for-networkd.service... Feb 9 18:52:57.698630 kernel: BTRFS info (device vda6): using crc32c (crc32c-intel) checksum algorithm Feb 9 18:52:57.698663 kernel: BTRFS info (device vda6): using free space tree Feb 9 18:52:57.698674 kernel: BTRFS info (device vda6): has skinny extents Feb 9 18:52:57.706878 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 9 18:52:57.714034 systemd[1]: Finished ignition-setup.service. Feb 9 18:52:57.714000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.715932 systemd[1]: Starting ignition-fetch-offline.service... Feb 9 18:52:57.747750 ignition[638]: Ignition 2.14.0 Feb 9 18:52:57.747761 ignition[638]: Stage: fetch-offline Feb 9 18:52:57.747817 ignition[638]: no configs at "/usr/lib/ignition/base.d" Feb 9 18:52:57.747827 ignition[638]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:52:57.747925 ignition[638]: parsed url from cmdline: "" Feb 9 18:52:57.747928 ignition[638]: no config URL provided Feb 9 18:52:57.747933 ignition[638]: reading system config file "/usr/lib/ignition/user.ign" Feb 9 18:52:57.751000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.751513 systemd[1]: Finished parse-ip-for-networkd.service. Feb 9 18:52:57.747939 ignition[638]: no config at "/usr/lib/ignition/user.ign" Feb 9 18:52:57.753000 audit: BPF prog-id=9 op=LOAD Feb 9 18:52:57.747957 ignition[638]: op(1): [started] loading QEMU firmware config module Feb 9 18:52:57.747961 ignition[638]: op(1): executing: "modprobe" "qemu_fw_cfg" Feb 9 18:52:57.754446 systemd[1]: Starting systemd-networkd.service... Feb 9 18:52:57.752438 ignition[638]: op(1): [finished] loading QEMU firmware config module Feb 9 18:52:57.765897 ignition[638]: parsing config with SHA512: 757f08839f6c1ed823021ec8c28a5aa5ee690a9d6a6ff3e89ceab0dc84750ad6530b917048707c3871d7ea3b84700dbdf9930c44e2cdbd6eda234344c6ca24d8 Feb 9 18:52:57.783037 unknown[638]: fetched base config from "system" Feb 9 18:52:57.783052 unknown[638]: fetched user config from "qemu" Feb 9 18:52:57.783564 ignition[638]: fetch-offline: fetch-offline passed Feb 9 18:52:57.784601 systemd[1]: Finished ignition-fetch-offline.service. Feb 9 18:52:57.784000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.783619 ignition[638]: Ignition finished successfully Feb 9 18:52:57.787537 systemd-networkd[712]: lo: Link UP Feb 9 18:52:57.787546 systemd-networkd[712]: lo: Gained carrier Feb 9 18:52:57.788809 systemd-networkd[712]: Enumeration completed Feb 9 18:52:57.788900 systemd[1]: Started systemd-networkd.service. Feb 9 18:52:57.788000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.789347 systemd[1]: Reached target network.target. Feb 9 18:52:57.789601 systemd[1]: ignition-fetch.service was skipped because of an unmet condition check (ConditionPathExists=!/run/ignition.json). Feb 9 18:52:57.790319 systemd[1]: Starting ignition-kargs.service... Feb 9 18:52:57.792109 systemd[1]: Starting iscsiuio.service... Feb 9 18:52:57.794173 systemd-networkd[712]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 18:52:57.795787 systemd-networkd[712]: eth0: Link UP Feb 9 18:52:57.795905 systemd[1]: Started iscsiuio.service. Feb 9 18:52:57.796000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.796794 systemd-networkd[712]: eth0: Gained carrier Feb 9 18:52:57.797690 systemd[1]: Starting iscsid.service... Feb 9 18:52:57.800443 iscsid[719]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 9 18:52:57.800443 iscsid[719]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 9 18:52:57.800443 iscsid[719]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 9 18:52:57.800443 iscsid[719]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 9 18:52:57.800443 iscsid[719]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 9 18:52:57.800443 iscsid[719]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 9 18:52:57.805000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.808000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.803724 ignition[715]: Ignition 2.14.0 Feb 9 18:52:57.801513 systemd[1]: Started iscsid.service. Feb 9 18:52:57.803730 ignition[715]: Stage: kargs Feb 9 18:52:57.806118 systemd[1]: Starting dracut-initqueue.service... Feb 9 18:52:57.803821 ignition[715]: no configs at "/usr/lib/ignition/base.d" Feb 9 18:52:57.807514 systemd[1]: Finished ignition-kargs.service. Feb 9 18:52:57.803830 ignition[715]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:52:57.809652 systemd[1]: Starting ignition-disks.service... Feb 9 18:52:57.817000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.804852 ignition[715]: kargs: kargs passed Feb 9 18:52:57.814450 systemd-networkd[712]: eth0: DHCPv4 address 10.0.0.69/16, gateway 10.0.0.1 acquired from 10.0.0.1 Feb 9 18:52:57.804897 ignition[715]: Ignition finished successfully Feb 9 18:52:57.816694 systemd[1]: Finished dracut-initqueue.service. Feb 9 18:52:57.817647 ignition[726]: Ignition 2.14.0 Feb 9 18:52:57.817420 systemd[1]: Reached target remote-fs-pre.target. Feb 9 18:52:57.817652 ignition[726]: Stage: disks Feb 9 18:52:57.817982 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 18:52:57.817733 ignition[726]: no configs at "/usr/lib/ignition/base.d" Feb 9 18:52:57.818646 systemd[1]: Reached target remote-fs.target. Feb 9 18:52:57.817741 ignition[726]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:52:57.818575 ignition[726]: disks: disks passed Feb 9 18:52:57.818610 ignition[726]: Ignition finished successfully Feb 9 18:52:57.825888 systemd[1]: Starting dracut-pre-mount.service... Feb 9 18:52:57.828281 systemd[1]: Finished ignition-disks.service. Feb 9 18:52:57.829000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.829494 systemd[1]: Reached target initrd-root-device.target. Feb 9 18:52:57.830673 systemd[1]: Reached target local-fs-pre.target. Feb 9 18:52:57.831746 systemd[1]: Reached target local-fs.target. Feb 9 18:52:57.832756 systemd[1]: Reached target sysinit.target. Feb 9 18:52:57.833736 systemd[1]: Reached target basic.target. Feb 9 18:52:57.834907 systemd[1]: Finished dracut-pre-mount.service. Feb 9 18:52:57.835000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.836543 systemd[1]: Starting systemd-fsck-root.service... Feb 9 18:52:57.845109 systemd-fsck[746]: ROOT: clean, 602/553520 files, 56014/553472 blocks Feb 9 18:52:57.849862 systemd[1]: Finished systemd-fsck-root.service. Feb 9 18:52:57.850000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.851868 systemd[1]: Mounting sysroot.mount... Feb 9 18:52:57.857918 systemd[1]: Mounted sysroot.mount. Feb 9 18:52:57.858875 kernel: EXT4-fs (vda9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 9 18:52:57.858885 systemd[1]: Reached target initrd-root-fs.target. Feb 9 18:52:57.860662 systemd[1]: Mounting sysroot-usr.mount... Feb 9 18:52:57.861840 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 9 18:52:57.861872 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 9 18:52:57.861891 systemd[1]: Reached target ignition-diskful.target. Feb 9 18:52:57.865679 systemd[1]: Mounted sysroot-usr.mount. Feb 9 18:52:57.867193 systemd[1]: Starting initrd-setup-root.service... Feb 9 18:52:57.870740 initrd-setup-root[756]: cut: /sysroot/etc/passwd: No such file or directory Feb 9 18:52:57.874108 initrd-setup-root[764]: cut: /sysroot/etc/group: No such file or directory Feb 9 18:52:57.877201 initrd-setup-root[772]: cut: /sysroot/etc/shadow: No such file or directory Feb 9 18:52:57.879757 initrd-setup-root[780]: cut: /sysroot/etc/gshadow: No such file or directory Feb 9 18:52:57.901485 systemd[1]: Finished initrd-setup-root.service. Feb 9 18:52:57.901000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.902589 systemd[1]: Starting ignition-mount.service... Feb 9 18:52:57.903380 systemd[1]: Starting sysroot-boot.service... Feb 9 18:52:57.909435 bash[798]: umount: /sysroot/usr/share/oem: not mounted. Feb 9 18:52:57.918306 systemd[1]: Finished sysroot-boot.service. Feb 9 18:52:57.918000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.919452 ignition[799]: INFO : Ignition 2.14.0 Feb 9 18:52:57.919452 ignition[799]: INFO : Stage: mount Feb 9 18:52:57.919452 ignition[799]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 18:52:57.919452 ignition[799]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:52:57.921000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:52:57.922611 ignition[799]: INFO : mount: mount passed Feb 9 18:52:57.922611 ignition[799]: INFO : Ignition finished successfully Feb 9 18:52:57.920647 systemd[1]: Finished ignition-mount.service. Feb 9 18:52:58.120291 systemd-resolved[200]: Detected conflict on linux IN A 10.0.0.69 Feb 9 18:52:58.120308 systemd-resolved[200]: Hostname conflict, changing published hostname from 'linux' to 'linux3'. Feb 9 18:52:58.631302 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 18:52:58.636825 kernel: BTRFS: device label OEM devid 1 transid 13 /dev/vda6 scanned by mount (807) Feb 9 18:52:58.636851 kernel: BTRFS info (device vda6): using crc32c (crc32c-intel) checksum algorithm Feb 9 18:52:58.636861 kernel: BTRFS info (device vda6): using free space tree Feb 9 18:52:58.637413 kernel: BTRFS info (device vda6): has skinny extents Feb 9 18:52:58.641028 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 18:52:58.642907 systemd[1]: Starting ignition-files.service... Feb 9 18:52:58.655489 ignition[827]: INFO : Ignition 2.14.0 Feb 9 18:52:58.655489 ignition[827]: INFO : Stage: files Feb 9 18:52:58.656802 ignition[827]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 18:52:58.656802 ignition[827]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:52:58.659002 ignition[827]: DEBUG : files: compiled without relabeling support, skipping Feb 9 18:52:58.660188 ignition[827]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 9 18:52:58.660188 ignition[827]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 9 18:52:58.662485 ignition[827]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 9 18:52:58.663472 ignition[827]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 9 18:52:58.664731 unknown[827]: wrote ssh authorized keys file for user: core Feb 9 18:52:58.665507 ignition[827]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 9 18:52:58.666672 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Feb 9 18:52:58.668027 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-amd64-v1.3.0.tgz: attempt #1 Feb 9 18:52:58.838463 systemd-networkd[712]: eth0: Gained IPv6LL Feb 9 18:52:59.025950 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET result: OK Feb 9 18:52:59.237827 ignition[827]: DEBUG : files: createFilesystemsFiles: createFiles: op(3): file matches expected sum of: 5d0324ca8a3c90c680b6e1fddb245a2255582fa15949ba1f3c6bb7323df9d3af754dae98d6e40ac9ccafb2999c932df2c4288d418949a4915d928eb23c090540 Feb 9 18:52:59.241177 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Feb 9 18:52:59.241177 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Feb 9 18:52:59.241177 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-amd64.tar.gz: attempt #1 Feb 9 18:52:59.534084 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET result: OK Feb 9 18:52:59.607477 ignition[827]: DEBUG : files: createFilesystemsFiles: createFiles: op(4): file matches expected sum of: aa622325bf05520939f9e020d7a28ab48ac23e2fae6f47d5a4e52174c88c1ebc31b464853e4fd65bd8f5331f330a6ca96fd370d247d3eeaed042da4ee2d1219a Feb 9 18:52:59.607477 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Feb 9 18:52:59.611646 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 9 18:52:59.611646 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubeadm: attempt #1 Feb 9 18:52:59.674300 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET result: OK Feb 9 18:53:00.090949 ignition[827]: DEBUG : files: createFilesystemsFiles: createFiles: op(5): file matches expected sum of: f40216b7d14046931c58072d10c7122934eac5a23c08821371f8b08ac1779443ad11d3458a4c5dcde7cf80fc600a9fefb14b1942aa46a52330248d497ca88836 Feb 9 18:53:00.090949 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 9 18:53:00.094405 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubelet" Feb 9 18:53:00.094405 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubelet: attempt #1 Feb 9 18:53:00.144590 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET result: OK Feb 9 18:53:00.559850 ignition[827]: DEBUG : files: createFilesystemsFiles: createFiles: op(6): file matches expected sum of: a283da2224d456958b2cb99b4f6faf4457c4ed89e9e95f37d970c637f6a7f64ff4dd4d2bfce538759b2d2090933bece599a285ef8fd132eb383fece9a3941560 Feb 9 18:53:00.559850 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/home/core/install.sh" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/home/core/install.sh" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 18:53:00.564923 ignition[827]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(a): [started] processing unit "prepare-critools.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(a): op(b): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(a): op(b): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(a): [finished] processing unit "prepare-critools.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(c): [started] processing unit "coreos-metadata.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(c): op(d): [started] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(c): op(d): [finished] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(c): [finished] processing unit "coreos-metadata.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(e): [started] processing unit "prepare-cni-plugins.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(e): op(f): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(e): op(f): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 18:53:00.564923 ignition[827]: INFO : files: op(e): [finished] processing unit "prepare-cni-plugins.service" Feb 9 18:53:00.603080 kernel: kauditd_printk_skb: 23 callbacks suppressed Feb 9 18:53:00.603105 kernel: audit: type=1130 audit(1707504780.581:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.603116 kernel: audit: type=1130 audit(1707504780.589:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.603127 kernel: audit: type=1130 audit(1707504780.593:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.603136 kernel: audit: type=1131 audit(1707504780.593:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.581000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.589000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.593000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.593000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(10): [started] setting preset to enabled for "prepare-critools.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(10): [finished] setting preset to enabled for "prepare-critools.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(11): [started] setting preset to disabled for "coreos-metadata.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(11): op(12): [started] removing enablement symlink(s) for "coreos-metadata.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(11): op(12): [finished] removing enablement symlink(s) for "coreos-metadata.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(11): [finished] setting preset to disabled for "coreos-metadata.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(13): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: op(13): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 18:53:00.603268 ignition[827]: INFO : files: createResultFile: createFiles: op(14): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 9 18:53:00.603268 ignition[827]: INFO : files: createResultFile: createFiles: op(14): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 9 18:53:00.603268 ignition[827]: INFO : files: files passed Feb 9 18:53:00.603268 ignition[827]: INFO : Ignition finished successfully Feb 9 18:53:00.621528 kernel: audit: type=1130 audit(1707504780.614:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.621547 kernel: audit: type=1131 audit(1707504780.614:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.614000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.614000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.580407 systemd[1]: Finished ignition-files.service. Feb 9 18:53:00.582438 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 9 18:53:00.624002 initrd-setup-root-after-ignition[850]: grep: /sysroot/usr/share/oem/oem-release: No such file or directory Feb 9 18:53:00.586419 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 9 18:53:00.626532 initrd-setup-root-after-ignition[853]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 9 18:53:00.586919 systemd[1]: Starting ignition-quench.service... Feb 9 18:53:00.588544 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 9 18:53:00.590317 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 9 18:53:00.630000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.590385 systemd[1]: Finished ignition-quench.service. Feb 9 18:53:00.594037 systemd[1]: Reached target ignition-complete.target. Feb 9 18:53:00.634567 kernel: audit: type=1130 audit(1707504780.630:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.602434 systemd[1]: Starting initrd-parse-etc.service... Feb 9 18:53:00.613111 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 9 18:53:00.613191 systemd[1]: Finished initrd-parse-etc.service. Feb 9 18:53:00.615084 systemd[1]: Reached target initrd-fs.target. Feb 9 18:53:00.620345 systemd[1]: Reached target initrd.target. Feb 9 18:53:00.621555 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 9 18:53:00.622064 systemd[1]: Starting dracut-pre-pivot.service... Feb 9 18:53:00.629839 systemd[1]: Finished dracut-pre-pivot.service. Feb 9 18:53:00.631265 systemd[1]: Starting initrd-cleanup.service... Feb 9 18:53:00.639296 systemd[1]: Stopped target nss-lookup.target. Feb 9 18:53:00.639873 systemd[1]: Stopped target remote-cryptsetup.target. Feb 9 18:53:00.642000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.640929 systemd[1]: Stopped target timers.target. Feb 9 18:53:00.641997 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 9 18:53:00.647527 kernel: audit: type=1131 audit(1707504780.642:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.642093 systemd[1]: Stopped dracut-pre-pivot.service. Feb 9 18:53:00.643099 systemd[1]: Stopped target initrd.target. Feb 9 18:53:00.645255 systemd[1]: Stopped target basic.target. Feb 9 18:53:00.645590 systemd[1]: Stopped target ignition-complete.target. Feb 9 18:53:00.647903 systemd[1]: Stopped target ignition-diskful.target. Feb 9 18:53:00.648118 systemd[1]: Stopped target initrd-root-device.target. Feb 9 18:53:00.648368 systemd[1]: Stopped target remote-fs.target. Feb 9 18:53:00.650893 systemd[1]: Stopped target remote-fs-pre.target. Feb 9 18:53:00.651119 systemd[1]: Stopped target sysinit.target. Feb 9 18:53:00.651359 systemd[1]: Stopped target local-fs.target. Feb 9 18:53:00.656000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.651578 systemd[1]: Stopped target local-fs-pre.target. Feb 9 18:53:00.660251 kernel: audit: type=1131 audit(1707504780.656:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.651807 systemd[1]: Stopped target swap.target. Feb 9 18:53:00.660000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.655753 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 9 18:53:00.664238 kernel: audit: type=1131 audit(1707504780.660:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.660000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.655861 systemd[1]: Stopped dracut-pre-mount.service. Feb 9 18:53:00.656843 systemd[1]: Stopped target cryptsetup.target. Feb 9 18:53:00.658968 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 9 18:53:00.659061 systemd[1]: Stopped dracut-initqueue.service. Feb 9 18:53:00.660664 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 9 18:53:00.660805 systemd[1]: Stopped ignition-fetch-offline.service. Feb 9 18:53:00.662919 systemd[1]: Stopped target paths.target. Feb 9 18:53:00.664590 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 9 18:53:00.669360 systemd[1]: Stopped systemd-ask-password-console.path. Feb 9 18:53:00.670086 systemd[1]: Stopped target slices.target. Feb 9 18:53:00.670308 systemd[1]: Stopped target sockets.target. Feb 9 18:53:00.672396 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 9 18:53:00.672000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.672519 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 9 18:53:00.674000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.672829 systemd[1]: ignition-files.service: Deactivated successfully. Feb 9 18:53:00.672919 systemd[1]: Stopped ignition-files.service. Feb 9 18:53:00.675310 systemd[1]: Stopping ignition-mount.service... Feb 9 18:53:00.677491 iscsid[719]: iscsid shutting down. Feb 9 18:53:00.678932 systemd[1]: Stopping iscsid.service... Feb 9 18:53:00.679935 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 9 18:53:00.680743 systemd[1]: Stopped kmod-static-nodes.service. Feb 9 18:53:00.681000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.682227 ignition[867]: INFO : Ignition 2.14.0 Feb 9 18:53:00.682227 ignition[867]: INFO : Stage: umount Feb 9 18:53:00.683653 ignition[867]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 18:53:00.683653 ignition[867]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 18:53:00.683653 ignition[867]: INFO : umount: umount passed Feb 9 18:53:00.683653 ignition[867]: INFO : Ignition finished successfully Feb 9 18:53:00.686453 systemd[1]: Stopping sysroot-boot.service... Feb 9 18:53:00.687528 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 9 18:53:00.688405 systemd[1]: Stopped systemd-udev-trigger.service. Feb 9 18:53:00.689000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.689837 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 9 18:53:00.690692 systemd[1]: Stopped dracut-pre-trigger.service. Feb 9 18:53:00.691000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.693936 systemd[1]: iscsid.service: Deactivated successfully. Feb 9 18:53:00.694640 systemd[1]: Stopped iscsid.service. Feb 9 18:53:00.695000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.696142 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 9 18:53:00.696900 systemd[1]: Stopped ignition-mount.service. Feb 9 18:53:00.697000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.699033 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 9 18:53:00.700909 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 9 18:53:00.701725 systemd[1]: Finished initrd-cleanup.service. Feb 9 18:53:00.702000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.702000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.703578 systemd[1]: iscsid.socket: Deactivated successfully. Feb 9 18:53:00.703608 systemd[1]: Closed iscsid.socket. Feb 9 18:53:00.705158 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 9 18:53:00.705195 systemd[1]: Stopped ignition-disks.service. Feb 9 18:53:00.706000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.707067 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 9 18:53:00.707096 systemd[1]: Stopped ignition-kargs.service. Feb 9 18:53:00.708000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.708862 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 9 18:53:00.709000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.708890 systemd[1]: Stopped ignition-setup.service. Feb 9 18:53:00.710189 systemd[1]: Stopping iscsiuio.service... Feb 9 18:53:00.711854 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 9 18:53:00.712571 systemd[1]: Stopped sysroot-boot.service. Feb 9 18:53:00.713000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.713823 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 9 18:53:00.714501 systemd[1]: Stopped iscsiuio.service. Feb 9 18:53:00.715000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.715601 systemd[1]: Stopped target network.target. Feb 9 18:53:00.716698 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 9 18:53:00.716727 systemd[1]: Closed iscsiuio.socket. Feb 9 18:53:00.718265 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 9 18:53:00.718302 systemd[1]: Stopped initrd-setup-root.service. Feb 9 18:53:00.719000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.720228 systemd[1]: Stopping systemd-networkd.service... Feb 9 18:53:00.721475 systemd[1]: Stopping systemd-resolved.service... Feb 9 18:53:00.726370 systemd-networkd[712]: eth0: DHCPv6 lease lost Feb 9 18:53:00.727338 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 9 18:53:00.728086 systemd[1]: Stopped systemd-networkd.service. Feb 9 18:53:00.728000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.729798 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 9 18:53:00.729833 systemd[1]: Closed systemd-networkd.socket. Feb 9 18:53:00.732208 systemd[1]: Stopping network-cleanup.service... Feb 9 18:53:00.732000 audit: BPF prog-id=9 op=UNLOAD Feb 9 18:53:00.733399 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 9 18:53:00.733439 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 9 18:53:00.734000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.735276 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 9 18:53:00.735308 systemd[1]: Stopped systemd-sysctl.service. Feb 9 18:53:00.736000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.737180 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 9 18:53:00.737889 systemd[1]: Stopped systemd-modules-load.service. Feb 9 18:53:00.738000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.739301 systemd[1]: Stopping systemd-udevd.service... Feb 9 18:53:00.741774 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Feb 9 18:53:00.743039 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 9 18:53:00.743834 systemd[1]: Stopped systemd-resolved.service. Feb 9 18:53:00.744000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.747104 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 9 18:53:00.747852 systemd[1]: Stopped systemd-udevd.service. Feb 9 18:53:00.748000 audit: BPF prog-id=6 op=UNLOAD Feb 9 18:53:00.748000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.749593 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 9 18:53:00.750384 systemd[1]: Stopped network-cleanup.service. Feb 9 18:53:00.751000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.751671 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 9 18:53:00.751703 systemd[1]: Closed systemd-udevd-control.socket. Feb 9 18:53:00.753703 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 9 18:53:00.753731 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 9 18:53:00.755586 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 9 18:53:00.756225 systemd[1]: Stopped dracut-pre-udev.service. Feb 9 18:53:00.756000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.757362 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 9 18:53:00.757391 systemd[1]: Stopped dracut-cmdline.service. Feb 9 18:53:00.758000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.758581 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 9 18:53:00.760000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.759067 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 9 18:53:00.761519 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 9 18:53:00.762718 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 9 18:53:00.762758 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 9 18:53:00.764000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.766255 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 9 18:53:00.767066 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 9 18:53:00.767000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.767000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:00.768313 systemd[1]: Reached target initrd-switch-root.target. Feb 9 18:53:00.770082 systemd[1]: Starting initrd-switch-root.service... Feb 9 18:53:00.783702 systemd[1]: Switching root. Feb 9 18:53:00.804817 systemd-journald[198]: Journal stopped Feb 9 18:53:03.772484 systemd-journald[198]: Received SIGTERM from PID 1 (systemd). Feb 9 18:53:03.772553 kernel: SELinux: Class mctp_socket not defined in policy. Feb 9 18:53:03.772572 kernel: SELinux: Class anon_inode not defined in policy. Feb 9 18:53:03.772587 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 9 18:53:03.772609 kernel: SELinux: policy capability network_peer_controls=1 Feb 9 18:53:03.772623 kernel: SELinux: policy capability open_perms=1 Feb 9 18:53:03.772636 kernel: SELinux: policy capability extended_socket_class=1 Feb 9 18:53:03.772655 kernel: SELinux: policy capability always_check_network=0 Feb 9 18:53:03.772680 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 9 18:53:03.772709 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 9 18:53:03.772727 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 9 18:53:03.772740 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 9 18:53:03.772754 systemd[1]: Successfully loaded SELinux policy in 36.402ms. Feb 9 18:53:03.772779 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 6.768ms. Feb 9 18:53:03.772796 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 18:53:03.772812 systemd[1]: Detected virtualization kvm. Feb 9 18:53:03.772829 systemd[1]: Detected architecture x86-64. Feb 9 18:53:03.772844 systemd[1]: Detected first boot. Feb 9 18:53:03.772861 systemd[1]: Initializing machine ID from VM UUID. Feb 9 18:53:03.772875 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 9 18:53:03.772889 systemd[1]: Populated /etc with preset unit settings. Feb 9 18:53:03.772905 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 18:53:03.772921 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 18:53:03.772938 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 18:53:03.772958 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 9 18:53:03.772973 systemd[1]: Stopped initrd-switch-root.service. Feb 9 18:53:03.772987 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 9 18:53:03.773002 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 9 18:53:03.773021 systemd[1]: Created slice system-addon\x2drun.slice. Feb 9 18:53:03.773033 systemd[1]: Created slice system-getty.slice. Feb 9 18:53:03.773043 systemd[1]: Created slice system-modprobe.slice. Feb 9 18:53:03.773053 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 9 18:53:03.773065 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 9 18:53:03.773074 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 9 18:53:03.773085 systemd[1]: Created slice user.slice. Feb 9 18:53:03.773095 systemd[1]: Started systemd-ask-password-console.path. Feb 9 18:53:03.773104 systemd[1]: Started systemd-ask-password-wall.path. Feb 9 18:53:03.773114 systemd[1]: Set up automount boot.automount. Feb 9 18:53:03.773124 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 9 18:53:03.773138 systemd[1]: Stopped target initrd-switch-root.target. Feb 9 18:53:03.773152 systemd[1]: Stopped target initrd-fs.target. Feb 9 18:53:03.773169 systemd[1]: Stopped target initrd-root-fs.target. Feb 9 18:53:03.773184 systemd[1]: Reached target integritysetup.target. Feb 9 18:53:03.773199 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 18:53:03.773214 systemd[1]: Reached target remote-fs.target. Feb 9 18:53:03.773229 systemd[1]: Reached target slices.target. Feb 9 18:53:03.773243 systemd[1]: Reached target swap.target. Feb 9 18:53:03.773258 systemd[1]: Reached target torcx.target. Feb 9 18:53:03.773273 systemd[1]: Reached target veritysetup.target. Feb 9 18:53:03.773290 systemd[1]: Listening on systemd-coredump.socket. Feb 9 18:53:03.773304 systemd[1]: Listening on systemd-initctl.socket. Feb 9 18:53:03.773341 systemd[1]: Listening on systemd-networkd.socket. Feb 9 18:53:03.773358 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 18:53:03.773380 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 18:53:03.773401 systemd[1]: Listening on systemd-userdbd.socket. Feb 9 18:53:03.773421 systemd[1]: Mounting dev-hugepages.mount... Feb 9 18:53:03.773441 systemd[1]: Mounting dev-mqueue.mount... Feb 9 18:53:03.773462 systemd[1]: Mounting media.mount... Feb 9 18:53:03.773483 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Feb 9 18:53:03.773502 systemd[1]: Mounting sys-kernel-debug.mount... Feb 9 18:53:03.773519 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 9 18:53:03.773534 systemd[1]: Mounting tmp.mount... Feb 9 18:53:03.773549 systemd[1]: Starting flatcar-tmpfiles.service... Feb 9 18:53:03.773565 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 9 18:53:03.773580 systemd[1]: Starting kmod-static-nodes.service... Feb 9 18:53:03.773594 systemd[1]: Starting modprobe@configfs.service... Feb 9 18:53:03.773618 systemd[1]: Starting modprobe@dm_mod.service... Feb 9 18:53:03.773633 systemd[1]: Starting modprobe@drm.service... Feb 9 18:53:03.773661 systemd[1]: Starting modprobe@efi_pstore.service... Feb 9 18:53:03.773681 systemd[1]: Starting modprobe@fuse.service... Feb 9 18:53:03.773705 systemd[1]: Starting modprobe@loop.service... Feb 9 18:53:03.773721 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 9 18:53:03.773736 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 9 18:53:03.773751 systemd[1]: Stopped systemd-fsck-root.service. Feb 9 18:53:03.773765 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 9 18:53:03.773782 systemd[1]: Stopped systemd-fsck-usr.service. Feb 9 18:53:03.773800 systemd[1]: Stopped systemd-journald.service. Feb 9 18:53:03.773815 systemd[1]: Starting systemd-journald.service... Feb 9 18:53:03.773830 kernel: loop: module loaded Feb 9 18:53:03.773843 kernel: fuse: init (API version 7.34) Feb 9 18:53:03.773879 systemd[1]: Starting systemd-modules-load.service... Feb 9 18:53:03.773900 systemd[1]: Starting systemd-network-generator.service... Feb 9 18:53:03.773916 systemd[1]: Starting systemd-remount-fs.service... Feb 9 18:53:03.773931 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 18:53:03.773945 systemd[1]: verity-setup.service: Deactivated successfully. Feb 9 18:53:03.773960 systemd[1]: Stopped verity-setup.service. Feb 9 18:53:03.773978 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Feb 9 18:53:03.773992 systemd[1]: Mounted dev-hugepages.mount. Feb 9 18:53:03.774021 systemd[1]: Mounted dev-mqueue.mount. Feb 9 18:53:03.774031 systemd[1]: Mounted media.mount. Feb 9 18:53:03.774041 systemd[1]: Mounted sys-kernel-debug.mount. Feb 9 18:53:03.774051 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 9 18:53:03.774061 systemd[1]: Mounted tmp.mount. Feb 9 18:53:03.774070 systemd[1]: Finished kmod-static-nodes.service. Feb 9 18:53:03.774081 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 9 18:53:03.774092 systemd[1]: Finished modprobe@configfs.service. Feb 9 18:53:03.774104 systemd-journald[973]: Journal started Feb 9 18:53:03.774143 systemd-journald[973]: Runtime Journal (/run/log/journal/600f9d04579f4c1e86a223ed8c8c1602) is 6.0M, max 48.5M, 42.5M free. Feb 9 18:53:00.862000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 9 18:53:01.550000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 18:53:01.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 18:53:01.550000 audit: BPF prog-id=10 op=LOAD Feb 9 18:53:01.550000 audit: BPF prog-id=10 op=UNLOAD Feb 9 18:53:01.550000 audit: BPF prog-id=11 op=LOAD Feb 9 18:53:01.550000 audit: BPF prog-id=11 op=UNLOAD Feb 9 18:53:01.581000 audit[900]: AVC avc: denied { associate } for pid=900 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 18:53:01.581000 audit[900]: SYSCALL arch=c000003e syscall=188 success=yes exit=0 a0=c0001878e2 a1=c00002ae40 a2=c000029100 a3=32 items=0 ppid=883 pid=900 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:01.581000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 18:53:01.582000 audit[900]: AVC avc: denied { associate } for pid=900 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 18:53:01.582000 audit[900]: SYSCALL arch=c000003e syscall=258 success=yes exit=0 a0=ffffffffffffff9c a1=c0001879b9 a2=1ed a3=0 items=2 ppid=883 pid=900 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:01.582000 audit: CWD cwd="/" Feb 9 18:53:01.582000 audit: PATH item=0 name=(null) inode=2 dev=00:1b mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:01.582000 audit: PATH item=1 name=(null) inode=3 dev=00:1b mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:01.582000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 18:53:03.658000 audit: BPF prog-id=12 op=LOAD Feb 9 18:53:03.658000 audit: BPF prog-id=3 op=UNLOAD Feb 9 18:53:03.658000 audit: BPF prog-id=13 op=LOAD Feb 9 18:53:03.658000 audit: BPF prog-id=14 op=LOAD Feb 9 18:53:03.658000 audit: BPF prog-id=4 op=UNLOAD Feb 9 18:53:03.658000 audit: BPF prog-id=5 op=UNLOAD Feb 9 18:53:03.659000 audit: BPF prog-id=15 op=LOAD Feb 9 18:53:03.659000 audit: BPF prog-id=12 op=UNLOAD Feb 9 18:53:03.659000 audit: BPF prog-id=16 op=LOAD Feb 9 18:53:03.659000 audit: BPF prog-id=17 op=LOAD Feb 9 18:53:03.659000 audit: BPF prog-id=13 op=UNLOAD Feb 9 18:53:03.659000 audit: BPF prog-id=14 op=UNLOAD Feb 9 18:53:03.660000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.663000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.663000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.668000 audit: BPF prog-id=15 op=UNLOAD Feb 9 18:53:03.744000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.746000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.747000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.747000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.748000 audit: BPF prog-id=18 op=LOAD Feb 9 18:53:03.748000 audit: BPF prog-id=19 op=LOAD Feb 9 18:53:03.748000 audit: BPF prog-id=20 op=LOAD Feb 9 18:53:03.748000 audit: BPF prog-id=16 op=UNLOAD Feb 9 18:53:03.748000 audit: BPF prog-id=17 op=UNLOAD Feb 9 18:53:03.761000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.770000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 9 18:53:03.770000 audit[973]: SYSCALL arch=c000003e syscall=46 success=yes exit=60 a0=6 a1=7ffc99bbc9b0 a2=4000 a3=7ffc99bbca4c items=0 ppid=1 pid=973 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:03.770000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 9 18:53:03.772000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.774000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.774000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:01.580374 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 18:53:03.657654 systemd[1]: Queued start job for default target multi-user.target. Feb 9 18:53:01.580573 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 18:53:03.657665 systemd[1]: Unnecessary job was removed for dev-vda6.device. Feb 9 18:53:01.580590 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 18:53:03.660708 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 9 18:53:03.775821 systemd[1]: Started systemd-journald.service. Feb 9 18:53:01.580616 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 9 18:53:01.580625 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 9 18:53:01.580651 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 9 18:53:01.580662 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 9 18:53:01.580875 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 9 18:53:01.580904 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 18:53:01.580915 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 18:53:01.581195 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 9 18:53:03.776000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:01.581224 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 9 18:53:01.581238 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 9 18:53:01.581251 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 9 18:53:01.581265 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 9 18:53:01.581277 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:01Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 9 18:53:03.776763 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 9 18:53:03.399778 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 18:53:03.400040 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 18:53:03.776933 systemd[1]: Finished modprobe@dm_mod.service. Feb 9 18:53:03.400126 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 18:53:03.400263 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 18:53:03.400306 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 9 18:53:03.400383 /usr/lib/systemd/system-generators/torcx-generator[900]: time="2024-02-09T18:53:03Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 9 18:53:03.777000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.777000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.777820 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 9 18:53:03.777960 systemd[1]: Finished modprobe@drm.service. Feb 9 18:53:03.778000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.778000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.778733 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 9 18:53:03.778881 systemd[1]: Finished modprobe@efi_pstore.service. Feb 9 18:53:03.779000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.779000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.779717 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 9 18:53:03.779825 systemd[1]: Finished modprobe@fuse.service. Feb 9 18:53:03.780000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.780000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.780770 systemd[1]: Finished flatcar-tmpfiles.service. Feb 9 18:53:03.781000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.781618 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 9 18:53:03.781790 systemd[1]: Finished modprobe@loop.service. Feb 9 18:53:03.782000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.782000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.782698 systemd[1]: Finished systemd-modules-load.service. Feb 9 18:53:03.782000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.783562 systemd[1]: Finished systemd-network-generator.service. Feb 9 18:53:03.783000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.784522 systemd[1]: Finished systemd-remount-fs.service. Feb 9 18:53:03.784000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.785493 systemd[1]: Reached target network-pre.target. Feb 9 18:53:03.787131 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 9 18:53:03.788662 systemd[1]: Mounting sys-kernel-config.mount... Feb 9 18:53:03.789189 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 9 18:53:03.791190 systemd[1]: Starting systemd-hwdb-update.service... Feb 9 18:53:03.792582 systemd[1]: Starting systemd-journal-flush.service... Feb 9 18:53:03.793314 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 9 18:53:03.794387 systemd[1]: Starting systemd-random-seed.service... Feb 9 18:53:03.795050 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 9 18:53:03.796518 systemd-journald[973]: Time spent on flushing to /var/log/journal/600f9d04579f4c1e86a223ed8c8c1602 is 26.710ms for 1105 entries. Feb 9 18:53:03.796518 systemd-journald[973]: System Journal (/var/log/journal/600f9d04579f4c1e86a223ed8c8c1602) is 8.0M, max 195.6M, 187.6M free. Feb 9 18:53:03.835198 systemd-journald[973]: Received client request to flush runtime journal. Feb 9 18:53:03.805000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.806000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.815000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.825000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.795757 systemd[1]: Starting systemd-sysctl.service... Feb 9 18:53:03.797777 systemd[1]: Starting systemd-sysusers.service... Feb 9 18:53:03.799904 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 9 18:53:03.800744 systemd[1]: Mounted sys-kernel-config.mount. Feb 9 18:53:03.805652 systemd[1]: Finished systemd-random-seed.service. Feb 9 18:53:03.806529 systemd[1]: Finished systemd-sysctl.service. Feb 9 18:53:03.807179 systemd[1]: Reached target first-boot-complete.target. Feb 9 18:53:03.814741 systemd[1]: Finished systemd-sysusers.service. Feb 9 18:53:03.825459 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 18:53:03.827096 systemd[1]: Starting systemd-udev-settle.service... Feb 9 18:53:03.836021 systemd[1]: Finished systemd-journal-flush.service. Feb 9 18:53:03.836000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:03.837026 udevadm[1005]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Feb 9 18:53:04.384412 systemd[1]: Finished systemd-hwdb-update.service. Feb 9 18:53:04.384000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.385000 audit: BPF prog-id=21 op=LOAD Feb 9 18:53:04.385000 audit: BPF prog-id=22 op=LOAD Feb 9 18:53:04.385000 audit: BPF prog-id=7 op=UNLOAD Feb 9 18:53:04.385000 audit: BPF prog-id=8 op=UNLOAD Feb 9 18:53:04.386402 systemd[1]: Starting systemd-udevd.service... Feb 9 18:53:04.400667 systemd-udevd[1007]: Using default interface naming scheme 'v252'. Feb 9 18:53:04.411863 systemd[1]: Started systemd-udevd.service. Feb 9 18:53:04.412000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.413000 audit: BPF prog-id=23 op=LOAD Feb 9 18:53:04.414174 systemd[1]: Starting systemd-networkd.service... Feb 9 18:53:04.418000 audit: BPF prog-id=24 op=LOAD Feb 9 18:53:04.418000 audit: BPF prog-id=25 op=LOAD Feb 9 18:53:04.418000 audit: BPF prog-id=26 op=LOAD Feb 9 18:53:04.419765 systemd[1]: Starting systemd-userdbd.service... Feb 9 18:53:04.431694 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 9 18:53:04.445000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.444770 systemd[1]: Started systemd-userdbd.service. Feb 9 18:53:04.463376 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 18:53:04.508350 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input2 Feb 9 18:53:04.513344 kernel: ACPI: button: Power Button [PWRF] Feb 9 18:53:04.514713 systemd-networkd[1017]: lo: Link UP Feb 9 18:53:04.514723 systemd-networkd[1017]: lo: Gained carrier Feb 9 18:53:04.515152 systemd-networkd[1017]: Enumeration completed Feb 9 18:53:04.515238 systemd[1]: Started systemd-networkd.service. Feb 9 18:53:04.515252 systemd-networkd[1017]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 18:53:04.515000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.516365 systemd-networkd[1017]: eth0: Link UP Feb 9 18:53:04.516378 systemd-networkd[1017]: eth0: Gained carrier Feb 9 18:53:04.520000 audit[1030]: AVC avc: denied { confidentiality } for pid=1030 comm="(udev-worker)" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=1 Feb 9 18:53:04.520000 audit[1030]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55c36d0a9640 a1=32194 a2=7f5a585a7bc5 a3=5 items=108 ppid=1007 pid=1030 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="(udev-worker)" exe="/usr/bin/udevadm" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:04.520000 audit: CWD cwd="/" Feb 9 18:53:04.520000 audit: PATH item=0 name=(null) inode=1041 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=1 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=2 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=3 name=(null) inode=14336 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=4 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=5 name=(null) inode=15361 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=6 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=7 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=8 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=9 name=(null) inode=15363 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=10 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=11 name=(null) inode=15364 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=12 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=13 name=(null) inode=15365 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=14 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=15 name=(null) inode=15366 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=16 name=(null) inode=15362 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=17 name=(null) inode=15367 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=18 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=19 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=20 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=21 name=(null) inode=15369 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=22 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=23 name=(null) inode=15370 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=24 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=25 name=(null) inode=15371 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=26 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=27 name=(null) inode=15372 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=28 name=(null) inode=15368 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=29 name=(null) inode=15373 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=30 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=31 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=32 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=33 name=(null) inode=15375 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=34 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=35 name=(null) inode=15376 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=36 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=37 name=(null) inode=15377 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=38 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=39 name=(null) inode=15378 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=40 name=(null) inode=15374 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=41 name=(null) inode=15379 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=42 name=(null) inode=14335 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=43 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=44 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=45 name=(null) inode=15381 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=46 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=47 name=(null) inode=15382 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=48 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=49 name=(null) inode=15383 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=50 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=51 name=(null) inode=15384 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=52 name=(null) inode=15380 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=53 name=(null) inode=15385 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=54 name=(null) inode=1041 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=55 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=56 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=57 name=(null) inode=15387 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=58 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=59 name=(null) inode=15388 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=60 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=61 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=62 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=63 name=(null) inode=15390 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=64 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=65 name=(null) inode=15391 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=66 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=67 name=(null) inode=15392 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=68 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=69 name=(null) inode=15393 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=70 name=(null) inode=15389 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=71 name=(null) inode=15394 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=72 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=73 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=74 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=75 name=(null) inode=15396 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=76 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=77 name=(null) inode=15397 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=78 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=79 name=(null) inode=15398 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=80 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=81 name=(null) inode=15399 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=82 name=(null) inode=15395 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=83 name=(null) inode=15400 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=84 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=85 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=86 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=87 name=(null) inode=15402 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=88 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=89 name=(null) inode=15403 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=90 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=91 name=(null) inode=15404 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=92 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=93 name=(null) inode=15405 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=94 name=(null) inode=15401 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=95 name=(null) inode=15406 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=96 name=(null) inode=15386 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=97 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=98 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=99 name=(null) inode=15408 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=100 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=101 name=(null) inode=15409 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=102 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=103 name=(null) inode=15410 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=104 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=105 name=(null) inode=15411 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=106 name=(null) inode=15407 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PATH item=107 name=(null) inode=15412 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:04.520000 audit: PROCTITLE proctitle="(udev-worker)" Feb 9 18:53:04.530381 kernel: piix4_smbus 0000:00:01.3: SMBus Host Controller at 0x700, revision 0 Feb 9 18:53:04.531447 systemd-networkd[1017]: eth0: DHCPv4 address 10.0.0.69/16, gateway 10.0.0.1 acquired from 10.0.0.1 Feb 9 18:53:04.541351 kernel: input: ImExPS/2 Generic Explorer Mouse as /devices/platform/i8042/serio1/input/input3 Feb 9 18:53:04.556362 kernel: mousedev: PS/2 mouse device common for all mice Feb 9 18:53:04.613591 kernel: kvm: Nested Virtualization enabled Feb 9 18:53:04.613684 kernel: SVM: kvm: Nested Paging enabled Feb 9 18:53:04.613699 kernel: SVM: Virtual VMLOAD VMSAVE supported Feb 9 18:53:04.614437 kernel: SVM: Virtual GIF supported Feb 9 18:53:04.628346 kernel: EDAC MC: Ver: 3.0.0 Feb 9 18:53:04.648649 systemd[1]: Finished systemd-udev-settle.service. Feb 9 18:53:04.648000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.650298 systemd[1]: Starting lvm2-activation-early.service... Feb 9 18:53:04.656404 lvm[1042]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 18:53:04.687316 systemd[1]: Finished lvm2-activation-early.service. Feb 9 18:53:04.687000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.688187 systemd[1]: Reached target cryptsetup.target. Feb 9 18:53:04.689807 systemd[1]: Starting lvm2-activation.service... Feb 9 18:53:04.692862 lvm[1043]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 18:53:04.717261 systemd[1]: Finished lvm2-activation.service. Feb 9 18:53:04.717000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.718071 systemd[1]: Reached target local-fs-pre.target. Feb 9 18:53:04.718723 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 9 18:53:04.718746 systemd[1]: Reached target local-fs.target. Feb 9 18:53:04.719315 systemd[1]: Reached target machines.target. Feb 9 18:53:04.720988 systemd[1]: Starting ldconfig.service... Feb 9 18:53:04.721952 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 9 18:53:04.721997 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 18:53:04.723099 systemd[1]: Starting systemd-boot-update.service... Feb 9 18:53:04.725097 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 9 18:53:04.727252 systemd[1]: Starting systemd-machine-id-commit.service... Feb 9 18:53:04.728855 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 9 18:53:04.728913 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 9 18:53:04.730127 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 9 18:53:04.732371 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 9 18:53:04.733000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.735723 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1045 (bootctl) Feb 9 18:53:04.736995 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 9 18:53:04.748469 systemd-tmpfiles[1049]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 9 18:53:04.750412 systemd-tmpfiles[1049]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 9 18:53:04.752532 systemd-tmpfiles[1049]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 9 18:53:04.772559 systemd-fsck[1053]: fsck.fat 4.2 (2021-01-31) Feb 9 18:53:04.772559 systemd-fsck[1053]: /dev/vda1: 789 files, 115339/258078 clusters Feb 9 18:53:04.773948 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 9 18:53:04.774000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.776019 systemd[1]: Mounting boot.mount... Feb 9 18:53:04.979960 systemd[1]: Mounted boot.mount. Feb 9 18:53:04.994125 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 9 18:53:04.994812 systemd[1]: Finished systemd-machine-id-commit.service. Feb 9 18:53:04.995000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:04.997295 systemd[1]: Finished systemd-boot-update.service. Feb 9 18:53:04.997000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.040581 ldconfig[1044]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 9 18:53:05.045440 systemd[1]: Finished ldconfig.service. Feb 9 18:53:05.045000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ldconfig comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.060825 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 9 18:53:05.061000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.062471 systemd[1]: Starting audit-rules.service... Feb 9 18:53:05.063772 systemd[1]: Starting clean-ca-certificates.service... Feb 9 18:53:05.065681 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 9 18:53:05.066000 audit: BPF prog-id=27 op=LOAD Feb 9 18:53:05.067837 systemd[1]: Starting systemd-resolved.service... Feb 9 18:53:05.068000 audit: BPF prog-id=28 op=LOAD Feb 9 18:53:05.070104 systemd[1]: Starting systemd-timesyncd.service... Feb 9 18:53:05.071833 systemd[1]: Starting systemd-update-utmp.service... Feb 9 18:53:05.072875 systemd[1]: Finished clean-ca-certificates.service. Feb 9 18:53:05.073818 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 9 18:53:05.073000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.075000 audit[1068]: SYSTEM_BOOT pid=1068 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.078497 systemd[1]: Finished systemd-update-utmp.service. Feb 9 18:53:05.078000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.084975 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 9 18:53:05.085000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.086538 systemd[1]: Starting systemd-update-done.service... Feb 9 18:53:05.092175 systemd[1]: Finished systemd-update-done.service. Feb 9 18:53:05.092000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-done comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:05.099305 augenrules[1078]: No rules Feb 9 18:53:05.098000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 9 18:53:05.098000 audit[1078]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7fff9761bc50 a2=420 a3=0 items=0 ppid=1057 pid=1078 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:05.098000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 9 18:53:05.100076 systemd[1]: Finished audit-rules.service. Feb 9 18:53:05.112360 systemd-resolved[1061]: Positive Trust Anchors: Feb 9 18:53:05.112370 systemd-resolved[1061]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 18:53:05.112395 systemd-resolved[1061]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 18:53:05.117964 systemd-resolved[1061]: Defaulting to hostname 'linux'. Feb 9 18:53:05.119185 systemd[1]: Started systemd-resolved.service. Feb 9 18:53:05.119877 systemd[1]: Reached target network.target. Feb 9 18:53:05.120446 systemd[1]: Reached target nss-lookup.target. Feb 9 18:53:05.121048 systemd[1]: Started systemd-timesyncd.service. Feb 9 18:53:05.632019 systemd-resolved[1061]: Clock change detected. Flushing caches. Feb 9 18:53:05.632056 systemd-timesyncd[1064]: Contacted time server 10.0.0.1:123 (10.0.0.1). Feb 9 18:53:05.632096 systemd-timesyncd[1064]: Initial clock synchronization to Fri 2024-02-09 18:53:05.631991 UTC. Feb 9 18:53:05.632460 systemd[1]: Reached target sysinit.target. Feb 9 18:53:05.633052 systemd[1]: Started motdgen.path. Feb 9 18:53:05.633551 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 9 18:53:05.634291 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 9 18:53:05.634860 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 9 18:53:05.634882 systemd[1]: Reached target paths.target. Feb 9 18:53:05.635398 systemd[1]: Reached target time-set.target. Feb 9 18:53:05.636028 systemd[1]: Started logrotate.timer. Feb 9 18:53:05.636581 systemd[1]: Started mdadm.timer. Feb 9 18:53:05.637052 systemd[1]: Reached target timers.target. Feb 9 18:53:05.637762 systemd[1]: Listening on dbus.socket. Feb 9 18:53:05.639007 systemd[1]: Starting docker.socket... Feb 9 18:53:05.640890 systemd[1]: Listening on sshd.socket. Feb 9 18:53:05.641490 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 18:53:05.641777 systemd[1]: Listening on docker.socket. Feb 9 18:53:05.642387 systemd[1]: Reached target sockets.target. Feb 9 18:53:05.642915 systemd[1]: Reached target basic.target. Feb 9 18:53:05.643480 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 18:53:05.643497 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 18:53:05.644113 systemd[1]: Starting containerd.service... Feb 9 18:53:05.645220 systemd[1]: Starting dbus.service... Feb 9 18:53:05.646390 systemd[1]: Starting enable-oem-cloudinit.service... Feb 9 18:53:05.647680 systemd[1]: Starting extend-filesystems.service... Feb 9 18:53:05.648632 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 9 18:53:05.649327 systemd[1]: Starting motdgen.service... Feb 9 18:53:05.649716 jq[1088]: false Feb 9 18:53:05.650733 systemd[1]: Starting prepare-cni-plugins.service... Feb 9 18:53:05.652746 systemd[1]: Starting prepare-critools.service... Feb 9 18:53:05.654780 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 9 18:53:05.657735 systemd[1]: Starting sshd-keygen.service... Feb 9 18:53:05.660065 systemd[1]: Starting systemd-logind.service... Feb 9 18:53:05.660993 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 18:53:05.662886 dbus-daemon[1087]: [system] SELinux support is enabled Feb 9 18:53:05.663171 extend-filesystems[1089]: Found sr0 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda1 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda2 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda3 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found usr Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda4 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda6 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda7 Feb 9 18:53:05.663171 extend-filesystems[1089]: Found vda9 Feb 9 18:53:05.663171 extend-filesystems[1089]: Checking size of /dev/vda9 Feb 9 18:53:05.661031 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 9 18:53:05.661360 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 9 18:53:05.688231 jq[1107]: true Feb 9 18:53:05.661797 systemd[1]: Starting update-engine.service... Feb 9 18:53:05.663583 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 9 18:53:05.688659 tar[1111]: ./ Feb 9 18:53:05.688659 tar[1111]: ./loopback Feb 9 18:53:05.664724 systemd[1]: Started dbus.service. Feb 9 18:53:05.688973 jq[1113]: true Feb 9 18:53:05.667372 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 9 18:53:05.689205 tar[1112]: crictl Feb 9 18:53:05.667494 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 9 18:53:05.667682 systemd[1]: motdgen.service: Deactivated successfully. Feb 9 18:53:05.667787 systemd[1]: Finished motdgen.service. Feb 9 18:53:05.669514 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 9 18:53:05.669626 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 9 18:53:05.677353 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 9 18:53:05.677379 systemd[1]: Reached target system-config.target. Feb 9 18:53:05.679410 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 9 18:53:05.679426 systemd[1]: Reached target user-config.target. Feb 9 18:53:05.707815 env[1114]: time="2024-02-09T18:53:05.707764318Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 9 18:53:05.709224 extend-filesystems[1089]: Resized partition /dev/vda9 Feb 9 18:53:05.710372 extend-filesystems[1143]: resize2fs 1.46.5 (30-Dec-2021) Feb 9 18:53:05.714949 kernel: EXT4-fs (vda9): resizing filesystem from 553472 to 1864699 blocks Feb 9 18:53:05.725698 systemd-logind[1103]: Watching system buttons on /dev/input/event1 (Power Button) Feb 9 18:53:05.726048 systemd-logind[1103]: Watching system buttons on /dev/input/event0 (AT Translated Set 2 keyboard) Feb 9 18:53:05.727631 systemd-logind[1103]: New seat seat0. Feb 9 18:53:05.730124 systemd[1]: Started systemd-logind.service. Feb 9 18:53:05.732031 update_engine[1106]: I0209 18:53:05.731832 1106 main.cc:92] Flatcar Update Engine starting Feb 9 18:53:05.732954 kernel: EXT4-fs (vda9): resized filesystem to 1864699 Feb 9 18:53:05.753987 env[1114]: time="2024-02-09T18:53:05.748245601Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 9 18:53:05.754059 update_engine[1106]: I0209 18:53:05.735255 1106 update_check_scheduler.cc:74] Next update check in 7m57s Feb 9 18:53:05.754086 tar[1111]: ./bandwidth Feb 9 18:53:05.735158 systemd[1]: Started update-engine.service. Feb 9 18:53:05.754169 extend-filesystems[1143]: Filesystem at /dev/vda9 is mounted on /; on-line resizing required Feb 9 18:53:05.754169 extend-filesystems[1143]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 9 18:53:05.754169 extend-filesystems[1143]: The filesystem on /dev/vda9 is now 1864699 (4k) blocks long. Feb 9 18:53:05.737448 systemd[1]: Started locksmithd.service. Feb 9 18:53:05.758040 extend-filesystems[1089]: Resized filesystem in /dev/vda9 Feb 9 18:53:05.754635 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 9 18:53:05.759373 env[1114]: time="2024-02-09T18:53:05.758239489Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.754758 systemd[1]: Finished extend-filesystems.service. Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760069881Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760102232Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760368752Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760417473Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760440486Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760454883Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760607339Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.760988303Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.761181436Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 18:53:05.761556 env[1114]: time="2024-02-09T18:53:05.761226370Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 9 18:53:05.761917 env[1114]: time="2024-02-09T18:53:05.761321198Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 9 18:53:05.761917 env[1114]: time="2024-02-09T18:53:05.761339722Z" level=info msg="metadata content store policy set" policy=shared Feb 9 18:53:05.767050 bash[1140]: Updated "/home/core/.ssh/authorized_keys" Feb 9 18:53:05.767596 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 9 18:53:05.771212 env[1114]: time="2024-02-09T18:53:05.771174482Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 9 18:53:05.771290 env[1114]: time="2024-02-09T18:53:05.771226861Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 9 18:53:05.771290 env[1114]: time="2024-02-09T18:53:05.771247519Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 9 18:53:05.771349 env[1114]: time="2024-02-09T18:53:05.771299176Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771349 env[1114]: time="2024-02-09T18:53:05.771322119Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771349 env[1114]: time="2024-02-09T18:53:05.771339592Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771355201Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771373375Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771393914Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771409834Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771424321Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.771442 env[1114]: time="2024-02-09T18:53:05.771440421Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 9 18:53:05.771599 env[1114]: time="2024-02-09T18:53:05.771549766Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 9 18:53:05.771658 env[1114]: time="2024-02-09T18:53:05.771636879Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.771981275Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772014287Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772031660Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772103915Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772122260Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772200777Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772229080Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772244088Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772257293Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772280055Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772297598Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772321914Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772455034Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772477846Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774074 env[1114]: time="2024-02-09T18:53:05.772491873Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774490 env[1114]: time="2024-02-09T18:53:05.772506700Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 9 18:53:05.774490 env[1114]: time="2024-02-09T18:53:05.772525415Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 9 18:53:05.774490 env[1114]: time="2024-02-09T18:53:05.772540353Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 9 18:53:05.774490 env[1114]: time="2024-02-09T18:53:05.772560441Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 9 18:53:05.774490 env[1114]: time="2024-02-09T18:53:05.772596789Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.772814307Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.772876624Z" level=info msg="Connect containerd service" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.772911570Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773526072Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773691983Z" level=info msg="Start subscribing containerd event" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773733671Z" level=info msg="Start recovering state" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773783514Z" level=info msg="Start event monitor" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773796679Z" level=info msg="Start snapshots syncer" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773805295Z" level=info msg="Start cni network conf syncer for default" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.773813340Z" level=info msg="Start streaming server" Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.774008887Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 9 18:53:05.774618 env[1114]: time="2024-02-09T18:53:05.774047399Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 9 18:53:05.776581 env[1114]: time="2024-02-09T18:53:05.774822222Z" level=info msg="containerd successfully booted in 0.067721s" Feb 9 18:53:05.774874 systemd[1]: Started containerd.service. Feb 9 18:53:05.791393 tar[1111]: ./ptp Feb 9 18:53:05.809685 locksmithd[1145]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 9 18:53:05.825729 tar[1111]: ./vlan Feb 9 18:53:05.858020 tar[1111]: ./host-device Feb 9 18:53:05.889433 tar[1111]: ./tuning Feb 9 18:53:05.917381 tar[1111]: ./vrf Feb 9 18:53:05.946441 tar[1111]: ./sbr Feb 9 18:53:05.974599 tar[1111]: ./tap Feb 9 18:53:06.007609 tar[1111]: ./dhcp Feb 9 18:53:06.090350 tar[1111]: ./static Feb 9 18:53:06.114255 tar[1111]: ./firewall Feb 9 18:53:06.120735 systemd[1]: Finished prepare-critools.service. Feb 9 18:53:06.147320 tar[1111]: ./macvlan Feb 9 18:53:06.176273 tar[1111]: ./dummy Feb 9 18:53:06.204689 tar[1111]: ./bridge Feb 9 18:53:06.235795 tar[1111]: ./ipvlan Feb 9 18:53:06.264523 tar[1111]: ./portmap Feb 9 18:53:06.291701 tar[1111]: ./host-local Feb 9 18:53:06.306119 sshd_keygen[1110]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 9 18:53:06.324062 systemd[1]: Finished prepare-cni-plugins.service. Feb 9 18:53:06.325056 systemd[1]: Finished sshd-keygen.service. Feb 9 18:53:06.326597 systemd[1]: Starting issuegen.service... Feb 9 18:53:06.330624 systemd[1]: issuegen.service: Deactivated successfully. Feb 9 18:53:06.330746 systemd[1]: Finished issuegen.service. Feb 9 18:53:06.332437 systemd[1]: Starting systemd-user-sessions.service... Feb 9 18:53:06.336894 systemd[1]: Finished systemd-user-sessions.service. Feb 9 18:53:06.338459 systemd[1]: Started getty@tty1.service. Feb 9 18:53:06.339835 systemd[1]: Started serial-getty@ttyS0.service. Feb 9 18:53:06.340582 systemd[1]: Reached target getty.target. Feb 9 18:53:06.341204 systemd[1]: Reached target multi-user.target. Feb 9 18:53:06.342591 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 9 18:53:06.347684 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 9 18:53:06.347792 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 9 18:53:06.348552 systemd[1]: Startup finished in 584ms (kernel) + 5.117s (initrd) + 5.013s (userspace) = 10.715s. Feb 9 18:53:06.520104 systemd[1]: Created slice system-sshd.slice. Feb 9 18:53:06.520891 systemd[1]: Started sshd@0-10.0.0.69:22-10.0.0.1:47198.service. Feb 9 18:53:06.557737 sshd[1171]: Accepted publickey for core from 10.0.0.1 port 47198 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:06.558931 sshd[1171]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:06.565261 systemd[1]: Created slice user-500.slice. Feb 9 18:53:06.566179 systemd[1]: Starting user-runtime-dir@500.service... Feb 9 18:53:06.567529 systemd-logind[1103]: New session 1 of user core. Feb 9 18:53:06.572597 systemd[1]: Finished user-runtime-dir@500.service. Feb 9 18:53:06.573707 systemd[1]: Starting user@500.service... Feb 9 18:53:06.575756 (systemd)[1174]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:06.637260 systemd[1174]: Queued start job for default target default.target. Feb 9 18:53:06.637623 systemd[1174]: Reached target paths.target. Feb 9 18:53:06.637642 systemd[1174]: Reached target sockets.target. Feb 9 18:53:06.637653 systemd[1174]: Reached target timers.target. Feb 9 18:53:06.637664 systemd[1174]: Reached target basic.target. Feb 9 18:53:06.637694 systemd[1174]: Reached target default.target. Feb 9 18:53:06.637714 systemd[1174]: Startup finished in 57ms. Feb 9 18:53:06.637768 systemd[1]: Started user@500.service. Feb 9 18:53:06.638591 systemd[1]: Started session-1.scope. Feb 9 18:53:06.687599 systemd[1]: Started sshd@1-10.0.0.69:22-10.0.0.1:43374.service. Feb 9 18:53:06.709038 systemd-networkd[1017]: eth0: Gained IPv6LL Feb 9 18:53:06.724717 sshd[1183]: Accepted publickey for core from 10.0.0.1 port 43374 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:06.725840 sshd[1183]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:06.729173 systemd-logind[1103]: New session 2 of user core. Feb 9 18:53:06.730109 systemd[1]: Started session-2.scope. Feb 9 18:53:06.782754 sshd[1183]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:06.784993 systemd[1]: sshd@1-10.0.0.69:22-10.0.0.1:43374.service: Deactivated successfully. Feb 9 18:53:06.785444 systemd[1]: session-2.scope: Deactivated successfully. Feb 9 18:53:06.785824 systemd-logind[1103]: Session 2 logged out. Waiting for processes to exit. Feb 9 18:53:06.786774 systemd[1]: Started sshd@2-10.0.0.69:22-10.0.0.1:43386.service. Feb 9 18:53:06.787577 systemd-logind[1103]: Removed session 2. Feb 9 18:53:06.821616 sshd[1189]: Accepted publickey for core from 10.0.0.1 port 43386 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:06.822418 sshd[1189]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:06.825160 systemd-logind[1103]: New session 3 of user core. Feb 9 18:53:06.825830 systemd[1]: Started session-3.scope. Feb 9 18:53:06.873700 sshd[1189]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:06.876279 systemd[1]: sshd@2-10.0.0.69:22-10.0.0.1:43386.service: Deactivated successfully. Feb 9 18:53:06.876751 systemd[1]: session-3.scope: Deactivated successfully. Feb 9 18:53:06.877230 systemd-logind[1103]: Session 3 logged out. Waiting for processes to exit. Feb 9 18:53:06.878089 systemd[1]: Started sshd@3-10.0.0.69:22-10.0.0.1:43390.service. Feb 9 18:53:06.878859 systemd-logind[1103]: Removed session 3. Feb 9 18:53:06.913843 sshd[1196]: Accepted publickey for core from 10.0.0.1 port 43390 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:06.914759 sshd[1196]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:06.917623 systemd-logind[1103]: New session 4 of user core. Feb 9 18:53:06.918507 systemd[1]: Started session-4.scope. Feb 9 18:53:06.969979 sshd[1196]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:06.972143 systemd[1]: sshd@3-10.0.0.69:22-10.0.0.1:43390.service: Deactivated successfully. Feb 9 18:53:06.972635 systemd[1]: session-4.scope: Deactivated successfully. Feb 9 18:53:06.973036 systemd-logind[1103]: Session 4 logged out. Waiting for processes to exit. Feb 9 18:53:06.973773 systemd[1]: Started sshd@4-10.0.0.69:22-10.0.0.1:43402.service. Feb 9 18:53:06.974372 systemd-logind[1103]: Removed session 4. Feb 9 18:53:07.007119 sshd[1203]: Accepted publickey for core from 10.0.0.1 port 43402 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:07.007995 sshd[1203]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:07.010872 systemd-logind[1103]: New session 5 of user core. Feb 9 18:53:07.011738 systemd[1]: Started session-5.scope. Feb 9 18:53:07.066108 sudo[1207]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 9 18:53:07.066328 sudo[1207]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 18:53:07.072141 dbus-daemon[1087]: \xd0m\u0006 8V: received setenforce notice (enforcing=-245492064) Feb 9 18:53:07.073705 sudo[1207]: pam_unix(sudo:session): session closed for user root Feb 9 18:53:07.075172 sshd[1203]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:07.077147 systemd[1]: sshd@4-10.0.0.69:22-10.0.0.1:43402.service: Deactivated successfully. Feb 9 18:53:07.077595 systemd[1]: session-5.scope: Deactivated successfully. Feb 9 18:53:07.078115 systemd-logind[1103]: Session 5 logged out. Waiting for processes to exit. Feb 9 18:53:07.078968 systemd[1]: Started sshd@5-10.0.0.69:22-10.0.0.1:43408.service. Feb 9 18:53:07.079896 systemd-logind[1103]: Removed session 5. Feb 9 18:53:07.112946 sshd[1211]: Accepted publickey for core from 10.0.0.1 port 43408 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:07.114062 sshd[1211]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:07.116893 systemd-logind[1103]: New session 6 of user core. Feb 9 18:53:07.117564 systemd[1]: Started session-6.scope. Feb 9 18:53:07.167664 sudo[1215]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 9 18:53:07.167820 sudo[1215]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 18:53:07.169728 sudo[1215]: pam_unix(sudo:session): session closed for user root Feb 9 18:53:07.173702 sudo[1214]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 9 18:53:07.173880 sudo[1214]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 18:53:07.180613 systemd[1]: Stopping audit-rules.service... Feb 9 18:53:07.179000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 18:53:07.181521 auditctl[1218]: No rules Feb 9 18:53:07.181715 systemd[1]: audit-rules.service: Deactivated successfully. Feb 9 18:53:07.181832 systemd[1]: Stopped audit-rules.service. Feb 9 18:53:07.182159 kernel: kauditd_printk_skb: 242 callbacks suppressed Feb 9 18:53:07.182200 kernel: audit: type=1305 audit(1707504787.179:164): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 18:53:07.182840 systemd[1]: Starting audit-rules.service... Feb 9 18:53:07.179000 audit[1218]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffe5b2f6110 a2=420 a3=0 items=0 ppid=1 pid=1218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:07.186887 kernel: audit: type=1300 audit(1707504787.179:164): arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffe5b2f6110 a2=420 a3=0 items=0 ppid=1 pid=1218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:07.186951 kernel: audit: type=1327 audit(1707504787.179:164): proctitle=2F7362696E2F617564697463746C002D44 Feb 9 18:53:07.179000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 9 18:53:07.179000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.189847 kernel: audit: type=1131 audit(1707504787.179:165): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.198922 augenrules[1235]: No rules Feb 9 18:53:07.199506 systemd[1]: Finished audit-rules.service. Feb 9 18:53:07.204967 kernel: audit: type=1130 audit(1707504787.197:166): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.205018 kernel: audit: type=1106 audit(1707504787.197:167): pid=1214 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.205034 kernel: audit: type=1104 audit(1707504787.197:168): pid=1214 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.197000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.197000 audit[1214]: USER_END pid=1214 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.197000 audit[1214]: CRED_DISP pid=1214 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.204039 systemd[1]: Started sshd@6-10.0.0.69:22-10.0.0.1:43424.service. Feb 9 18:53:07.200244 sudo[1214]: pam_unix(sudo:session): session closed for user root Feb 9 18:53:07.204397 systemd[1]: sshd@5-10.0.0.69:22-10.0.0.1:43408.service: Deactivated successfully. Feb 9 18:53:07.201530 sshd[1211]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:07.204840 systemd[1]: session-6.scope: Deactivated successfully. Feb 9 18:53:07.205745 systemd-logind[1103]: Session 6 logged out. Waiting for processes to exit. Feb 9 18:53:07.206455 systemd-logind[1103]: Removed session 6. Feb 9 18:53:07.201000 audit[1211]: USER_END pid=1211 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:07.201000 audit[1211]: CRED_DISP pid=1211 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.118156 kernel: audit: type=1106 audit(1707504787.201:169): pid=1211 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.118198 kernel: audit: type=1104 audit(1707504787.201:170): pid=1211 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.118243 kernel: audit: type=1130 audit(1707504787.201:171): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.69:22-10.0.0.1:43424 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.201000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.69:22-10.0.0.1:43424 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:07.203000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-10.0.0.69:22-10.0.0.1:43408 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:08.142000 audit[1240]: USER_ACCT pid=1240 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.144307 sshd[1240]: Accepted publickey for core from 10.0.0.1 port 43424 ssh2: RSA SHA256:ykpv2PfBe3Q14nkyYOIn6pLGnIi82XRDx9K/jsWifZc Feb 9 18:53:08.143000 audit[1240]: CRED_ACQ pid=1240 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.143000 audit[1240]: SYSCALL arch=c000003e syscall=1 success=yes exit=3 a0=5 a1=7ffe0fe9dcc0 a2=3 a3=0 items=0 ppid=1 pid=1240 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:08.143000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 9 18:53:08.145246 sshd[1240]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 18:53:08.149167 systemd-logind[1103]: New session 7 of user core. Feb 9 18:53:08.150142 systemd[1]: Started session-7.scope. Feb 9 18:53:08.152000 audit[1240]: USER_START pid=1240 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.153000 audit[1243]: CRED_ACQ pid=1243 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:08.199000 audit[1244]: USER_ACCT pid=1244 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:08.199000 audit[1244]: CRED_REFR pid=1244 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:08.201530 sudo[1244]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 9 18:53:08.201687 sudo[1244]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 18:53:08.201000 audit[1244]: USER_START pid=1244 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:08.710474 systemd[1]: Reloading. Feb 9 18:53:08.771981 /usr/lib/systemd/system-generators/torcx-generator[1274]: time="2024-02-09T18:53:08Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 18:53:08.772009 /usr/lib/systemd/system-generators/torcx-generator[1274]: time="2024-02-09T18:53:08Z" level=info msg="torcx already run" Feb 9 18:53:08.825635 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 18:53:08.825655 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 18:53:08.843499 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.901000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit: BPF prog-id=34 op=LOAD Feb 9 18:53:08.902000 audit: BPF prog-id=24 op=UNLOAD Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit: BPF prog-id=35 op=LOAD Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.902000 audit: BPF prog-id=36 op=LOAD Feb 9 18:53:08.902000 audit: BPF prog-id=25 op=UNLOAD Feb 9 18:53:08.902000 audit: BPF prog-id=26 op=UNLOAD Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit: BPF prog-id=37 op=LOAD Feb 9 18:53:08.904000 audit: BPF prog-id=29 op=UNLOAD Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit: BPF prog-id=38 op=LOAD Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit: BPF prog-id=39 op=LOAD Feb 9 18:53:08.904000 audit: BPF prog-id=30 op=UNLOAD Feb 9 18:53:08.904000 audit: BPF prog-id=31 op=UNLOAD Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.904000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit: BPF prog-id=40 op=LOAD Feb 9 18:53:08.905000 audit: BPF prog-id=32 op=UNLOAD Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.905000 audit: BPF prog-id=41 op=LOAD Feb 9 18:53:08.905000 audit: BPF prog-id=23 op=UNLOAD Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit: BPF prog-id=42 op=LOAD Feb 9 18:53:08.906000 audit: BPF prog-id=28 op=UNLOAD Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.906000 audit: BPF prog-id=43 op=LOAD Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit: BPF prog-id=44 op=LOAD Feb 9 18:53:08.907000 audit: BPF prog-id=21 op=UNLOAD Feb 9 18:53:08.907000 audit: BPF prog-id=22 op=UNLOAD Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit: BPF prog-id=45 op=LOAD Feb 9 18:53:08.907000 audit: BPF prog-id=18 op=UNLOAD Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit: BPF prog-id=46 op=LOAD Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.907000 audit: BPF prog-id=47 op=LOAD Feb 9 18:53:08.907000 audit: BPF prog-id=19 op=UNLOAD Feb 9 18:53:08.907000 audit: BPF prog-id=20 op=UNLOAD Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.908000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.909000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:08.909000 audit: BPF prog-id=48 op=LOAD Feb 9 18:53:08.909000 audit: BPF prog-id=27 op=UNLOAD Feb 9 18:53:08.917974 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 9 18:53:09.524000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.526000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.526596 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 9 18:53:09.527055 systemd[1]: Reached target network-online.target. Feb 9 18:53:09.528270 systemd[1]: Started kubelet.service. Feb 9 18:53:09.536858 systemd[1]: Starting coreos-metadata.service... Feb 9 18:53:09.544498 systemd[1]: coreos-metadata.service: Deactivated successfully. Feb 9 18:53:09.544641 systemd[1]: Finished coreos-metadata.service. Feb 9 18:53:09.542000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.542000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.579347 kubelet[1315]: E0209 18:53:09.579265 1315 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 9 18:53:09.582088 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 18:53:09.582208 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 18:53:09.580000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 18:53:09.721045 systemd[1]: Stopped kubelet.service. Feb 9 18:53:09.719000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.719000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.734726 systemd[1]: Reloading. Feb 9 18:53:09.795876 /usr/lib/systemd/system-generators/torcx-generator[1383]: time="2024-02-09T18:53:09Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 18:53:09.795906 /usr/lib/systemd/system-generators/torcx-generator[1383]: time="2024-02-09T18:53:09Z" level=info msg="torcx already run" Feb 9 18:53:09.858499 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 18:53:09.858516 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 18:53:09.875602 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.928000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit: BPF prog-id=49 op=LOAD Feb 9 18:53:09.929000 audit: BPF prog-id=34 op=UNLOAD Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit: BPF prog-id=50 op=LOAD Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.929000 audit: BPF prog-id=51 op=LOAD Feb 9 18:53:09.929000 audit: BPF prog-id=35 op=UNLOAD Feb 9 18:53:09.929000 audit: BPF prog-id=36 op=UNLOAD Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.930000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit: BPF prog-id=52 op=LOAD Feb 9 18:53:09.931000 audit: BPF prog-id=37 op=UNLOAD Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit: BPF prog-id=53 op=LOAD Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit: BPF prog-id=54 op=LOAD Feb 9 18:53:09.931000 audit: BPF prog-id=38 op=UNLOAD Feb 9 18:53:09.931000 audit: BPF prog-id=39 op=UNLOAD Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.931000 audit: BPF prog-id=55 op=LOAD Feb 9 18:53:09.931000 audit: BPF prog-id=40 op=UNLOAD Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.932000 audit: BPF prog-id=56 op=LOAD Feb 9 18:53:09.932000 audit: BPF prog-id=41 op=UNLOAD Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit: BPF prog-id=57 op=LOAD Feb 9 18:53:09.933000 audit: BPF prog-id=42 op=UNLOAD Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit: BPF prog-id=58 op=LOAD Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit: BPF prog-id=59 op=LOAD Feb 9 18:53:09.933000 audit: BPF prog-id=43 op=UNLOAD Feb 9 18:53:09.933000 audit: BPF prog-id=44 op=UNLOAD Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit: BPF prog-id=60 op=LOAD Feb 9 18:53:09.934000 audit: BPF prog-id=45 op=UNLOAD Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit: BPF prog-id=61 op=LOAD Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.934000 audit: BPF prog-id=62 op=LOAD Feb 9 18:53:09.934000 audit: BPF prog-id=46 op=UNLOAD Feb 9 18:53:09.934000 audit: BPF prog-id=47 op=UNLOAD Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:09.935000 audit: BPF prog-id=63 op=LOAD Feb 9 18:53:09.935000 audit: BPF prog-id=48 op=UNLOAD Feb 9 18:53:09.946251 systemd[1]: Started kubelet.service. Feb 9 18:53:09.944000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:09.981149 kubelet[1425]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 18:53:09.981149 kubelet[1425]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 9 18:53:09.981149 kubelet[1425]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 18:53:09.981570 kubelet[1425]: I0209 18:53:09.981233 1425 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 18:53:10.232509 kubelet[1425]: I0209 18:53:10.232425 1425 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 9 18:53:10.232509 kubelet[1425]: I0209 18:53:10.232450 1425 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 18:53:10.232644 kubelet[1425]: I0209 18:53:10.232635 1425 server.go:837] "Client rotation is on, will bootstrap in background" Feb 9 18:53:10.234383 kubelet[1425]: I0209 18:53:10.234345 1425 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 18:53:10.237137 kubelet[1425]: I0209 18:53:10.237120 1425 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 18:53:10.237286 kubelet[1425]: I0209 18:53:10.237276 1425 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 18:53:10.237335 kubelet[1425]: I0209 18:53:10.237328 1425 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 18:53:10.237419 kubelet[1425]: I0209 18:53:10.237342 1425 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 18:53:10.237419 kubelet[1425]: I0209 18:53:10.237351 1425 container_manager_linux.go:302] "Creating device plugin manager" Feb 9 18:53:10.237419 kubelet[1425]: I0209 18:53:10.237414 1425 state_mem.go:36] "Initialized new in-memory state store" Feb 9 18:53:10.241729 kubelet[1425]: I0209 18:53:10.241706 1425 kubelet.go:405] "Attempting to sync node with API server" Feb 9 18:53:10.241805 kubelet[1425]: I0209 18:53:10.241735 1425 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 18:53:10.241805 kubelet[1425]: I0209 18:53:10.241756 1425 kubelet.go:309] "Adding apiserver pod source" Feb 9 18:53:10.241805 kubelet[1425]: I0209 18:53:10.241770 1425 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 18:53:10.241878 kubelet[1425]: E0209 18:53:10.241824 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:10.241878 kubelet[1425]: E0209 18:53:10.241856 1425 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:10.242380 kubelet[1425]: I0209 18:53:10.242366 1425 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 18:53:10.242584 kubelet[1425]: W0209 18:53:10.242574 1425 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 9 18:53:10.242908 kubelet[1425]: I0209 18:53:10.242895 1425 server.go:1168] "Started kubelet" Feb 9 18:53:10.243066 kubelet[1425]: I0209 18:53:10.243046 1425 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 18:53:10.243121 kubelet[1425]: I0209 18:53:10.243086 1425 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 9 18:53:10.243897 kubelet[1425]: I0209 18:53:10.243872 1425 server.go:461] "Adding debug handlers to kubelet server" Feb 9 18:53:10.244271 kubelet[1425]: E0209 18:53:10.244231 1425 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 18:53:10.244271 kubelet[1425]: E0209 18:53:10.244270 1425 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 18:53:10.242000 audit[1425]: AVC avc: denied { mac_admin } for pid=1425 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:10.242000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 18:53:10.242000 audit[1425]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000eeb650 a1=c0002e2660 a2=c000eeb620 a3=25 items=0 ppid=1 pid=1425 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.242000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 18:53:10.244652 kubelet[1425]: I0209 18:53:10.244624 1425 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 18:53:10.242000 audit[1425]: AVC avc: denied { mac_admin } for pid=1425 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:10.242000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 18:53:10.242000 audit[1425]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000728860 a1=c0002e2678 a2=c000eeb6e0 a3=25 items=0 ppid=1 pid=1425 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.242000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 18:53:10.244830 kubelet[1425]: I0209 18:53:10.244679 1425 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 18:53:10.244830 kubelet[1425]: I0209 18:53:10.244730 1425 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 18:53:10.245011 kubelet[1425]: I0209 18:53:10.245000 1425 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 9 18:53:10.245076 kubelet[1425]: I0209 18:53:10.245072 1425 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 9 18:53:10.262439 kubelet[1425]: E0209 18:53:10.262414 1425 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.69\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 9 18:53:10.262546 kubelet[1425]: W0209 18:53:10.262451 1425 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "10.0.0.69" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 18:53:10.262546 kubelet[1425]: E0209 18:53:10.262467 1425 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "10.0.0.69" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 18:53:10.262546 kubelet[1425]: W0209 18:53:10.262490 1425 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 18:53:10.262546 kubelet[1425]: E0209 18:53:10.262498 1425 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 18:53:10.262546 kubelet[1425]: W0209 18:53:10.262532 1425 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 18:53:10.262546 kubelet[1425]: E0209 18:53:10.262539 1425 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 18:53:10.262765 kubelet[1425]: E0209 18:53:10.262576 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5ab467f6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 242879478, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 242879478, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.262866 kubelet[1425]: I0209 18:53:10.262782 1425 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 18:53:10.262866 kubelet[1425]: I0209 18:53:10.262791 1425 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 18:53:10.262866 kubelet[1425]: I0209 18:53:10.262810 1425 state_mem.go:36] "Initialized new in-memory state store" Feb 9 18:53:10.262000 audit[1438]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=1438 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.262000 audit[1438]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffcfbc8a770 a2=0 a3=7ffcfbc8a75c items=0 ppid=1425 pid=1438 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.262000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 18:53:10.263000 audit[1441]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=1441 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.263000 audit[1441]: SYSCALL arch=c000003e syscall=46 success=yes exit=132 a0=3 a1=7fffe7f3cfb0 a2=0 a3=7fffe7f3cf9c items=0 ppid=1425 pid=1441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.263000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 18:53:10.265569 kubelet[1425]: E0209 18:53:10.265501 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5ac97df9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 244261369, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 244261369, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.265916 kubelet[1425]: I0209 18:53:10.265880 1425 policy_none.go:49] "None policy: Start" Feb 9 18:53:10.266378 kubelet[1425]: E0209 18:53:10.266320 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9a473", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.69 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261048435, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261048435, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.266709 kubelet[1425]: I0209 18:53:10.266693 1425 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 18:53:10.266794 kubelet[1425]: I0209 18:53:10.266780 1425 state_mem.go:35] "Initializing new in-memory state store" Feb 9 18:53:10.267519 kubelet[1425]: E0209 18:53:10.267431 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9bd7f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.69 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261054847, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261054847, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.268243 kubelet[1425]: E0209 18:53:10.268186 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9c693", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.69 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261057171, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261057171, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.272252 systemd[1]: Created slice kubepods.slice. Feb 9 18:53:10.275281 systemd[1]: Created slice kubepods-burstable.slice. Feb 9 18:53:10.277342 systemd[1]: Created slice kubepods-besteffort.slice. Feb 9 18:53:10.265000 audit[1446]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=1446 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.265000 audit[1446]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7fffc9ede910 a2=0 a3=7fffc9ede8fc items=0 ppid=1425 pid=1446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.265000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 18:53:10.280000 audit[1451]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=1451 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.280000 audit[1451]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffea07feee0 a2=0 a3=7ffea07feecc items=0 ppid=1425 pid=1451 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.280000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 18:53:10.280000 audit[1425]: AVC avc: denied { mac_admin } for pid=1425 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:10.280000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 18:53:10.280000 audit[1425]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000eeba70 a1=c0002e2f48 a2=c000eeba40 a3=25 items=0 ppid=1 pid=1425 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.280000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 18:53:10.282933 kubelet[1425]: I0209 18:53:10.282709 1425 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 18:53:10.282933 kubelet[1425]: I0209 18:53:10.282776 1425 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 18:53:10.283242 kubelet[1425]: I0209 18:53:10.283223 1425 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 18:53:10.283524 kubelet[1425]: E0209 18:53:10.283503 1425 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"10.0.0.69\" not found" Feb 9 18:53:10.284597 kubelet[1425]: E0209 18:53:10.284363 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5d206928", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 283512104, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 283512104, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.310000 audit[1456]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=1456 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.310000 audit[1456]: SYSCALL arch=c000003e syscall=46 success=yes exit=924 a0=3 a1=7ffdb1329460 a2=0 a3=7ffdb132944c items=0 ppid=1425 pid=1456 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.310000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 9 18:53:10.312956 kubelet[1425]: I0209 18:53:10.312823 1425 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 18:53:10.311000 audit[1457]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=1457 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:10.311000 audit[1457]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7fff63ce4830 a2=0 a3=7fff63ce481c items=0 ppid=1425 pid=1457 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.311000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 18:53:10.311000 audit[1458]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=1458 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.311000 audit[1458]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff12316550 a2=0 a3=7fff1231653c items=0 ppid=1425 pid=1458 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.311000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 18:53:10.313866 kubelet[1425]: I0209 18:53:10.313756 1425 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 18:53:10.313866 kubelet[1425]: I0209 18:53:10.313786 1425 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 9 18:53:10.313866 kubelet[1425]: I0209 18:53:10.313806 1425 kubelet.go:2257] "Starting kubelet main sync loop" Feb 9 18:53:10.313866 kubelet[1425]: E0209 18:53:10.313844 1425 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 9 18:53:10.312000 audit[1459]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=1459 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:10.312000 audit[1459]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffd684c6280 a2=0 a3=7ffd684c626c items=0 ppid=1425 pid=1459 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.312000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 18:53:10.315206 kubelet[1425]: W0209 18:53:10.315171 1425 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 18:53:10.315206 kubelet[1425]: E0209 18:53:10.315198 1425 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 18:53:10.313000 audit[1460]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=1460 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.313000 audit[1460]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffc517565b0 a2=0 a3=7ffc5175659c items=0 ppid=1425 pid=1460 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.313000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 18:53:10.313000 audit[1461]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=1461 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:10.313000 audit[1461]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffd2d582640 a2=0 a3=7ffd2d58262c items=0 ppid=1425 pid=1461 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.313000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 18:53:10.314000 audit[1462]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=1462 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:10.314000 audit[1462]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffd9472d010 a2=0 a3=7ffd9472cffc items=0 ppid=1425 pid=1462 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.314000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 18:53:10.314000 audit[1463]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=1463 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:10.314000 audit[1463]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffd758f10f0 a2=0 a3=7ffd758f10dc items=0 ppid=1425 pid=1463 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:10.314000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 18:53:10.346338 kubelet[1425]: I0209 18:53:10.346320 1425 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.69" Feb 9 18:53:10.347271 kubelet[1425]: E0209 18:53:10.347239 1425 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.69" Feb 9 18:53:10.347499 kubelet[1425]: E0209 18:53:10.347427 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9a473", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.69 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261048435, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 346272720, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9a473" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.348383 kubelet[1425]: E0209 18:53:10.348314 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9bd7f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.69 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261054847, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 346283240, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9bd7f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.349130 kubelet[1425]: E0209 18:53:10.349083 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9c693", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.69 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261057171, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 346285464, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9c693" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.464189 kubelet[1425]: E0209 18:53:10.464138 1425 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.69\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 9 18:53:10.548235 kubelet[1425]: I0209 18:53:10.548109 1425 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.69" Feb 9 18:53:10.549162 kubelet[1425]: E0209 18:53:10.549120 1425 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.69" Feb 9 18:53:10.549234 kubelet[1425]: E0209 18:53:10.549097 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9a473", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.69 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261048435, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 548071533, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9a473" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.550006 kubelet[1425]: E0209 18:53:10.549886 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9bd7f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.69 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261054847, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 548078867, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9bd7f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.550664 kubelet[1425]: E0209 18:53:10.550617 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9c693", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.69 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261057171, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 548080861, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9c693" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.865231 kubelet[1425]: E0209 18:53:10.865114 1425 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.69\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 9 18:53:10.950060 kubelet[1425]: I0209 18:53:10.950025 1425 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.69" Feb 9 18:53:10.951016 kubelet[1425]: E0209 18:53:10.950980 1425 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.69" Feb 9 18:53:10.951168 kubelet[1425]: E0209 18:53:10.950974 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9a473", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.69 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261048435, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 949985191, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9a473" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.951895 kubelet[1425]: E0209 18:53:10.951814 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9bd7f", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.69 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261054847, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 949993156, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9bd7f" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:10.952553 kubelet[1425]: E0209 18:53:10.952509 1425 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69.17b2468f5bc9c693", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.69", UID:"10.0.0.69", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.69 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.69"}, FirstTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 261057171, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 18, 53, 10, 949995220, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.69.17b2468f5bc9c693" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 18:53:11.161451 kubelet[1425]: W0209 18:53:11.161350 1425 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 18:53:11.161451 kubelet[1425]: E0209 18:53:11.161384 1425 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 18:53:11.234572 kubelet[1425]: I0209 18:53:11.234511 1425 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 9 18:53:11.242712 kubelet[1425]: E0209 18:53:11.242685 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:11.670898 kubelet[1425]: E0209 18:53:11.670865 1425 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"10.0.0.69\" not found" node="10.0.0.69" Feb 9 18:53:11.752330 kubelet[1425]: I0209 18:53:11.752304 1425 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.69" Feb 9 18:53:11.755580 kubelet[1425]: I0209 18:53:11.755562 1425 kubelet_node_status.go:73] "Successfully registered node" node="10.0.0.69" Feb 9 18:53:11.763847 kubelet[1425]: I0209 18:53:11.763828 1425 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 9 18:53:11.764158 env[1114]: time="2024-02-09T18:53:11.764109464Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 9 18:53:11.764465 kubelet[1425]: I0209 18:53:11.764287 1425 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 9 18:53:11.955000 audit[1244]: USER_END pid=1244 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:11.955000 audit[1244]: CRED_DISP pid=1244 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 18:53:11.957365 sudo[1244]: pam_unix(sudo:session): session closed for user root Feb 9 18:53:11.958488 sshd[1240]: pam_unix(sshd:session): session closed for user core Feb 9 18:53:11.957000 audit[1240]: USER_END pid=1240 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:11.957000 audit[1240]: CRED_DISP pid=1240 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 18:53:11.960247 systemd[1]: sshd@6-10.0.0.69:22-10.0.0.1:43424.service: Deactivated successfully. Feb 9 18:53:11.958000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.69:22-10.0.0.1:43424 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 18:53:11.960966 systemd[1]: session-7.scope: Deactivated successfully. Feb 9 18:53:11.961509 systemd-logind[1103]: Session 7 logged out. Waiting for processes to exit. Feb 9 18:53:11.962280 systemd-logind[1103]: Removed session 7. Feb 9 18:53:12.243330 kubelet[1425]: E0209 18:53:12.243185 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:12.243330 kubelet[1425]: I0209 18:53:12.243206 1425 apiserver.go:52] "Watching apiserver" Feb 9 18:53:12.245303 kubelet[1425]: I0209 18:53:12.245276 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:12.245458 kubelet[1425]: I0209 18:53:12.245367 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:12.245458 kubelet[1425]: I0209 18:53:12.245400 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:12.245657 kubelet[1425]: E0209 18:53:12.245639 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:12.251152 systemd[1]: Created slice kubepods-besteffort-pod9dda8ff7_2d20_4bca_9040_32753e7526fb.slice. Feb 9 18:53:12.259854 systemd[1]: Created slice kubepods-besteffort-podaaa792eb_6cfc_4f8b_b905_40cb311bdf29.slice. Feb 9 18:53:12.346244 kubelet[1425]: I0209 18:53:12.346209 1425 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 9 18:53:12.355983 kubelet[1425]: I0209 18:53:12.355927 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-cni-net-dir\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.355983 kubelet[1425]: I0209 18:53:12.355972 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-cni-log-dir\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.355983 kubelet[1425]: I0209 18:53:12.355993 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/9dda8ff7-2d20-4bca-9040-32753e7526fb-kube-proxy\") pod \"kube-proxy-dq5xf\" (UID: \"9dda8ff7-2d20-4bca-9040-32753e7526fb\") " pod="kube-system/kube-proxy-dq5xf" Feb 9 18:53:12.356253 kubelet[1425]: I0209 18:53:12.356012 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/a765b875-85ce-4a6f-b4f9-f1e991181e28-socket-dir\") pod \"csi-node-driver-bttqd\" (UID: \"a765b875-85ce-4a6f-b4f9-f1e991181e28\") " pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:12.356253 kubelet[1425]: I0209 18:53:12.356050 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-jrjtz\" (UniqueName: \"kubernetes.io/projected/a765b875-85ce-4a6f-b4f9-f1e991181e28-kube-api-access-jrjtz\") pod \"csi-node-driver-bttqd\" (UID: \"a765b875-85ce-4a6f-b4f9-f1e991181e28\") " pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:12.356328 kubelet[1425]: I0209 18:53:12.356261 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-lib-modules\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356328 kubelet[1425]: I0209 18:53:12.356295 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-xtables-lock\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356328 kubelet[1425]: I0209 18:53:12.356312 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-tigera-ca-bundle\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356328 kubelet[1425]: I0209 18:53:12.356330 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-flexvol-driver-host\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356472 kubelet[1425]: I0209 18:53:12.356434 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/a765b875-85ce-4a6f-b4f9-f1e991181e28-varrun\") pod \"csi-node-driver-bttqd\" (UID: \"a765b875-85ce-4a6f-b4f9-f1e991181e28\") " pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:12.356496 kubelet[1425]: I0209 18:53:12.356483 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/a765b875-85ce-4a6f-b4f9-f1e991181e28-kubelet-dir\") pod \"csi-node-driver-bttqd\" (UID: \"a765b875-85ce-4a6f-b4f9-f1e991181e28\") " pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:12.356553 kubelet[1425]: I0209 18:53:12.356532 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-policysync\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356613 kubelet[1425]: I0209 18:53:12.356594 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-node-certs\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356655 kubelet[1425]: I0209 18:53:12.356638 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-var-lib-calico\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356679 kubelet[1425]: I0209 18:53:12.356674 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-qhs5t\" (UniqueName: \"kubernetes.io/projected/9dda8ff7-2d20-4bca-9040-32753e7526fb-kube-api-access-qhs5t\") pod \"kube-proxy-dq5xf\" (UID: \"9dda8ff7-2d20-4bca-9040-32753e7526fb\") " pod="kube-system/kube-proxy-dq5xf" Feb 9 18:53:12.356711 kubelet[1425]: I0209 18:53:12.356701 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-var-run-calico\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356767 kubelet[1425]: I0209 18:53:12.356751 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-cni-bin-dir\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356831 kubelet[1425]: I0209 18:53:12.356793 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-ck6lp\" (UniqueName: \"kubernetes.io/projected/aaa792eb-6cfc-4f8b-b905-40cb311bdf29-kube-api-access-ck6lp\") pod \"calico-node-vk97k\" (UID: \"aaa792eb-6cfc-4f8b-b905-40cb311bdf29\") " pod="calico-system/calico-node-vk97k" Feb 9 18:53:12.356831 kubelet[1425]: I0209 18:53:12.356824 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/a765b875-85ce-4a6f-b4f9-f1e991181e28-registration-dir\") pod \"csi-node-driver-bttqd\" (UID: \"a765b875-85ce-4a6f-b4f9-f1e991181e28\") " pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:12.356892 kubelet[1425]: I0209 18:53:12.356852 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/9dda8ff7-2d20-4bca-9040-32753e7526fb-xtables-lock\") pod \"kube-proxy-dq5xf\" (UID: \"9dda8ff7-2d20-4bca-9040-32753e7526fb\") " pod="kube-system/kube-proxy-dq5xf" Feb 9 18:53:12.356892 kubelet[1425]: I0209 18:53:12.356878 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/9dda8ff7-2d20-4bca-9040-32753e7526fb-lib-modules\") pod \"kube-proxy-dq5xf\" (UID: \"9dda8ff7-2d20-4bca-9040-32753e7526fb\") " pod="kube-system/kube-proxy-dq5xf" Feb 9 18:53:12.356960 kubelet[1425]: I0209 18:53:12.356929 1425 reconciler.go:41] "Reconciler: start to sync state" Feb 9 18:53:12.458895 kubelet[1425]: E0209 18:53:12.458872 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.458895 kubelet[1425]: W0209 18:53:12.458889 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.459021 kubelet[1425]: E0209 18:53:12.458917 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.459084 kubelet[1425]: E0209 18:53:12.459068 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.459084 kubelet[1425]: W0209 18:53:12.459078 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.459154 kubelet[1425]: E0209 18:53:12.459089 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.459309 kubelet[1425]: E0209 18:53:12.459289 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.459309 kubelet[1425]: W0209 18:53:12.459307 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.459391 kubelet[1425]: E0209 18:53:12.459318 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.459460 kubelet[1425]: E0209 18:53:12.459451 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.459460 kubelet[1425]: W0209 18:53:12.459459 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.459534 kubelet[1425]: E0209 18:53:12.459469 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.459658 kubelet[1425]: E0209 18:53:12.459628 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.459658 kubelet[1425]: W0209 18:53:12.459651 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.459723 kubelet[1425]: E0209 18:53:12.459673 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.463929 kubelet[1425]: E0209 18:53:12.463899 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.463929 kubelet[1425]: W0209 18:53:12.463917 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464089 kubelet[1425]: E0209 18:53:12.463960 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464154 kubelet[1425]: E0209 18:53:12.464140 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464154 kubelet[1425]: W0209 18:53:12.464149 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464217 kubelet[1425]: E0209 18:53:12.464160 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464307 kubelet[1425]: E0209 18:53:12.464292 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464307 kubelet[1425]: W0209 18:53:12.464302 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464375 kubelet[1425]: E0209 18:53:12.464314 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464517 kubelet[1425]: E0209 18:53:12.464499 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464517 kubelet[1425]: W0209 18:53:12.464508 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464564 kubelet[1425]: E0209 18:53:12.464545 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464651 kubelet[1425]: E0209 18:53:12.464635 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464651 kubelet[1425]: W0209 18:53:12.464645 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464699 kubelet[1425]: E0209 18:53:12.464667 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464767 kubelet[1425]: E0209 18:53:12.464754 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464767 kubelet[1425]: W0209 18:53:12.464762 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.464829 kubelet[1425]: E0209 18:53:12.464786 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.464914 kubelet[1425]: E0209 18:53:12.464900 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.464914 kubelet[1425]: W0209 18:53:12.464909 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.465002 kubelet[1425]: E0209 18:53:12.464918 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.471648 kubelet[1425]: E0209 18:53:12.471625 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.471648 kubelet[1425]: W0209 18:53:12.471641 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.471648 kubelet[1425]: E0209 18:53:12.471651 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.472162 kubelet[1425]: E0209 18:53:12.472133 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.472162 kubelet[1425]: W0209 18:53:12.472148 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.472162 kubelet[1425]: E0209 18:53:12.472168 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.476001 kubelet[1425]: E0209 18:53:12.475988 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:12.476001 kubelet[1425]: W0209 18:53:12.475998 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:12.476080 kubelet[1425]: E0209 18:53:12.476011 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:12.558677 kubelet[1425]: E0209 18:53:12.558563 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:12.559589 env[1114]: time="2024-02-09T18:53:12.559523315Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-dq5xf,Uid:9dda8ff7-2d20-4bca-9040-32753e7526fb,Namespace:kube-system,Attempt:0,}" Feb 9 18:53:12.562115 kubelet[1425]: E0209 18:53:12.562079 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:12.562542 env[1114]: time="2024-02-09T18:53:12.562495718Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-vk97k,Uid:aaa792eb-6cfc-4f8b-b905-40cb311bdf29,Namespace:calico-system,Attempt:0,}" Feb 9 18:53:13.243567 kubelet[1425]: E0209 18:53:13.243519 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:13.573276 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2906248180.mount: Deactivated successfully. Feb 9 18:53:13.584859 env[1114]: time="2024-02-09T18:53:13.584822300Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.587431 env[1114]: time="2024-02-09T18:53:13.587401075Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.588743 env[1114]: time="2024-02-09T18:53:13.588721972Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.589451 env[1114]: time="2024-02-09T18:53:13.589430541Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.590820 env[1114]: time="2024-02-09T18:53:13.590796462Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.592172 env[1114]: time="2024-02-09T18:53:13.592145251Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.593463 env[1114]: time="2024-02-09T18:53:13.593435099Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.595776 env[1114]: time="2024-02-09T18:53:13.595748366Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:13.613609 env[1114]: time="2024-02-09T18:53:13.613550946Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:13.613609 env[1114]: time="2024-02-09T18:53:13.613584199Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:13.613609 env[1114]: time="2024-02-09T18:53:13.613593536Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:13.613800 env[1114]: time="2024-02-09T18:53:13.613710796Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05 pid=1493 runtime=io.containerd.runc.v2 Feb 9 18:53:13.618553 env[1114]: time="2024-02-09T18:53:13.618500146Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:13.618553 env[1114]: time="2024-02-09T18:53:13.618561351Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:13.618696 env[1114]: time="2024-02-09T18:53:13.618582210Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:13.619399 env[1114]: time="2024-02-09T18:53:13.618798345Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/923eef2799114b648cf996b1dbd38f60ce8911e6a8793352338897309f68d18e pid=1511 runtime=io.containerd.runc.v2 Feb 9 18:53:13.624239 systemd[1]: Started cri-containerd-c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05.scope. Feb 9 18:53:13.630397 systemd[1]: Started cri-containerd-923eef2799114b648cf996b1dbd38f60ce8911e6a8793352338897309f68d18e.scope. Feb 9 18:53:13.638180 kernel: kauditd_printk_skb: 416 callbacks suppressed Feb 9 18:53:13.638261 kernel: audit: type=1400 audit(1707504793.633:553): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.638277 kernel: audit: type=1400 audit(1707504793.633:554): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640651 kernel: audit: type=1400 audit(1707504793.633:555): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.647689 kernel: audit: type=1400 audit(1707504793.633:556): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.647725 kernel: audit: type=1400 audit(1707504793.633:557): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649950 kernel: audit: type=1400 audit(1707504793.633:558): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.654955 kernel: audit: type=1400 audit(1707504793.633:559): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.654994 kernel: audit: type=1400 audit(1707504793.633:560): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.655017 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.655957 kernel: audit: type=1400 audit(1707504793.633:561): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit: BPF prog-id=64 op=LOAD Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000117c48 a2=10 a3=1c items=0 ppid=1493 pid=1510 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.636000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6332313836396465636364656164303665393731346638376139663332 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001176b0 a2=3c a3=c items=0 ppid=1493 pid=1510 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.636000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6332313836396465636364656164303665393731346638376139663332 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.636000 audit: BPF prog-id=65 op=LOAD Feb 9 18:53:13.636000 audit[1510]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001179d8 a2=78 a3=c000214de0 items=0 ppid=1493 pid=1510 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.636000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6332313836396465636364656164303665393731346638376139663332 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.640000 audit: BPF prog-id=66 op=LOAD Feb 9 18:53:13.640000 audit[1510]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000117770 a2=78 a3=c000214e28 items=0 ppid=1493 pid=1510 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.640000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6332313836396465636364656164303665393731346638376139663332 Feb 9 18:53:13.643000 audit: BPF prog-id=66 op=UNLOAD Feb 9 18:53:13.643000 audit: BPF prog-id=65 op=UNLOAD Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { perfmon } for pid=1510 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit[1510]: AVC avc: denied { bpf } for pid=1510 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.643000 audit: BPF prog-id=67 op=LOAD Feb 9 18:53:13.643000 audit[1510]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000117c30 a2=78 a3=c000215238 items=0 ppid=1493 pid=1510 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.643000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6332313836396465636364656164303665393731346638376139663332 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.649000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.650000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.650000 audit: BPF prog-id=68 op=LOAD Feb 9 18:53:13.653000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.653000 audit[1529]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=1511 pid=1529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932336565663237393931313462363438636639393662316462643338 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit: BPF prog-id=69 op=LOAD Feb 9 18:53:13.656000 audit[1529]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0001dfde0 items=0 ppid=1511 pid=1529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.656000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932336565663237393931313462363438636639393662316462643338 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.656000 audit[1529]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0001dfe28 items=0 ppid=1511 pid=1529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.656000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932336565663237393931313462363438636639393662316462643338 Feb 9 18:53:13.657000 audit: BPF prog-id=70 op=UNLOAD Feb 9 18:53:13.657000 audit: BPF prog-id=69 op=UNLOAD Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { perfmon } for pid=1529 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit[1529]: AVC avc: denied { bpf } for pid=1529 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:13.657000 audit: BPF prog-id=71 op=LOAD Feb 9 18:53:13.657000 audit[1529]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000296238 items=0 ppid=1511 pid=1529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:13.657000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932336565663237393931313462363438636639393662316462643338 Feb 9 18:53:13.669974 env[1114]: time="2024-02-09T18:53:13.669927051Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-dq5xf,Uid:9dda8ff7-2d20-4bca-9040-32753e7526fb,Namespace:kube-system,Attempt:0,} returns sandbox id \"923eef2799114b648cf996b1dbd38f60ce8911e6a8793352338897309f68d18e\"" Feb 9 18:53:13.671176 env[1114]: time="2024-02-09T18:53:13.671153611Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-vk97k,Uid:aaa792eb-6cfc-4f8b-b905-40cb311bdf29,Namespace:calico-system,Attempt:0,} returns sandbox id \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\"" Feb 9 18:53:13.671515 kubelet[1425]: E0209 18:53:13.671495 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:13.672209 kubelet[1425]: E0209 18:53:13.672186 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:13.673039 env[1114]: time="2024-02-09T18:53:13.673002588Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 9 18:53:14.244401 kubelet[1425]: E0209 18:53:14.244345 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:14.314303 kubelet[1425]: E0209 18:53:14.314278 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:14.976847 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3897820754.mount: Deactivated successfully. Feb 9 18:53:15.245092 kubelet[1425]: E0209 18:53:15.244928 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:15.486312 env[1114]: time="2024-02-09T18:53:15.486235990Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:15.488063 env[1114]: time="2024-02-09T18:53:15.488013042Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:db7b01e105753475c198490cf875df1314fd1a599f67ea1b184586cb399e1cae,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:15.489270 env[1114]: time="2024-02-09T18:53:15.489240193Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:15.490541 env[1114]: time="2024-02-09T18:53:15.490496839Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:15.490787 env[1114]: time="2024-02-09T18:53:15.490743702Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:db7b01e105753475c198490cf875df1314fd1a599f67ea1b184586cb399e1cae\"" Feb 9 18:53:15.491926 env[1114]: time="2024-02-09T18:53:15.491898467Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 9 18:53:15.492636 env[1114]: time="2024-02-09T18:53:15.492604060Z" level=info msg="CreateContainer within sandbox \"923eef2799114b648cf996b1dbd38f60ce8911e6a8793352338897309f68d18e\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 9 18:53:15.508379 env[1114]: time="2024-02-09T18:53:15.508269573Z" level=info msg="CreateContainer within sandbox \"923eef2799114b648cf996b1dbd38f60ce8911e6a8793352338897309f68d18e\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"eb3eda66ae132af6a3bb738a335433794d1e662e8aaf9e9f6c93874c99ef342f\"" Feb 9 18:53:15.509123 env[1114]: time="2024-02-09T18:53:15.509079031Z" level=info msg="StartContainer for \"eb3eda66ae132af6a3bb738a335433794d1e662e8aaf9e9f6c93874c99ef342f\"" Feb 9 18:53:15.524239 systemd[1]: Started cri-containerd-eb3eda66ae132af6a3bb738a335433794d1e662e8aaf9e9f6c93874c99ef342f.scope. Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=1511 pid=1577 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.534000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562336564613636616531333261663661336262373338613333353433 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit: BPF prog-id=72 op=LOAD Feb 9 18:53:15.534000 audit[1577]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c000183780 items=0 ppid=1511 pid=1577 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.534000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562336564613636616531333261663661336262373338613333353433 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit: BPF prog-id=73 op=LOAD Feb 9 18:53:15.534000 audit[1577]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0001837c8 items=0 ppid=1511 pid=1577 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.534000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562336564613636616531333261663661336262373338613333353433 Feb 9 18:53:15.534000 audit: BPF prog-id=73 op=UNLOAD Feb 9 18:53:15.534000 audit: BPF prog-id=72 op=UNLOAD Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { perfmon } for pid=1577 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit[1577]: AVC avc: denied { bpf } for pid=1577 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:15.534000 audit: BPF prog-id=74 op=LOAD Feb 9 18:53:15.534000 audit[1577]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c000183858 items=0 ppid=1511 pid=1577 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.534000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562336564613636616531333261663661336262373338613333353433 Feb 9 18:53:15.548539 env[1114]: time="2024-02-09T18:53:15.548418302Z" level=info msg="StartContainer for \"eb3eda66ae132af6a3bb738a335433794d1e662e8aaf9e9f6c93874c99ef342f\" returns successfully" Feb 9 18:53:15.588000 audit[1628]: NETFILTER_CFG table=mangle:14 family=10 entries=1 op=nft_register_chain pid=1628 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.588000 audit[1628]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc9b406880 a2=0 a3=7ffc9b40686c items=0 ppid=1587 pid=1628 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.588000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 18:53:15.588000 audit[1627]: NETFILTER_CFG table=mangle:15 family=2 entries=1 op=nft_register_chain pid=1627 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.588000 audit[1627]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffdc4a51b10 a2=0 a3=31030 items=0 ppid=1587 pid=1627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.588000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 18:53:15.589000 audit[1629]: NETFILTER_CFG table=nat:16 family=10 entries=1 op=nft_register_chain pid=1629 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.589000 audit[1629]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffa04dfaf0 a2=0 a3=7fffa04dfadc items=0 ppid=1587 pid=1629 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.589000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 18:53:15.590000 audit[1630]: NETFILTER_CFG table=nat:17 family=2 entries=1 op=nft_register_chain pid=1630 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.590000 audit[1630]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc3dc35ba0 a2=0 a3=7ffc3dc35b8c items=0 ppid=1587 pid=1630 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.590000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 18:53:15.591000 audit[1631]: NETFILTER_CFG table=filter:18 family=2 entries=1 op=nft_register_chain pid=1631 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.591000 audit[1631]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff9605d480 a2=0 a3=7fff9605d46c items=0 ppid=1587 pid=1631 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.591000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 18:53:15.592000 audit[1632]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=1632 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.592000 audit[1632]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff79f1b4a0 a2=0 a3=7fff79f1b48c items=0 ppid=1587 pid=1632 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.592000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 18:53:15.691000 audit[1633]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=1633 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.691000 audit[1633]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffe87336c00 a2=0 a3=7ffe87336bec items=0 ppid=1587 pid=1633 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.691000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 18:53:15.694000 audit[1635]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=1635 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.694000 audit[1635]: SYSCALL arch=c000003e syscall=46 success=yes exit=752 a0=3 a1=7fffec1f9940 a2=0 a3=7fffec1f992c items=0 ppid=1587 pid=1635 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.694000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 9 18:53:15.696000 audit[1638]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=1638 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.696000 audit[1638]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffc8318b730 a2=0 a3=7ffc8318b71c items=0 ppid=1587 pid=1638 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.696000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 9 18:53:15.697000 audit[1639]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=1639 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.697000 audit[1639]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffdd6cba7f0 a2=0 a3=7ffdd6cba7dc items=0 ppid=1587 pid=1639 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.697000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 18:53:15.699000 audit[1641]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=1641 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.699000 audit[1641]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffcab6e5db0 a2=0 a3=7ffcab6e5d9c items=0 ppid=1587 pid=1641 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.699000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 18:53:15.700000 audit[1642]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=1642 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.700000 audit[1642]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffe262b0a0 a2=0 a3=7fffe262b08c items=0 ppid=1587 pid=1642 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.700000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 18:53:15.702000 audit[1644]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=1644 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.702000 audit[1644]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffc2341a630 a2=0 a3=7ffc2341a61c items=0 ppid=1587 pid=1644 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.702000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 18:53:15.704000 audit[1647]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=1647 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.704000 audit[1647]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffd2116d000 a2=0 a3=7ffd2116cfec items=0 ppid=1587 pid=1647 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.704000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 9 18:53:15.705000 audit[1648]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=1648 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.705000 audit[1648]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffe30249af0 a2=0 a3=7ffe30249adc items=0 ppid=1587 pid=1648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.705000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 18:53:15.707000 audit[1650]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=1650 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.707000 audit[1650]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffefff87820 a2=0 a3=7ffefff8780c items=0 ppid=1587 pid=1650 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.707000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 18:53:15.708000 audit[1651]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=1651 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.708000 audit[1651]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffd5c927590 a2=0 a3=7ffd5c92757c items=0 ppid=1587 pid=1651 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.708000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 18:53:15.709000 audit[1653]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=1653 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.709000 audit[1653]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffd54f23d70 a2=0 a3=7ffd54f23d5c items=0 ppid=1587 pid=1653 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.709000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 18:53:15.712000 audit[1656]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=1656 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.712000 audit[1656]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffc7e3e38a0 a2=0 a3=7ffc7e3e388c items=0 ppid=1587 pid=1656 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.712000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 18:53:15.715000 audit[1659]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=1659 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.715000 audit[1659]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fff7331d180 a2=0 a3=7fff7331d16c items=0 ppid=1587 pid=1659 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.715000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 18:53:15.715000 audit[1660]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=1660 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.715000 audit[1660]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffd8b28b7c0 a2=0 a3=7ffd8b28b7ac items=0 ppid=1587 pid=1660 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.715000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 18:53:15.717000 audit[1662]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=1662 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.717000 audit[1662]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffe7e9a8b50 a2=0 a3=7ffe7e9a8b3c items=0 ppid=1587 pid=1662 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.717000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 18:53:15.735000 audit[1668]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=1668 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.735000 audit[1668]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffcaccb5dd0 a2=0 a3=7ffcaccb5dbc items=0 ppid=1587 pid=1668 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.735000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 18:53:15.740000 audit[1673]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=1673 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.740000 audit[1673]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffffb2c8460 a2=0 a3=7ffffb2c844c items=0 ppid=1587 pid=1673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.740000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 18:53:15.742000 audit[1675]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=1675 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 18:53:15.742000 audit[1675]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7fffd5711bc0 a2=0 a3=7fffd5711bac items=0 ppid=1587 pid=1675 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.742000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 18:53:15.750000 audit[1677]: NETFILTER_CFG table=filter:39 family=2 entries=9 op=nft_register_rule pid=1677 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:15.750000 audit[1677]: SYSCALL arch=c000003e syscall=46 success=yes exit=5660 a0=3 a1=7ffdf2e37aa0 a2=0 a3=7ffdf2e37a8c items=0 ppid=1587 pid=1677 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.750000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:15.759000 audit[1677]: NETFILTER_CFG table=nat:40 family=2 entries=14 op=nft_register_chain pid=1677 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:15.759000 audit[1677]: SYSCALL arch=c000003e syscall=46 success=yes exit=5340 a0=3 a1=7ffdf2e37aa0 a2=0 a3=7ffdf2e37a8c items=0 ppid=1587 pid=1677 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.759000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:15.763000 audit[1684]: NETFILTER_CFG table=filter:41 family=2 entries=16 op=nft_register_rule pid=1684 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:15.763000 audit[1684]: SYSCALL arch=c000003e syscall=46 success=yes exit=5660 a0=3 a1=7ffd30fd7890 a2=0 a3=7ffd30fd787c items=0 ppid=1587 pid=1684 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.763000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:15.763000 audit[1684]: NETFILTER_CFG table=nat:42 family=2 entries=12 op=nft_register_rule pid=1684 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:15.763000 audit[1684]: SYSCALL arch=c000003e syscall=46 success=yes exit=2572 a0=3 a1=7ffd30fd7890 a2=0 a3=31030 items=0 ppid=1587 pid=1684 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.763000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:15.768000 audit[1685]: NETFILTER_CFG table=filter:43 family=10 entries=1 op=nft_register_chain pid=1685 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.768000 audit[1685]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7fffe542b290 a2=0 a3=7fffe542b27c items=0 ppid=1587 pid=1685 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.768000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 18:53:15.770000 audit[1687]: NETFILTER_CFG table=filter:44 family=10 entries=2 op=nft_register_chain pid=1687 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.770000 audit[1687]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffc3daeeab0 a2=0 a3=7ffc3daeea9c items=0 ppid=1587 pid=1687 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.770000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 9 18:53:15.776000 audit[1690]: NETFILTER_CFG table=filter:45 family=10 entries=2 op=nft_register_chain pid=1690 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.776000 audit[1690]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7fff38573780 a2=0 a3=7fff3857376c items=0 ppid=1587 pid=1690 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.776000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 9 18:53:15.777000 audit[1691]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=1691 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.777000 audit[1691]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffc7005b30 a2=0 a3=7fffc7005b1c items=0 ppid=1587 pid=1691 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.777000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 18:53:15.779000 audit[1693]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=1693 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.779000 audit[1693]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffff8c37d80 a2=0 a3=7ffff8c37d6c items=0 ppid=1587 pid=1693 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.779000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 18:53:15.779000 audit[1694]: NETFILTER_CFG table=filter:48 family=10 entries=1 op=nft_register_chain pid=1694 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.779000 audit[1694]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff92e42790 a2=0 a3=7fff92e4277c items=0 ppid=1587 pid=1694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.779000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 18:53:15.781000 audit[1696]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_rule pid=1696 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.781000 audit[1696]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffcf08be4f0 a2=0 a3=7ffcf08be4dc items=0 ppid=1587 pid=1696 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.781000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 9 18:53:15.783000 audit[1699]: NETFILTER_CFG table=filter:50 family=10 entries=2 op=nft_register_chain pid=1699 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.783000 audit[1699]: SYSCALL arch=c000003e syscall=46 success=yes exit=828 a0=3 a1=7ffe43f13230 a2=0 a3=7ffe43f1321c items=0 ppid=1587 pid=1699 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.783000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 18:53:15.784000 audit[1700]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=1700 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.784000 audit[1700]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd1f96dc30 a2=0 a3=7ffd1f96dc1c items=0 ppid=1587 pid=1700 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.784000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 18:53:15.786000 audit[1702]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=1702 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.786000 audit[1702]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffc97a81fd0 a2=0 a3=7ffc97a81fbc items=0 ppid=1587 pid=1702 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.786000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 18:53:15.787000 audit[1703]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_chain pid=1703 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.787000 audit[1703]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff561a7cb0 a2=0 a3=7fff561a7c9c items=0 ppid=1587 pid=1703 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.787000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 18:53:15.789000 audit[1705]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=1705 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.789000 audit[1705]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fff31a6af70 a2=0 a3=7fff31a6af5c items=0 ppid=1587 pid=1705 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.789000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 18:53:15.792000 audit[1708]: NETFILTER_CFG table=filter:55 family=10 entries=1 op=nft_register_rule pid=1708 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.792000 audit[1708]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffda891ad90 a2=0 a3=7ffda891ad7c items=0 ppid=1587 pid=1708 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.792000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 18:53:15.795000 audit[1711]: NETFILTER_CFG table=filter:56 family=10 entries=1 op=nft_register_rule pid=1711 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.795000 audit[1711]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffcb622b830 a2=0 a3=7ffcb622b81c items=0 ppid=1587 pid=1711 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.795000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 9 18:53:15.796000 audit[1712]: NETFILTER_CFG table=nat:57 family=10 entries=1 op=nft_register_chain pid=1712 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.796000 audit[1712]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffdc1d2dcd0 a2=0 a3=7ffdc1d2dcbc items=0 ppid=1587 pid=1712 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.796000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 18:53:15.797000 audit[1714]: NETFILTER_CFG table=nat:58 family=10 entries=2 op=nft_register_chain pid=1714 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.797000 audit[1714]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffd6952b4e0 a2=0 a3=7ffd6952b4cc items=0 ppid=1587 pid=1714 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.797000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 18:53:15.800000 audit[1717]: NETFILTER_CFG table=nat:59 family=10 entries=2 op=nft_register_chain pid=1717 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.800000 audit[1717]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffc9bd6ef90 a2=0 a3=7ffc9bd6ef7c items=0 ppid=1587 pid=1717 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.800000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 18:53:15.801000 audit[1718]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_chain pid=1718 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.801000 audit[1718]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff8c0c1770 a2=0 a3=7fff8c0c175c items=0 ppid=1587 pid=1718 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.801000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 18:53:15.803000 audit[1720]: NETFILTER_CFG table=filter:61 family=10 entries=1 op=nft_register_rule pid=1720 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.803000 audit[1720]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7fff9e4b1ba0 a2=0 a3=7fff9e4b1b8c items=0 ppid=1587 pid=1720 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.803000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 18:53:15.805000 audit[1723]: NETFILTER_CFG table=filter:62 family=10 entries=1 op=nft_register_rule pid=1723 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.805000 audit[1723]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7ffff4413ad0 a2=0 a3=7ffff4413abc items=0 ppid=1587 pid=1723 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.805000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 18:53:15.806000 audit[1724]: NETFILTER_CFG table=nat:63 family=10 entries=1 op=nft_register_chain pid=1724 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.806000 audit[1724]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffdb39cb00 a2=0 a3=7fffdb39caec items=0 ppid=1587 pid=1724 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.806000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 18:53:15.808000 audit[1726]: NETFILTER_CFG table=nat:64 family=10 entries=2 op=nft_register_chain pid=1726 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 18:53:15.808000 audit[1726]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffe2ec9a080 a2=0 a3=7ffe2ec9a06c items=0 ppid=1587 pid=1726 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.808000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 18:53:15.810000 audit[1728]: NETFILTER_CFG table=filter:65 family=10 entries=3 op=nft_register_rule pid=1728 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 18:53:15.810000 audit[1728]: SYSCALL arch=c000003e syscall=46 success=yes exit=1916 a0=3 a1=7ffcbc322090 a2=0 a3=7ffcbc32207c items=0 ppid=1587 pid=1728 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.810000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:15.810000 audit[1728]: NETFILTER_CFG table=nat:66 family=10 entries=7 op=nft_register_chain pid=1728 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 18:53:15.810000 audit[1728]: SYSCALL arch=c000003e syscall=46 success=yes exit=1968 a0=3 a1=7ffcbc322090 a2=0 a3=7ffcbc32207c items=0 ppid=1587 pid=1728 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:15.810000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:16.245343 kubelet[1425]: E0209 18:53:16.245233 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:16.314202 kubelet[1425]: E0209 18:53:16.314165 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:16.325276 kubelet[1425]: E0209 18:53:16.325252 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:16.372250 kubelet[1425]: E0209 18:53:16.372229 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372250 kubelet[1425]: W0209 18:53:16.372242 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372376 kubelet[1425]: E0209 18:53:16.372259 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.372457 kubelet[1425]: E0209 18:53:16.372443 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372457 kubelet[1425]: W0209 18:53:16.372451 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372506 kubelet[1425]: E0209 18:53:16.372460 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.372606 kubelet[1425]: E0209 18:53:16.372595 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372606 kubelet[1425]: W0209 18:53:16.372603 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372656 kubelet[1425]: E0209 18:53:16.372611 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.372743 kubelet[1425]: E0209 18:53:16.372733 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372743 kubelet[1425]: W0209 18:53:16.372740 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372790 kubelet[1425]: E0209 18:53:16.372748 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.372853 kubelet[1425]: E0209 18:53:16.372846 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372879 kubelet[1425]: W0209 18:53:16.372853 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372879 kubelet[1425]: E0209 18:53:16.372860 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.372996 kubelet[1425]: E0209 18:53:16.372984 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.372996 kubelet[1425]: W0209 18:53:16.372992 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.372996 kubelet[1425]: E0209 18:53:16.373000 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.373406 kubelet[1425]: E0209 18:53:16.373380 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.373406 kubelet[1425]: W0209 18:53:16.373404 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.373497 kubelet[1425]: E0209 18:53:16.373424 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.373584 kubelet[1425]: E0209 18:53:16.373570 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.373584 kubelet[1425]: W0209 18:53:16.373580 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.373657 kubelet[1425]: E0209 18:53:16.373592 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.373734 kubelet[1425]: E0209 18:53:16.373720 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.373734 kubelet[1425]: W0209 18:53:16.373729 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.373812 kubelet[1425]: E0209 18:53:16.373739 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.373974 kubelet[1425]: E0209 18:53:16.373960 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.373974 kubelet[1425]: W0209 18:53:16.373970 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374063 kubelet[1425]: E0209 18:53:16.373980 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374134 kubelet[1425]: E0209 18:53:16.374121 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374134 kubelet[1425]: W0209 18:53:16.374130 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374213 kubelet[1425]: E0209 18:53:16.374138 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374276 kubelet[1425]: E0209 18:53:16.374263 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374276 kubelet[1425]: W0209 18:53:16.374271 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374348 kubelet[1425]: E0209 18:53:16.374281 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374429 kubelet[1425]: E0209 18:53:16.374416 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374429 kubelet[1425]: W0209 18:53:16.374425 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374502 kubelet[1425]: E0209 18:53:16.374433 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374570 kubelet[1425]: E0209 18:53:16.374557 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374570 kubelet[1425]: W0209 18:53:16.374565 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374631 kubelet[1425]: E0209 18:53:16.374573 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374707 kubelet[1425]: E0209 18:53:16.374695 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374707 kubelet[1425]: W0209 18:53:16.374704 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374767 kubelet[1425]: E0209 18:53:16.374714 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.374845 kubelet[1425]: E0209 18:53:16.374833 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.374845 kubelet[1425]: W0209 18:53:16.374841 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.374907 kubelet[1425]: E0209 18:53:16.374850 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.381159 kubelet[1425]: E0209 18:53:16.381132 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.381159 kubelet[1425]: W0209 18:53:16.381145 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.381159 kubelet[1425]: E0209 18:53:16.381160 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.381358 kubelet[1425]: E0209 18:53:16.381338 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.381358 kubelet[1425]: W0209 18:53:16.381352 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.381442 kubelet[1425]: E0209 18:53:16.381370 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.381596 kubelet[1425]: E0209 18:53:16.381578 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.381596 kubelet[1425]: W0209 18:53:16.381588 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.381667 kubelet[1425]: E0209 18:53:16.381606 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.381783 kubelet[1425]: E0209 18:53:16.381767 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.381783 kubelet[1425]: W0209 18:53:16.381777 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.381848 kubelet[1425]: E0209 18:53:16.381797 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.381971 kubelet[1425]: E0209 18:53:16.381958 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.381971 kubelet[1425]: W0209 18:53:16.381968 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.382050 kubelet[1425]: E0209 18:53:16.381992 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.382166 kubelet[1425]: E0209 18:53:16.382155 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.382166 kubelet[1425]: W0209 18:53:16.382164 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.382231 kubelet[1425]: E0209 18:53:16.382180 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.382435 kubelet[1425]: E0209 18:53:16.382420 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.382435 kubelet[1425]: W0209 18:53:16.382432 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.382523 kubelet[1425]: E0209 18:53:16.382459 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.382632 kubelet[1425]: E0209 18:53:16.382620 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.382632 kubelet[1425]: W0209 18:53:16.382629 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.382706 kubelet[1425]: E0209 18:53:16.382646 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.382821 kubelet[1425]: E0209 18:53:16.382806 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.382821 kubelet[1425]: W0209 18:53:16.382816 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.382907 kubelet[1425]: E0209 18:53:16.382839 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.383051 kubelet[1425]: E0209 18:53:16.383035 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.383051 kubelet[1425]: W0209 18:53:16.383046 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.383137 kubelet[1425]: E0209 18:53:16.383070 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.383240 kubelet[1425]: E0209 18:53:16.383224 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.383240 kubelet[1425]: W0209 18:53:16.383235 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.383348 kubelet[1425]: E0209 18:53:16.383249 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.383412 kubelet[1425]: E0209 18:53:16.383399 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:16.383412 kubelet[1425]: W0209 18:53:16.383409 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:16.383479 kubelet[1425]: E0209 18:53:16.383424 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:16.450745 kubelet[1425]: I0209 18:53:16.450709 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-dq5xf" podStartSLOduration=3.631981213 podCreationTimestamp="2024-02-09 18:53:11 +0000 UTC" firstStartedPulling="2024-02-09 18:53:13.672498353 +0000 UTC m=+3.723753849" lastFinishedPulling="2024-02-09 18:53:15.49115841 +0000 UTC m=+5.542413906" observedRunningTime="2024-02-09 18:53:16.450583522 +0000 UTC m=+6.501839018" watchObservedRunningTime="2024-02-09 18:53:16.45064127 +0000 UTC m=+6.501896766" Feb 9 18:53:17.245335 kubelet[1425]: E0209 18:53:17.245296 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:17.326707 kubelet[1425]: E0209 18:53:17.326684 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:17.381255 kubelet[1425]: E0209 18:53:17.381233 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.381255 kubelet[1425]: W0209 18:53:17.381246 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.381400 kubelet[1425]: E0209 18:53:17.381262 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.381400 kubelet[1425]: E0209 18:53:17.381393 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.381400 kubelet[1425]: W0209 18:53:17.381399 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.381533 kubelet[1425]: E0209 18:53:17.381407 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.381626 kubelet[1425]: E0209 18:53:17.381610 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.381626 kubelet[1425]: W0209 18:53:17.381618 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.381626 kubelet[1425]: E0209 18:53:17.381626 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.381793 kubelet[1425]: E0209 18:53:17.381781 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.381793 kubelet[1425]: W0209 18:53:17.381788 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.381793 kubelet[1425]: E0209 18:53:17.381796 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.381948 kubelet[1425]: E0209 18:53:17.381922 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.381948 kubelet[1425]: W0209 18:53:17.381931 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382025 kubelet[1425]: E0209 18:53:17.381952 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.382096 kubelet[1425]: E0209 18:53:17.382086 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.382096 kubelet[1425]: W0209 18:53:17.382094 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382164 kubelet[1425]: E0209 18:53:17.382109 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.382262 kubelet[1425]: E0209 18:53:17.382246 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.382262 kubelet[1425]: W0209 18:53:17.382262 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382335 kubelet[1425]: E0209 18:53:17.382269 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.382393 kubelet[1425]: E0209 18:53:17.382383 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.382393 kubelet[1425]: W0209 18:53:17.382390 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382461 kubelet[1425]: E0209 18:53:17.382399 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.382607 kubelet[1425]: E0209 18:53:17.382583 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.382607 kubelet[1425]: W0209 18:53:17.382602 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382690 kubelet[1425]: E0209 18:53:17.382624 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.382898 kubelet[1425]: E0209 18:53:17.382876 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.382898 kubelet[1425]: W0209 18:53:17.382886 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.382898 kubelet[1425]: E0209 18:53:17.382895 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383063 kubelet[1425]: E0209 18:53:17.383050 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383063 kubelet[1425]: W0209 18:53:17.383059 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383129 kubelet[1425]: E0209 18:53:17.383067 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383236 kubelet[1425]: E0209 18:53:17.383222 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383236 kubelet[1425]: W0209 18:53:17.383232 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383303 kubelet[1425]: E0209 18:53:17.383240 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383405 kubelet[1425]: E0209 18:53:17.383387 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383405 kubelet[1425]: W0209 18:53:17.383399 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383486 kubelet[1425]: E0209 18:53:17.383415 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383591 kubelet[1425]: E0209 18:53:17.383578 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383591 kubelet[1425]: W0209 18:53:17.383586 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383666 kubelet[1425]: E0209 18:53:17.383596 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383758 kubelet[1425]: E0209 18:53:17.383745 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383758 kubelet[1425]: W0209 18:53:17.383753 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383758 kubelet[1425]: E0209 18:53:17.383760 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.383903 kubelet[1425]: E0209 18:53:17.383892 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.383903 kubelet[1425]: W0209 18:53:17.383900 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.383972 kubelet[1425]: E0209 18:53:17.383908 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.386137 kubelet[1425]: E0209 18:53:17.386119 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.386137 kubelet[1425]: W0209 18:53:17.386131 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.386206 kubelet[1425]: E0209 18:53:17.386144 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.386318 kubelet[1425]: E0209 18:53:17.386302 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.386318 kubelet[1425]: W0209 18:53:17.386311 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.386405 kubelet[1425]: E0209 18:53:17.386325 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.386515 kubelet[1425]: E0209 18:53:17.386499 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.386515 kubelet[1425]: W0209 18:53:17.386511 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.386600 kubelet[1425]: E0209 18:53:17.386538 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.386694 kubelet[1425]: E0209 18:53:17.386679 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.386694 kubelet[1425]: W0209 18:53:17.386690 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.386784 kubelet[1425]: E0209 18:53:17.386715 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.386861 kubelet[1425]: E0209 18:53:17.386849 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.386861 kubelet[1425]: W0209 18:53:17.386858 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.386931 kubelet[1425]: E0209 18:53:17.386876 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.387066 kubelet[1425]: E0209 18:53:17.387048 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.387066 kubelet[1425]: W0209 18:53:17.387059 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.387144 kubelet[1425]: E0209 18:53:17.387077 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.387305 kubelet[1425]: E0209 18:53:17.387282 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.387347 kubelet[1425]: W0209 18:53:17.387307 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.387347 kubelet[1425]: E0209 18:53:17.387333 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.387511 kubelet[1425]: E0209 18:53:17.387498 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.387511 kubelet[1425]: W0209 18:53:17.387507 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.387594 kubelet[1425]: E0209 18:53:17.387520 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.387665 kubelet[1425]: E0209 18:53:17.387652 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.387665 kubelet[1425]: W0209 18:53:17.387661 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.387730 kubelet[1425]: E0209 18:53:17.387673 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.387818 kubelet[1425]: E0209 18:53:17.387805 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.387818 kubelet[1425]: W0209 18:53:17.387816 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.387889 kubelet[1425]: E0209 18:53:17.387834 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.388011 kubelet[1425]: E0209 18:53:17.387999 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.388011 kubelet[1425]: W0209 18:53:17.388009 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.388089 kubelet[1425]: E0209 18:53:17.388021 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:17.388294 kubelet[1425]: E0209 18:53:17.388281 1425 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 18:53:17.388294 kubelet[1425]: W0209 18:53:17.388290 1425 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 18:53:17.388373 kubelet[1425]: E0209 18:53:17.388301 1425 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 18:53:18.245473 kubelet[1425]: E0209 18:53:18.245428 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:18.314409 kubelet[1425]: E0209 18:53:18.314355 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:19.246258 kubelet[1425]: E0209 18:53:19.246179 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:19.909562 env[1114]: time="2024-02-09T18:53:19.909488327Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:19.911049 env[1114]: time="2024-02-09T18:53:19.911003648Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6506d2e0be2d5ec9cb8dbe00c4b4f037c67b6ab4ec14a1f0c83333ac51f4da9a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:19.912860 env[1114]: time="2024-02-09T18:53:19.912827668Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:19.914930 env[1114]: time="2024-02-09T18:53:19.914867132Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:19.916098 env[1114]: time="2024-02-09T18:53:19.916045382Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:6506d2e0be2d5ec9cb8dbe00c4b4f037c67b6ab4ec14a1f0c83333ac51f4da9a\"" Feb 9 18:53:19.917767 env[1114]: time="2024-02-09T18:53:19.917728758Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 9 18:53:19.929296 env[1114]: time="2024-02-09T18:53:19.929257404Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a\"" Feb 9 18:53:19.929609 env[1114]: time="2024-02-09T18:53:19.929580941Z" level=info msg="StartContainer for \"562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a\"" Feb 9 18:53:19.946078 systemd[1]: Started cri-containerd-562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a.scope. Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.962811 kernel: kauditd_printk_skb: 310 callbacks suppressed Feb 9 18:53:19.962864 kernel: audit: type=1400 audit(1707504799.958:647): avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.962890 kernel: audit: type=1300 audit(1707504799.958:647): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=1493 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:19.958000 audit[1792]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=1493 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:19.965746 kernel: audit: type=1327 audit(1707504799.958:647): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536326461333136666430306534356238626230353539333765366435 Feb 9 18:53:19.958000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536326461333136666430306534356238626230353539333765366435 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.970335 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.970376 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.972228 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.976072 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.976111 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.978006 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.982352 kernel: audit: type=1400 audit(1707504799.958:648): avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.958000 audit: BPF prog-id=75 op=LOAD Feb 9 18:53:19.958000 audit[1792]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c000182ed0 items=0 ppid=1493 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:19.958000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536326461333136666430306534356238626230353539333765366435 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.960000 audit: BPF prog-id=76 op=LOAD Feb 9 18:53:19.960000 audit[1792]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c000182f18 items=0 ppid=1493 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:19.960000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536326461333136666430306534356238626230353539333765366435 Feb 9 18:53:19.966000 audit: BPF prog-id=76 op=UNLOAD Feb 9 18:53:19.966000 audit: BPF prog-id=75 op=UNLOAD Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { perfmon } for pid=1792 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit[1792]: AVC avc: denied { bpf } for pid=1792 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:19.966000 audit: BPF prog-id=77 op=LOAD Feb 9 18:53:19.966000 audit[1792]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c000182fa8 items=0 ppid=1493 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:19.966000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536326461333136666430306534356238626230353539333765366435 Feb 9 18:53:19.988612 env[1114]: time="2024-02-09T18:53:19.988569605Z" level=info msg="StartContainer for \"562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a\" returns successfully" Feb 9 18:53:19.994557 systemd[1]: cri-containerd-562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a.scope: Deactivated successfully. Feb 9 18:53:19.998000 audit: BPF prog-id=77 op=UNLOAD Feb 9 18:53:20.013388 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a-rootfs.mount: Deactivated successfully. Feb 9 18:53:20.168342 env[1114]: time="2024-02-09T18:53:20.168197567Z" level=info msg="shim disconnected" id=562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a Feb 9 18:53:20.168342 env[1114]: time="2024-02-09T18:53:20.168241028Z" level=warning msg="cleaning up after shim disconnected" id=562da316fd00e45b8bb055937e6d56a971bd56c4109dce7f0efa7bb9630a232a namespace=k8s.io Feb 9 18:53:20.168342 env[1114]: time="2024-02-09T18:53:20.168249695Z" level=info msg="cleaning up dead shim" Feb 9 18:53:20.174099 env[1114]: time="2024-02-09T18:53:20.174064187Z" level=warning msg="cleanup warnings time=\"2024-02-09T18:53:20Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1830 runtime=io.containerd.runc.v2\n" Feb 9 18:53:20.246499 kubelet[1425]: E0209 18:53:20.246450 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:20.314996 kubelet[1425]: E0209 18:53:20.314964 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:20.332616 kubelet[1425]: E0209 18:53:20.332586 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:20.333227 env[1114]: time="2024-02-09T18:53:20.333198514Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 9 18:53:21.247149 kubelet[1425]: E0209 18:53:21.247114 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:21.609995 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount443817650.mount: Deactivated successfully. Feb 9 18:53:22.247982 kubelet[1425]: E0209 18:53:22.247919 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:22.314875 kubelet[1425]: E0209 18:53:22.314820 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:23.248805 kubelet[1425]: E0209 18:53:23.248765 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:24.249405 kubelet[1425]: E0209 18:53:24.249369 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:24.314996 kubelet[1425]: E0209 18:53:24.314965 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:25.249868 kubelet[1425]: E0209 18:53:25.249836 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:25.552341 env[1114]: time="2024-02-09T18:53:25.552228463Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:25.554347 env[1114]: time="2024-02-09T18:53:25.554313232Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:8e8d96a874c0e2f137bc6e0ff4b9da4ac2341852e41d99ab81983d329bb87d93,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:25.556086 env[1114]: time="2024-02-09T18:53:25.556047063Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:25.557866 env[1114]: time="2024-02-09T18:53:25.557811121Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:25.558520 env[1114]: time="2024-02-09T18:53:25.558487860Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:8e8d96a874c0e2f137bc6e0ff4b9da4ac2341852e41d99ab81983d329bb87d93\"" Feb 9 18:53:25.560161 env[1114]: time="2024-02-09T18:53:25.560129568Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 9 18:53:25.571421 env[1114]: time="2024-02-09T18:53:25.571378650Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72\"" Feb 9 18:53:25.571711 env[1114]: time="2024-02-09T18:53:25.571689383Z" level=info msg="StartContainer for \"2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72\"" Feb 9 18:53:25.588579 systemd[1]: Started cri-containerd-2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72.scope. Feb 9 18:53:25.597000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600501 kernel: kauditd_printk_skb: 34 callbacks suppressed Feb 9 18:53:25.600599 kernel: audit: type=1400 audit(1707504805.597:654): avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.597000 audit[1854]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00019f6b0 a2=3c a3=8 items=0 ppid=1493 pid=1854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:25.605462 kernel: audit: type=1300 audit(1707504805.597:654): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00019f6b0 a2=3c a3=8 items=0 ppid=1493 pid=1854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:25.605520 kernel: audit: type=1327 audit(1707504805.597:654): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266343634303636373632323632336233386634613861303936363636 Feb 9 18:53:25.597000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266343634303636373632323632336233386634613861303936363636 Feb 9 18:53:25.608159 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.610111 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.612228 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.614186 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.618367 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.618414 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.622324 kernel: audit: type=1400 audit(1707504805.598:655): avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.598000 audit: BPF prog-id=78 op=LOAD Feb 9 18:53:25.598000 audit[1854]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00019f9d8 a2=78 a3=c0002849f0 items=0 ppid=1493 pid=1854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:25.598000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266343634303636373632323632336233386634613861303936363636 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.600000 audit: BPF prog-id=79 op=LOAD Feb 9 18:53:25.600000 audit[1854]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00019f770 a2=78 a3=c000284a38 items=0 ppid=1493 pid=1854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:25.600000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266343634303636373632323632336233386634613861303936363636 Feb 9 18:53:25.606000 audit: BPF prog-id=79 op=UNLOAD Feb 9 18:53:25.606000 audit: BPF prog-id=78 op=UNLOAD Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { perfmon } for pid=1854 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit[1854]: AVC avc: denied { bpf } for pid=1854 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:25.606000 audit: BPF prog-id=80 op=LOAD Feb 9 18:53:25.606000 audit[1854]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00019fc30 a2=78 a3=c000284ac8 items=0 ppid=1493 pid=1854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:25.606000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3266343634303636373632323632336233386634613861303936363636 Feb 9 18:53:25.629134 env[1114]: time="2024-02-09T18:53:25.629075822Z" level=info msg="StartContainer for \"2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72\" returns successfully" Feb 9 18:53:26.250383 kubelet[1425]: E0209 18:53:26.250347 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:26.314788 kubelet[1425]: E0209 18:53:26.314754 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:26.338799 kubelet[1425]: E0209 18:53:26.338784 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:27.251045 kubelet[1425]: E0209 18:53:27.250996 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:27.339603 kubelet[1425]: E0209 18:53:27.339569 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:28.098452 env[1114]: time="2024-02-09T18:53:28.098392410Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 18:53:28.101378 systemd[1]: cri-containerd-2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72.scope: Deactivated successfully. Feb 9 18:53:28.105000 audit: BPF prog-id=80 op=UNLOAD Feb 9 18:53:28.119162 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72-rootfs.mount: Deactivated successfully. Feb 9 18:53:28.197611 kubelet[1425]: I0209 18:53:28.197585 1425 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 9 18:53:28.251733 kubelet[1425]: E0209 18:53:28.251690 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:28.318563 systemd[1]: Created slice kubepods-besteffort-poda765b875_85ce_4a6f_b4f9_f1e991181e28.slice. Feb 9 18:53:28.320209 env[1114]: time="2024-02-09T18:53:28.320167368Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-bttqd,Uid:a765b875-85ce-4a6f-b4f9-f1e991181e28,Namespace:calico-system,Attempt:0,}" Feb 9 18:53:28.482110 kubelet[1425]: I0209 18:53:28.481994 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:28.482995 kubelet[1425]: I0209 18:53:28.482927 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:28.483182 kubelet[1425]: I0209 18:53:28.483033 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:28.486055 systemd[1]: Created slice kubepods-burstable-pod5d206ff4_88e2_4a5a_8c29_97be17101ef2.slice. Feb 9 18:53:28.500246 systemd[1]: Created slice kubepods-burstable-pod8bdd30f4_3584_4b9d_8e85_a162c42f3645.slice. Feb 9 18:53:28.515631 systemd[1]: Created slice kubepods-besteffort-poda308cf6a_d3ba_4950_80a1_026a4d0bc74f.slice. Feb 9 18:53:28.540565 kubelet[1425]: I0209 18:53:28.540544 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"config-volume\" (UniqueName: \"kubernetes.io/configmap/5d206ff4-88e2-4a5a-8c29-97be17101ef2-config-volume\") pod \"coredns-5d78c9869d-bj4bn\" (UID: \"5d206ff4-88e2-4a5a-8c29-97be17101ef2\") " pod="kube-system/coredns-5d78c9869d-bj4bn" Feb 9 18:53:28.640898 kubelet[1425]: I0209 18:53:28.640886 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-hpzpd\" (UniqueName: \"kubernetes.io/projected/a308cf6a-d3ba-4950-80a1-026a4d0bc74f-kube-api-access-hpzpd\") pod \"calico-kube-controllers-c95b8d4f9-q7bdx\" (UID: \"a308cf6a-d3ba-4950-80a1-026a4d0bc74f\") " pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" Feb 9 18:53:28.640969 kubelet[1425]: I0209 18:53:28.640921 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"config-volume\" (UniqueName: \"kubernetes.io/configmap/8bdd30f4-3584-4b9d-8e85-a162c42f3645-config-volume\") pod \"coredns-5d78c9869d-9hnnn\" (UID: \"8bdd30f4-3584-4b9d-8e85-a162c42f3645\") " pod="kube-system/coredns-5d78c9869d-9hnnn" Feb 9 18:53:28.641028 kubelet[1425]: I0209 18:53:28.641011 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-vpc9f\" (UniqueName: \"kubernetes.io/projected/8bdd30f4-3584-4b9d-8e85-a162c42f3645-kube-api-access-vpc9f\") pod \"coredns-5d78c9869d-9hnnn\" (UID: \"8bdd30f4-3584-4b9d-8e85-a162c42f3645\") " pod="kube-system/coredns-5d78c9869d-9hnnn" Feb 9 18:53:28.641057 kubelet[1425]: I0209 18:53:28.641043 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/a308cf6a-d3ba-4950-80a1-026a4d0bc74f-tigera-ca-bundle\") pod \"calico-kube-controllers-c95b8d4f9-q7bdx\" (UID: \"a308cf6a-d3ba-4950-80a1-026a4d0bc74f\") " pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" Feb 9 18:53:28.641117 kubelet[1425]: I0209 18:53:28.641065 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-64wtz\" (UniqueName: \"kubernetes.io/projected/5d206ff4-88e2-4a5a-8c29-97be17101ef2-kube-api-access-64wtz\") pod \"coredns-5d78c9869d-bj4bn\" (UID: \"5d206ff4-88e2-4a5a-8c29-97be17101ef2\") " pod="kube-system/coredns-5d78c9869d-bj4bn" Feb 9 18:53:29.113462 kubelet[1425]: E0209 18:53:29.113439 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:29.114062 env[1114]: time="2024-02-09T18:53:29.114020773Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-9hnnn,Uid:8bdd30f4-3584-4b9d-8e85-a162c42f3645,Namespace:kube-system,Attempt:0,}" Feb 9 18:53:29.118479 env[1114]: time="2024-02-09T18:53:29.118448505Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-kube-controllers-c95b8d4f9-q7bdx,Uid:a308cf6a-d3ba-4950-80a1-026a4d0bc74f,Namespace:calico-system,Attempt:0,}" Feb 9 18:53:29.252282 kubelet[1425]: E0209 18:53:29.252236 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:29.399321 kubelet[1425]: E0209 18:53:29.399244 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:29.399827 env[1114]: time="2024-02-09T18:53:29.399784330Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-bj4bn,Uid:5d206ff4-88e2-4a5a-8c29-97be17101ef2,Namespace:kube-system,Attempt:0,}" Feb 9 18:53:29.455966 env[1114]: time="2024-02-09T18:53:29.455912720Z" level=info msg="shim disconnected" id=2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72 Feb 9 18:53:29.455966 env[1114]: time="2024-02-09T18:53:29.455963395Z" level=warning msg="cleaning up after shim disconnected" id=2f4640667622623b38f4a8a0966660eaa0875b06b3e96d2d8882c35b9633ac72 namespace=k8s.io Feb 9 18:53:29.456109 env[1114]: time="2024-02-09T18:53:29.455971511Z" level=info msg="cleaning up dead shim" Feb 9 18:53:29.462656 env[1114]: time="2024-02-09T18:53:29.462614146Z" level=warning msg="cleanup warnings time=\"2024-02-09T18:53:29Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1905 runtime=io.containerd.runc.v2\n" Feb 9 18:53:29.559751 env[1114]: time="2024-02-09T18:53:29.559664926Z" level=error msg="Failed to destroy network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.560083 env[1114]: time="2024-02-09T18:53:29.560045910Z" level=error msg="encountered an error cleaning up failed sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.560129 env[1114]: time="2024-02-09T18:53:29.560090323Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-9hnnn,Uid:8bdd30f4-3584-4b9d-8e85-a162c42f3645,Namespace:kube-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.560346 kubelet[1425]: E0209 18:53:29.560326 1425 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.560411 kubelet[1425]: E0209 18:53:29.560384 1425 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="kube-system/coredns-5d78c9869d-9hnnn" Feb 9 18:53:29.560411 kubelet[1425]: E0209 18:53:29.560406 1425 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="kube-system/coredns-5d78c9869d-9hnnn" Feb 9 18:53:29.560476 kubelet[1425]: E0209 18:53:29.560468 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"coredns-5d78c9869d-9hnnn_kube-system(8bdd30f4-3584-4b9d-8e85-a162c42f3645)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"coredns-5d78c9869d-9hnnn_kube-system(8bdd30f4-3584-4b9d-8e85-a162c42f3645)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="kube-system/coredns-5d78c9869d-9hnnn" podUID=8bdd30f4-3584-4b9d-8e85-a162c42f3645 Feb 9 18:53:29.570205 env[1114]: time="2024-02-09T18:53:29.570145447Z" level=error msg="Failed to destroy network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.570523 env[1114]: time="2024-02-09T18:53:29.570492127Z" level=error msg="encountered an error cleaning up failed sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.570576 env[1114]: time="2024-02-09T18:53:29.570545046Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-bttqd,Uid:a765b875-85ce-4a6f-b4f9-f1e991181e28,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.570784 kubelet[1425]: E0209 18:53:29.570762 1425 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.570837 kubelet[1425]: E0209 18:53:29.570812 1425 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:29.570837 kubelet[1425]: E0209 18:53:29.570831 1425 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-bttqd" Feb 9 18:53:29.570902 kubelet[1425]: E0209 18:53:29.570875 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-bttqd_calico-system(a765b875-85ce-4a6f-b4f9-f1e991181e28)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-bttqd_calico-system(a765b875-85ce-4a6f-b4f9-f1e991181e28)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:29.573132 env[1114]: time="2024-02-09T18:53:29.573085940Z" level=error msg="Failed to destroy network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.573649 env[1114]: time="2024-02-09T18:53:29.573377427Z" level=error msg="encountered an error cleaning up failed sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.573649 env[1114]: time="2024-02-09T18:53:29.573425627Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-kube-controllers-c95b8d4f9-q7bdx,Uid:a308cf6a-d3ba-4950-80a1-026a4d0bc74f,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.573809 kubelet[1425]: E0209 18:53:29.573585 1425 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.573809 kubelet[1425]: E0209 18:53:29.573611 1425 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" Feb 9 18:53:29.573809 kubelet[1425]: E0209 18:53:29.573625 1425 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" Feb 9 18:53:29.573923 kubelet[1425]: E0209 18:53:29.573658 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"calico-kube-controllers-c95b8d4f9-q7bdx_calico-system(a308cf6a-d3ba-4950-80a1-026a4d0bc74f)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"calico-kube-controllers-c95b8d4f9-q7bdx_calico-system(a308cf6a-d3ba-4950-80a1-026a4d0bc74f)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" podUID=a308cf6a-d3ba-4950-80a1-026a4d0bc74f Feb 9 18:53:29.589342 env[1114]: time="2024-02-09T18:53:29.589278511Z" level=error msg="Failed to destroy network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.589668 env[1114]: time="2024-02-09T18:53:29.589634238Z" level=error msg="encountered an error cleaning up failed sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.589738 env[1114]: time="2024-02-09T18:53:29.589694541Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-bj4bn,Uid:5d206ff4-88e2-4a5a-8c29-97be17101ef2,Namespace:kube-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.589886 kubelet[1425]: E0209 18:53:29.589860 1425 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:29.589975 kubelet[1425]: E0209 18:53:29.589901 1425 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="kube-system/coredns-5d78c9869d-bj4bn" Feb 9 18:53:29.589975 kubelet[1425]: E0209 18:53:29.589919 1425 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="kube-system/coredns-5d78c9869d-bj4bn" Feb 9 18:53:29.589975 kubelet[1425]: E0209 18:53:29.589969 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"coredns-5d78c9869d-bj4bn_kube-system(5d206ff4-88e2-4a5a-8c29-97be17101ef2)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"coredns-5d78c9869d-bj4bn_kube-system(5d206ff4-88e2-4a5a-8c29-97be17101ef2)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="kube-system/coredns-5d78c9869d-bj4bn" podUID=5d206ff4-88e2-4a5a-8c29-97be17101ef2 Feb 9 18:53:30.242439 kubelet[1425]: E0209 18:53:30.242349 1425 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:30.252854 kubelet[1425]: E0209 18:53:30.252818 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:30.344541 kubelet[1425]: E0209 18:53:30.344514 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:30.345075 kubelet[1425]: I0209 18:53:30.345046 1425 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:30.345405 env[1114]: time="2024-02-09T18:53:30.345346679Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 9 18:53:30.346379 kubelet[1425]: I0209 18:53:30.346350 1425 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:30.346796 env[1114]: time="2024-02-09T18:53:30.346768605Z" level=info msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" Feb 9 18:53:30.347836 kubelet[1425]: I0209 18:53:30.347802 1425 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:30.348163 env[1114]: time="2024-02-09T18:53:30.348129266Z" level=info msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" Feb 9 18:53:30.349403 kubelet[1425]: I0209 18:53:30.349365 1425 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:30.351157 env[1114]: time="2024-02-09T18:53:30.351120144Z" level=info msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" Feb 9 18:53:30.351550 env[1114]: time="2024-02-09T18:53:30.351530614Z" level=info msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" Feb 9 18:53:30.379468 env[1114]: time="2024-02-09T18:53:30.379396903Z" level=error msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" failed" error="failed to destroy network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:30.379731 kubelet[1425]: E0209 18:53:30.379706 1425 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:30.379820 kubelet[1425]: E0209 18:53:30.379761 1425 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02} Feb 9 18:53:30.379820 kubelet[1425]: E0209 18:53:30.379796 1425 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"a308cf6a-d3ba-4950-80a1-026a4d0bc74f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 18:53:30.379916 env[1114]: time="2024-02-09T18:53:30.379718376Z" level=error msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" failed" error="failed to destroy network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:30.379958 kubelet[1425]: E0209 18:53:30.379823 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"a308cf6a-d3ba-4950-80a1-026a4d0bc74f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" podUID=a308cf6a-d3ba-4950-80a1-026a4d0bc74f Feb 9 18:53:30.379958 kubelet[1425]: E0209 18:53:30.379950 1425 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:30.380051 kubelet[1425]: E0209 18:53:30.379966 1425 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3} Feb 9 18:53:30.380051 kubelet[1425]: E0209 18:53:30.379989 1425 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"8bdd30f4-3584-4b9d-8e85-a162c42f3645\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 18:53:30.380051 kubelet[1425]: E0209 18:53:30.380010 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"8bdd30f4-3584-4b9d-8e85-a162c42f3645\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="kube-system/coredns-5d78c9869d-9hnnn" podUID=8bdd30f4-3584-4b9d-8e85-a162c42f3645 Feb 9 18:53:30.382781 env[1114]: time="2024-02-09T18:53:30.382744901Z" level=error msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" failed" error="failed to destroy network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:30.382881 kubelet[1425]: E0209 18:53:30.382860 1425 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:30.382881 kubelet[1425]: E0209 18:53:30.382881 1425 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d} Feb 9 18:53:30.382972 kubelet[1425]: E0209 18:53:30.382905 1425 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"a765b875-85ce-4a6f-b4f9-f1e991181e28\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 18:53:30.382972 kubelet[1425]: E0209 18:53:30.382924 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"a765b875-85ce-4a6f-b4f9-f1e991181e28\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-bttqd" podUID=a765b875-85ce-4a6f-b4f9-f1e991181e28 Feb 9 18:53:30.386297 env[1114]: time="2024-02-09T18:53:30.386237128Z" level=error msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" failed" error="failed to destroy network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:30.386575 kubelet[1425]: E0209 18:53:30.386546 1425 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:30.386622 kubelet[1425]: E0209 18:53:30.386591 1425 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30} Feb 9 18:53:30.386651 kubelet[1425]: E0209 18:53:30.386628 1425 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"5d206ff4-88e2-4a5a-8c29-97be17101ef2\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 18:53:30.386723 kubelet[1425]: E0209 18:53:30.386666 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"5d206ff4-88e2-4a5a-8c29-97be17101ef2\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="kube-system/coredns-5d78c9869d-bj4bn" podUID=5d206ff4-88e2-4a5a-8c29-97be17101ef2 Feb 9 18:53:30.480345 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02-shm.mount: Deactivated successfully. Feb 9 18:53:30.480437 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3-shm.mount: Deactivated successfully. Feb 9 18:53:30.480493 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d-shm.mount: Deactivated successfully. Feb 9 18:53:31.253723 kubelet[1425]: E0209 18:53:31.253646 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:32.254049 kubelet[1425]: E0209 18:53:32.254001 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:33.254487 kubelet[1425]: E0209 18:53:33.254432 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:34.164441 kubelet[1425]: I0209 18:53:34.164393 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:34.175084 systemd[1]: Created slice kubepods-besteffort-podefd881dd_6673_4970_92aa_65fcb7f11c44.slice. Feb 9 18:53:34.254773 kubelet[1425]: E0209 18:53:34.254722 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:34.266194 kubelet[1425]: I0209 18:53:34.266138 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-2h956\" (UniqueName: \"kubernetes.io/projected/efd881dd-6673-4970-92aa-65fcb7f11c44-kube-api-access-2h956\") pod \"nginx-deployment-845c78c8b9-r9c9x\" (UID: \"efd881dd-6673-4970-92aa-65fcb7f11c44\") " pod="default/nginx-deployment-845c78c8b9-r9c9x" Feb 9 18:53:34.478561 env[1114]: time="2024-02-09T18:53:34.478442643Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-r9c9x,Uid:efd881dd-6673-4970-92aa-65fcb7f11c44,Namespace:default,Attempt:0,}" Feb 9 18:53:34.996087 env[1114]: time="2024-02-09T18:53:34.996003439Z" level=error msg="Failed to destroy network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:34.997469 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6-shm.mount: Deactivated successfully. Feb 9 18:53:34.998220 env[1114]: time="2024-02-09T18:53:34.998181493Z" level=error msg="encountered an error cleaning up failed sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:34.998274 env[1114]: time="2024-02-09T18:53:34.998237698Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-r9c9x,Uid:efd881dd-6673-4970-92aa-65fcb7f11c44,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:34.998553 kubelet[1425]: E0209 18:53:34.998517 1425 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:34.998622 kubelet[1425]: E0209 18:53:34.998581 1425 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-r9c9x" Feb 9 18:53:34.998622 kubelet[1425]: E0209 18:53:34.998603 1425 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-r9c9x" Feb 9 18:53:34.998696 kubelet[1425]: E0209 18:53:34.998652 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-r9c9x_default(efd881dd-6673-4970-92aa-65fcb7f11c44)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-r9c9x_default(efd881dd-6673-4970-92aa-65fcb7f11c44)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-r9c9x" podUID=efd881dd-6673-4970-92aa-65fcb7f11c44 Feb 9 18:53:35.255243 kubelet[1425]: E0209 18:53:35.255085 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:35.357740 kubelet[1425]: I0209 18:53:35.357702 1425 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:35.358280 env[1114]: time="2024-02-09T18:53:35.358226848Z" level=info msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" Feb 9 18:53:35.420733 env[1114]: time="2024-02-09T18:53:35.420650011Z" level=error msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" failed" error="failed to destroy network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 18:53:35.421007 kubelet[1425]: E0209 18:53:35.420981 1425 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:35.421064 kubelet[1425]: E0209 18:53:35.421030 1425 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6} Feb 9 18:53:35.421091 kubelet[1425]: E0209 18:53:35.421085 1425 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"efd881dd-6673-4970-92aa-65fcb7f11c44\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 18:53:35.421152 kubelet[1425]: E0209 18:53:35.421122 1425 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"efd881dd-6673-4970-92aa-65fcb7f11c44\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-r9c9x" podUID=efd881dd-6673-4970-92aa-65fcb7f11c44 Feb 9 18:53:36.255855 kubelet[1425]: E0209 18:53:36.255801 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:37.256279 kubelet[1425]: E0209 18:53:37.256215 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:37.357643 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1048551910.mount: Deactivated successfully. Feb 9 18:53:38.256583 kubelet[1425]: E0209 18:53:38.256529 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:39.257725 kubelet[1425]: E0209 18:53:39.257656 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:39.773000 audit[2230]: NETFILTER_CFG table=filter:67 family=2 entries=15 op=nft_register_rule pid=2230 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:39.774961 kernel: kauditd_printk_skb: 34 callbacks suppressed Feb 9 18:53:39.775044 kernel: audit: type=1325 audit(1707504819.773:661): table=filter:67 family=2 entries=15 op=nft_register_rule pid=2230 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:39.773000 audit[2230]: SYSCALL arch=c000003e syscall=46 success=yes exit=4956 a0=3 a1=7fff6ed83330 a2=0 a3=7fff6ed8331c items=0 ppid=1587 pid=2230 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:39.779579 kernel: audit: type=1300 audit(1707504819.773:661): arch=c000003e syscall=46 success=yes exit=4956 a0=3 a1=7fff6ed83330 a2=0 a3=7fff6ed8331c items=0 ppid=1587 pid=2230 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:39.779629 kernel: audit: type=1327 audit(1707504819.773:661): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:39.773000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:39.782000 audit[2230]: NETFILTER_CFG table=nat:68 family=2 entries=19 op=nft_register_chain pid=2230 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:39.782000 audit[2230]: SYSCALL arch=c000003e syscall=46 success=yes exit=6068 a0=3 a1=7fff6ed83330 a2=0 a3=7fff6ed8331c items=0 ppid=1587 pid=2230 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:39.789033 kernel: audit: type=1325 audit(1707504819.782:662): table=nat:68 family=2 entries=19 op=nft_register_chain pid=2230 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:39.789100 kernel: audit: type=1300 audit(1707504819.782:662): arch=c000003e syscall=46 success=yes exit=6068 a0=3 a1=7fff6ed83330 a2=0 a3=7fff6ed8331c items=0 ppid=1587 pid=2230 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:39.789130 kernel: audit: type=1327 audit(1707504819.782:662): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:39.782000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:40.258244 kubelet[1425]: E0209 18:53:40.258101 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:40.414784 env[1114]: time="2024-02-09T18:53:40.414717377Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:40.424678 env[1114]: time="2024-02-09T18:53:40.424632768Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:1843802b91be8ff1c1d35ee08461ebe909e7a2199e59396f69886439a372312c,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:40.426549 env[1114]: time="2024-02-09T18:53:40.426504173Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:40.429194 env[1114]: time="2024-02-09T18:53:40.429144220Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:40.429612 env[1114]: time="2024-02-09T18:53:40.429569624Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:1843802b91be8ff1c1d35ee08461ebe909e7a2199e59396f69886439a372312c\"" Feb 9 18:53:40.439707 env[1114]: time="2024-02-09T18:53:40.439657265Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 9 18:53:40.625769 env[1114]: time="2024-02-09T18:53:40.625710933Z" level=info msg="CreateContainer within sandbox \"c21869deccdead06e9714f87a9f3287faad5550205ee8a8aa0e4b57d0cb11f05\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"27d5a37f12ea39749d2943f4a5ebb0dce70ea08afc230dd7a3d49858aa30fe5e\"" Feb 9 18:53:40.626308 env[1114]: time="2024-02-09T18:53:40.626287387Z" level=info msg="StartContainer for \"27d5a37f12ea39749d2943f4a5ebb0dce70ea08afc230dd7a3d49858aa30fe5e\"" Feb 9 18:53:40.644259 systemd[1]: Started cri-containerd-27d5a37f12ea39749d2943f4a5ebb0dce70ea08afc230dd7a3d49858aa30fe5e.scope. Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=1493 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:40.759686 kernel: audit: type=1400 audit(1707504820.753:663): avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759731 kernel: audit: type=1300 audit(1707504820.753:663): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=1493 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:40.759760 kernel: audit: type=1327 audit(1707504820.753:663): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3237643561333766313265613339373439643239343366346135656262 Feb 9 18:53:40.753000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3237643561333766313265613339373439643239343366346135656262 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.764842 kernel: audit: type=1400 audit(1707504820.753:664): avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.753000 audit: BPF prog-id=81 op=LOAD Feb 9 18:53:40.753000 audit[2240]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c000308670 items=0 ppid=1493 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:40.753000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3237643561333766313265613339373439643239343366346135656262 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.759000 audit: BPF prog-id=82 op=LOAD Feb 9 18:53:40.759000 audit[2240]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0003086b8 items=0 ppid=1493 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:40.759000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3237643561333766313265613339373439643239343366346135656262 Feb 9 18:53:40.761000 audit: BPF prog-id=82 op=UNLOAD Feb 9 18:53:40.761000 audit: BPF prog-id=81 op=UNLOAD Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { perfmon } for pid=2240 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit[2240]: AVC avc: denied { bpf } for pid=2240 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:40.761000 audit: BPF prog-id=83 op=LOAD Feb 9 18:53:40.761000 audit[2240]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c000308748 items=0 ppid=1493 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:40.761000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3237643561333766313265613339373439643239343366346135656262 Feb 9 18:53:40.781850 env[1114]: time="2024-02-09T18:53:40.781806093Z" level=info msg="StartContainer for \"27d5a37f12ea39749d2943f4a5ebb0dce70ea08afc230dd7a3d49858aa30fe5e\" returns successfully" Feb 9 18:53:40.844483 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 9 18:53:40.844604 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 9 18:53:41.259239 kubelet[1425]: E0209 18:53:41.259210 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:41.368898 kubelet[1425]: E0209 18:53:41.368883 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:41.381236 kubelet[1425]: I0209 18:53:41.381205 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-vk97k" podStartSLOduration=3.6246787940000003 podCreationTimestamp="2024-02-09 18:53:11 +0000 UTC" firstStartedPulling="2024-02-09 18:53:13.673366791 +0000 UTC m=+3.724622287" lastFinishedPulling="2024-02-09 18:53:40.429855 +0000 UTC m=+30.481110496" observedRunningTime="2024-02-09 18:53:41.381026974 +0000 UTC m=+31.432282470" watchObservedRunningTime="2024-02-09 18:53:41.381167003 +0000 UTC m=+31.432422499" Feb 9 18:53:42.052000 audit[2369]: AVC avc: denied { write } for pid=2369 comm="tee" name="fd" dev="proc" ino=18354 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.052000 audit[2369]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff4b2f3997 a2=241 a3=1b6 items=1 ppid=2346 pid=2369 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.052000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 9 18:53:42.052000 audit: PATH item=0 name="/dev/fd/63" inode=20695 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.052000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.070000 audit[2389]: AVC avc: denied { write } for pid=2389 comm="tee" name="fd" dev="proc" ino=20704 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.070000 audit[2389]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffea1924987 a2=241 a3=1b6 items=1 ppid=2337 pid=2389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.070000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 9 18:53:42.070000 audit: PATH item=0 name="/dev/fd/63" inode=18364 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.070000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.071000 audit[2383]: AVC avc: denied { write } for pid=2383 comm="tee" name="fd" dev="proc" ino=18367 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.071000 audit[2383]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc0c95a998 a2=241 a3=1b6 items=1 ppid=2330 pid=2383 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.071000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 9 18:53:42.071000 audit: PATH item=0 name="/dev/fd/63" inode=18358 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.071000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.075000 audit[2379]: AVC avc: denied { write } for pid=2379 comm="tee" name="fd" dev="proc" ino=19250 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.075000 audit[2379]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffe1745a988 a2=241 a3=1b6 items=1 ppid=2331 pid=2379 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.075000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 9 18:53:42.075000 audit: PATH item=0 name="/dev/fd/63" inode=20701 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.076000 audit[2395]: AVC avc: denied { write } for pid=2395 comm="tee" name="fd" dev="proc" ino=19254 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.076000 audit[2395]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffe8e73a997 a2=241 a3=1b6 items=1 ppid=2335 pid=2395 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.076000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 9 18:53:42.076000 audit: PATH item=0 name="/dev/fd/63" inode=20708 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.076000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.075000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.086000 audit[2404]: AVC avc: denied { write } for pid=2404 comm="tee" name="fd" dev="proc" ino=18374 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.086000 audit[2404]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fffc94c7999 a2=241 a3=1b6 items=1 ppid=2339 pid=2404 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.086000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 9 18:53:42.086000 audit: PATH item=0 name="/dev/fd/63" inode=20164 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.086000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.096000 audit[2407]: AVC avc: denied { write } for pid=2407 comm="tee" name="fd" dev="proc" ino=18378 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 18:53:42.096000 audit[2407]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffcb22c7997 a2=241 a3=1b6 items=1 ppid=2342 pid=2407 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.096000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 9 18:53:42.096000 audit: PATH item=0 name="/dev/fd/63" inode=18371 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:53:42.096000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 18:53:42.230963 kernel: Initializing XFRM netlink socket Feb 9 18:53:42.259598 kubelet[1425]: E0209 18:53:42.259546 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit: BPF prog-id=84 op=LOAD Feb 9 18:53:42.299000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7fff01e20d80 a2=70 a3=7fef8adf0000 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.299000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.299000 audit: BPF prog-id=84 op=UNLOAD Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.299000 audit: BPF prog-id=85 op=LOAD Feb 9 18:53:42.299000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7fff01e20d80 a2=70 a3=6e items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.299000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.301000 audit: BPF prog-id=85 op=UNLOAD Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=0 a1=7fff01e20d30 a2=70 a3=7fff01e20d80 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.301000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit: BPF prog-id=86 op=LOAD Feb 9 18:53:42.301000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7fff01e20d10 a2=70 a3=7fff01e20d80 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.301000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.301000 audit: BPF prog-id=86 op=UNLOAD Feb 9 18:53:42.301000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.301000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7fff01e20df0 a2=70 a3=0 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.301000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7fff01e20de0 a2=70 a3=0 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.302000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=3 a0=0 a1=7fff01e20e20 a2=70 a3=0 items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.302000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.302000 audit: BPF prog-id=87 op=LOAD Feb 9 18:53:42.302000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7fff01e20d40 a2=70 a3=ffffffff items=0 ppid=2336 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.302000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 18:53:42.306000 audit[2486]: AVC avc: denied { bpf } for pid=2486 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.306000 audit[2486]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffc83f801d0 a2=70 a3=208 items=0 ppid=2336 pid=2486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.306000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 18:53:42.306000 audit[2486]: AVC avc: denied { bpf } for pid=2486 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.306000 audit[2486]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffc83f800a0 a2=70 a3=3 items=0 ppid=2336 pid=2486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.306000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 18:53:42.314000 audit: BPF prog-id=87 op=UNLOAD Feb 9 18:53:42.319098 env[1114]: time="2024-02-09T18:53:42.319057993Z" level=info msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" Feb 9 18:53:42.376237 kubelet[1425]: E0209 18:53:42.370343 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:42.394000 audit[2540]: NETFILTER_CFG table=mangle:69 family=2 entries=19 op=nft_register_chain pid=2540 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:42.394000 audit[2540]: SYSCALL arch=c000003e syscall=46 success=yes exit=6800 a0=3 a1=7fff87faf0f0 a2=0 a3=7fff87faf0dc items=0 ppid=2336 pid=2540 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.394000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:42.396000 audit[2538]: NETFILTER_CFG table=raw:70 family=2 entries=19 op=nft_register_chain pid=2538 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:42.396000 audit[2538]: SYSCALL arch=c000003e syscall=46 success=yes exit=6132 a0=3 a1=7fffaccfc120 a2=0 a3=55c75c3b5000 items=0 ppid=2336 pid=2538 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.396000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:42.400000 audit[2539]: NETFILTER_CFG table=nat:71 family=2 entries=16 op=nft_register_chain pid=2539 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:42.400000 audit[2539]: SYSCALL arch=c000003e syscall=46 success=yes exit=5188 a0=3 a1=7fff116b84e0 a2=0 a3=5579b3c9c000 items=0 ppid=2336 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.400000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:42.400000 audit[2544]: NETFILTER_CFG table=filter:72 family=2 entries=39 op=nft_register_chain pid=2544 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:42.400000 audit[2544]: SYSCALL arch=c000003e syscall=46 success=yes exit=18472 a0=3 a1=7ffc793ee4a0 a2=0 a3=560155276000 items=0 ppid=2336 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.400000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:42.398439 systemd[1]: run-containerd-runc-k8s.io-27d5a37f12ea39749d2943f4a5ebb0dce70ea08afc230dd7a3d49858aa30fe5e-runc.1NblWv.mount: Deactivated successfully. Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] k8s.go 578: Cleaning up netns ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" iface="eth0" netns="/var/run/netns/cni-b689269e-904d-7fb7-1d9d-1b73e9b504fa" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" iface="eth0" netns="/var/run/netns/cni-b689269e-904d-7fb7-1d9d-1b73e9b504fa" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" iface="eth0" netns="/var/run/netns/cni-b689269e-904d-7fb7-1d9d-1b73e9b504fa" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] k8s.go 585: Releasing IP address(es) ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.428 [INFO][2511] utils.go 188: Calico CNI releasing IP address ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.461 [INFO][2563] ipam_plugin.go 415: Releasing address using handleID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.461 [INFO][2563] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.461 [INFO][2563] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.467 [WARNING][2563] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.467 [INFO][2563] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.468 [INFO][2563] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:42.470125 env[1114]: 2024-02-09 18:53:42.469 [INFO][2511] k8s.go 591: Teardown processing complete. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:53:42.471928 env[1114]: time="2024-02-09T18:53:42.471614380Z" level=info msg="TearDown network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" successfully" Feb 9 18:53:42.471928 env[1114]: time="2024-02-09T18:53:42.471653825Z" level=info msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" returns successfully" Feb 9 18:53:42.471454 systemd[1]: run-netns-cni\x2db689269e\x2d904d\x2d7fb7\x2d1d9d\x2d1b73e9b504fa.mount: Deactivated successfully. Feb 9 18:53:42.472080 kubelet[1425]: E0209 18:53:42.471975 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:42.472591 env[1114]: time="2024-02-09T18:53:42.472551099Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-bj4bn,Uid:5d206ff4-88e2-4a5a-8c29-97be17101ef2,Namespace:kube-system,Attempt:1,}" Feb 9 18:53:42.896518 systemd-networkd[1017]: cali63d00add529: Link UP Feb 9 18:53:42.897583 systemd-networkd[1017]: cali63d00add529: Gained carrier Feb 9 18:53:42.898130 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali63d00add529: link becomes ready Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.837 [INFO][2573] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0 coredns-5d78c9869d- kube-system 5d206ff4-88e2-4a5a-8c29-97be17101ef2 819 0 2024-02-09 18:53:03 +0000 UTC map[k8s-app:kube-dns pod-template-hash:5d78c9869d projectcalico.org/namespace:kube-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:coredns] map[] [] [] []} {k8s 10.0.0.69 coredns-5d78c9869d-bj4bn eth0 coredns [] [] [kns.kube-system ksa.kube-system.coredns] cali63d00add529 [{dns UDP 53 0 } {dns-tcp TCP 53 0 } {metrics TCP 9153 0 }] []}} ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.837 [INFO][2573] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.863 [INFO][2588] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" HandleID="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.872 [INFO][2588] ipam_plugin.go 268: Auto assigning IP ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" HandleID="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0004b1f20), Attrs:map[string]string{"namespace":"kube-system", "node":"10.0.0.69", "pod":"coredns-5d78c9869d-bj4bn", "timestamp":"2024-02-09 18:53:42.863218388 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.872 [INFO][2588] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.872 [INFO][2588] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.872 [INFO][2588] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.874 [INFO][2588] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.877 [INFO][2588] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.880 [INFO][2588] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.882 [INFO][2588] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.884 [INFO][2588] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.884 [INFO][2588] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.885 [INFO][2588] ipam.go 1682: Creating new handle: k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246 Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.888 [INFO][2588] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.891 [INFO][2588] ipam.go 1216: Successfully claimed IPs: [192.168.121.1/26] block=192.168.121.0/26 handle="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.891 [INFO][2588] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.1/26] handle="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" host="10.0.0.69" Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.891 [INFO][2588] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:42.906270 env[1114]: 2024-02-09 18:53:42.892 [INFO][2588] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.1/26] IPv6=[] ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" HandleID="k8s-pod-network.14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.894 [INFO][2573] k8s.go 385: Populated endpoint ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"5d206ff4-88e2-4a5a-8c29-97be17101ef2", ResourceVersion:"819", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"coredns-5d78c9869d-bj4bn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali63d00add529", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.894 [INFO][2573] k8s.go 386: Calico CNI using IPs: [192.168.121.1/32] ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.894 [INFO][2573] dataplane_linux.go 68: Setting the host side veth name to cali63d00add529 ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.897 [INFO][2573] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.897 [INFO][2573] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"5d206ff4-88e2-4a5a-8c29-97be17101ef2", ResourceVersion:"819", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246", Pod:"coredns-5d78c9869d-bj4bn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali63d00add529", MAC:"fe:cc:c6:47:90:5c", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:42.907206 env[1114]: 2024-02-09 18:53:42.904 [INFO][2573] k8s.go 491: Wrote updated endpoint to datastore ContainerID="14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246" Namespace="kube-system" Pod="coredns-5d78c9869d-bj4bn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:53:42.918098 env[1114]: time="2024-02-09T18:53:42.918020112Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:42.918098 env[1114]: time="2024-02-09T18:53:42.918059918Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:42.918098 env[1114]: time="2024-02-09T18:53:42.918089084Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:42.918335 env[1114]: time="2024-02-09T18:53:42.918295308Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246 pid=2616 runtime=io.containerd.runc.v2 Feb 9 18:53:42.933602 systemd[1]: Started cri-containerd-14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246.scope. Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.940000 audit: BPF prog-id=88 op=LOAD Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000117c48 a2=10 a3=1c items=0 ppid=2616 pid=2626 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3134656239313961646336633330353733373431393764663031616265 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001176b0 a2=3c a3=c items=0 ppid=2616 pid=2626 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3134656239313961646336633330353733373431393764663031616265 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit: BPF prog-id=89 op=LOAD Feb 9 18:53:42.941000 audit[2626]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001179d8 a2=78 a3=c000308ab0 items=0 ppid=2616 pid=2626 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3134656239313961646336633330353733373431393764663031616265 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit: BPF prog-id=90 op=LOAD Feb 9 18:53:42.941000 audit[2626]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000117770 a2=78 a3=c000308af8 items=0 ppid=2616 pid=2626 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3134656239313961646336633330353733373431393764663031616265 Feb 9 18:53:42.941000 audit: BPF prog-id=90 op=UNLOAD Feb 9 18:53:42.941000 audit: BPF prog-id=89 op=UNLOAD Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { perfmon } for pid=2626 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit[2626]: AVC avc: denied { bpf } for pid=2626 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:42.941000 audit: BPF prog-id=91 op=LOAD Feb 9 18:53:42.941000 audit[2626]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000117c30 a2=78 a3=c000308f08 items=0 ppid=2616 pid=2626 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:42.941000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3134656239313961646336633330353733373431393764663031616265 Feb 9 18:53:42.942893 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:42.962889 env[1114]: time="2024-02-09T18:53:42.962831099Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-bj4bn,Uid:5d206ff4-88e2-4a5a-8c29-97be17101ef2,Namespace:kube-system,Attempt:1,} returns sandbox id \"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246\"" Feb 9 18:53:42.963557 kubelet[1425]: E0209 18:53:42.963531 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:42.964373 env[1114]: time="2024-02-09T18:53:42.964321206Z" level=info msg="PullImage \"registry.k8s.io/coredns/coredns:v1.10.1\"" Feb 9 18:53:43.009000 audit[2653]: NETFILTER_CFG table=filter:73 family=2 entries=36 op=nft_register_chain pid=2653 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:43.009000 audit[2653]: SYSCALL arch=c000003e syscall=46 success=yes exit=19908 a0=3 a1=7ffca32cf830 a2=0 a3=7ffca32cf81c items=0 ppid=2336 pid=2653 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.009000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:43.241020 systemd-networkd[1017]: vxlan.calico: Link UP Feb 9 18:53:43.241029 systemd-networkd[1017]: vxlan.calico: Gained carrier Feb 9 18:53:43.260164 kubelet[1425]: E0209 18:53:43.260127 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:43.315314 env[1114]: time="2024-02-09T18:53:43.315266954Z" level=info msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.350 [INFO][2675] k8s.go 578: Cleaning up netns ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.351 [INFO][2675] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" iface="eth0" netns="/var/run/netns/cni-d3166bfd-f90e-0bb0-8b46-63731fb06d99" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.351 [INFO][2675] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" iface="eth0" netns="/var/run/netns/cni-d3166bfd-f90e-0bb0-8b46-63731fb06d99" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.351 [INFO][2675] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" iface="eth0" netns="/var/run/netns/cni-d3166bfd-f90e-0bb0-8b46-63731fb06d99" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.351 [INFO][2675] k8s.go 585: Releasing IP address(es) ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.351 [INFO][2675] utils.go 188: Calico CNI releasing IP address ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.368 [INFO][2682] ipam_plugin.go 415: Releasing address using handleID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.368 [INFO][2682] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.368 [INFO][2682] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.374 [WARNING][2682] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.374 [INFO][2682] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.375 [INFO][2682] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:43.378051 env[1114]: 2024-02-09 18:53:43.376 [INFO][2675] k8s.go 591: Teardown processing complete. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:53:43.378641 env[1114]: time="2024-02-09T18:53:43.378169755Z" level=info msg="TearDown network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" successfully" Feb 9 18:53:43.378641 env[1114]: time="2024-02-09T18:53:43.378204623Z" level=info msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" returns successfully" Feb 9 18:53:43.378894 env[1114]: time="2024-02-09T18:53:43.378848972Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-kube-controllers-c95b8d4f9-q7bdx,Uid:a308cf6a-d3ba-4950-80a1-026a4d0bc74f,Namespace:calico-system,Attempt:1,}" Feb 9 18:53:43.472838 systemd[1]: run-netns-cni\x2dd3166bfd\x2df90e\x2d0bb0\x2d8b46\x2d63731fb06d99.mount: Deactivated successfully. Feb 9 18:53:43.475615 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:53:43.475727 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5698d04cd2d: link becomes ready Feb 9 18:53:43.474261 systemd-networkd[1017]: cali5698d04cd2d: Link UP Feb 9 18:53:43.476136 systemd-networkd[1017]: cali5698d04cd2d: Gained carrier Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.421 [INFO][2689] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0 calico-kube-controllers-c95b8d4f9- calico-system a308cf6a-d3ba-4950-80a1-026a4d0bc74f 831 0 2024-02-09 18:53:11 +0000 UTC map[app.kubernetes.io/name:calico-kube-controllers k8s-app:calico-kube-controllers pod-template-hash:c95b8d4f9 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-kube-controllers] map[] [] [] []} {k8s 10.0.0.69 calico-kube-controllers-c95b8d4f9-q7bdx eth0 calico-kube-controllers [] [] [kns.calico-system ksa.calico-system.calico-kube-controllers] cali5698d04cd2d [] []}} ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.421 [INFO][2689] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.442 [INFO][2704] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" HandleID="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.451 [INFO][2704] ipam_plugin.go 268: Auto assigning IP ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" HandleID="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000249b10), Attrs:map[string]string{"namespace":"calico-system", "node":"10.0.0.69", "pod":"calico-kube-controllers-c95b8d4f9-q7bdx", "timestamp":"2024-02-09 18:53:43.442156505 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.451 [INFO][2704] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.451 [INFO][2704] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.451 [INFO][2704] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.453 [INFO][2704] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.456 [INFO][2704] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.459 [INFO][2704] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.460 [INFO][2704] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.462 [INFO][2704] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.462 [INFO][2704] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.463 [INFO][2704] ipam.go 1682: Creating new handle: k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61 Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.466 [INFO][2704] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.469 [INFO][2704] ipam.go 1216: Successfully claimed IPs: [192.168.121.2/26] block=192.168.121.0/26 handle="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.469 [INFO][2704] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.2/26] handle="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" host="10.0.0.69" Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.469 [INFO][2704] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:43.484417 env[1114]: 2024-02-09 18:53:43.469 [INFO][2704] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.2/26] IPv6=[] ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" HandleID="k8s-pod-network.5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.471 [INFO][2689] k8s.go 385: Populated endpoint ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0", GenerateName:"calico-kube-controllers-c95b8d4f9-", Namespace:"calico-system", SelfLink:"", UID:"a308cf6a-d3ba-4950-80a1-026a4d0bc74f", ResourceVersion:"831", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"calico-kube-controllers", "k8s-app":"calico-kube-controllers", "pod-template-hash":"c95b8d4f9", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-kube-controllers"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"calico-kube-controllers-c95b8d4f9-q7bdx", Endpoint:"eth0", ServiceAccountName:"calico-kube-controllers", IPNetworks:[]string{"192.168.121.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.calico-kube-controllers"}, InterfaceName:"cali5698d04cd2d", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.471 [INFO][2689] k8s.go 386: Calico CNI using IPs: [192.168.121.2/32] ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.471 [INFO][2689] dataplane_linux.go 68: Setting the host side veth name to cali5698d04cd2d ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.474 [INFO][2689] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.474 [INFO][2689] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0", GenerateName:"calico-kube-controllers-c95b8d4f9-", Namespace:"calico-system", SelfLink:"", UID:"a308cf6a-d3ba-4950-80a1-026a4d0bc74f", ResourceVersion:"831", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"calico-kube-controllers", "k8s-app":"calico-kube-controllers", "pod-template-hash":"c95b8d4f9", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-kube-controllers"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61", Pod:"calico-kube-controllers-c95b8d4f9-q7bdx", Endpoint:"eth0", ServiceAccountName:"calico-kube-controllers", IPNetworks:[]string{"192.168.121.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.calico-kube-controllers"}, InterfaceName:"cali5698d04cd2d", MAC:"de:55:b7:cd:24:a9", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:43.485080 env[1114]: 2024-02-09 18:53:43.480 [INFO][2689] k8s.go 491: Wrote updated endpoint to datastore ContainerID="5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61" Namespace="calico-system" Pod="calico-kube-controllers-c95b8d4f9-q7bdx" WorkloadEndpoint="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:53:43.497569 env[1114]: time="2024-02-09T18:53:43.497419920Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:43.497569 env[1114]: time="2024-02-09T18:53:43.497465586Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:43.497569 env[1114]: time="2024-02-09T18:53:43.497476398Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:43.497716 env[1114]: time="2024-02-09T18:53:43.497642905Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61 pid=2731 runtime=io.containerd.runc.v2 Feb 9 18:53:43.510590 systemd[1]: Started cri-containerd-5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61.scope. Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.519000 audit: BPF prog-id=92 op=LOAD Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001bdc48 a2=10 a3=1c items=0 ppid=2731 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.520000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3562343366396364666136633766306537386532373931356665346635 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001bd6b0 a2=3c a3=c items=0 ppid=2731 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.520000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3562343366396364666136633766306537386532373931356665346635 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.520000 audit: BPF prog-id=93 op=LOAD Feb 9 18:53:43.520000 audit[2740]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bd9d8 a2=78 a3=c00009c5e0 items=0 ppid=2731 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.520000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3562343366396364666136633766306537386532373931356665346635 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.521000 audit: BPF prog-id=94 op=LOAD Feb 9 18:53:43.521000 audit[2740]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c0001bd770 a2=78 a3=c00009c628 items=0 ppid=2731 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.521000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3562343366396364666136633766306537386532373931356665346635 Feb 9 18:53:43.522000 audit: BPF prog-id=94 op=UNLOAD Feb 9 18:53:43.522000 audit: BPF prog-id=93 op=UNLOAD Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { perfmon } for pid=2740 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit[2740]: AVC avc: denied { bpf } for pid=2740 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:43.522000 audit: BPF prog-id=95 op=LOAD Feb 9 18:53:43.522000 audit[2740]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bdc30 a2=78 a3=c00009ca38 items=0 ppid=2731 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.522000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3562343366396364666136633766306537386532373931356665346635 Feb 9 18:53:43.524485 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:43.530000 audit[2761]: NETFILTER_CFG table=filter:74 family=2 entries=40 op=nft_register_chain pid=2761 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:43.530000 audit[2761]: SYSCALL arch=c000003e syscall=46 success=yes exit=21096 a0=3 a1=7ffe602f47e0 a2=0 a3=7ffe602f47cc items=0 ppid=2336 pid=2761 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:43.530000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:43.553164 env[1114]: time="2024-02-09T18:53:43.553119015Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-kube-controllers-c95b8d4f9-q7bdx,Uid:a308cf6a-d3ba-4950-80a1-026a4d0bc74f,Namespace:calico-system,Attempt:1,} returns sandbox id \"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61\"" Feb 9 18:53:44.260644 kubelet[1425]: E0209 18:53:44.260584 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:44.341177 systemd-networkd[1017]: vxlan.calico: Gained IPv6LL Feb 9 18:53:44.471691 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1428176808.mount: Deactivated successfully. Feb 9 18:53:44.597129 systemd-networkd[1017]: cali63d00add529: Gained IPv6LL Feb 9 18:53:44.744516 env[1114]: time="2024-02-09T18:53:44.744463142Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/coredns/coredns:v1.10.1,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:44.853169 systemd-networkd[1017]: cali5698d04cd2d: Gained IPv6LL Feb 9 18:53:45.110348 env[1114]: time="2024-02-09T18:53:45.110222738Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:ead0a4a53df89fd173874b46093b6e62d8c72967bbf606d672c9e8c9b601a4fc,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:45.193379 env[1114]: time="2024-02-09T18:53:45.193338686Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/coredns/coredns:v1.10.1,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:45.217668 env[1114]: time="2024-02-09T18:53:45.217617207Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/coredns/coredns@sha256:a0ead06651cf580044aeb0a0feba63591858fb2e43ade8c9dea45a6a89ae7e5e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:45.218142 env[1114]: time="2024-02-09T18:53:45.218111067Z" level=info msg="PullImage \"registry.k8s.io/coredns/coredns:v1.10.1\" returns image reference \"sha256:ead0a4a53df89fd173874b46093b6e62d8c72967bbf606d672c9e8c9b601a4fc\"" Feb 9 18:53:45.218949 env[1114]: time="2024-02-09T18:53:45.218899138Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/kube-controllers:v3.27.0\"" Feb 9 18:53:45.219989 env[1114]: time="2024-02-09T18:53:45.219956401Z" level=info msg="CreateContainer within sandbox \"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246\" for container &ContainerMetadata{Name:coredns,Attempt:0,}" Feb 9 18:53:45.261067 kubelet[1425]: E0209 18:53:45.261020 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:45.265033 env[1114]: time="2024-02-09T18:53:45.264976628Z" level=info msg="CreateContainer within sandbox \"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246\" for &ContainerMetadata{Name:coredns,Attempt:0,} returns container id \"89fffbfae4f2679aae845b615c5d6f237ca5a3c7476087b80b950bd9dff8a86a\"" Feb 9 18:53:45.265617 env[1114]: time="2024-02-09T18:53:45.265574086Z" level=info msg="StartContainer for \"89fffbfae4f2679aae845b615c5d6f237ca5a3c7476087b80b950bd9dff8a86a\"" Feb 9 18:53:45.282136 systemd[1]: Started cri-containerd-89fffbfae4f2679aae845b615c5d6f237ca5a3c7476087b80b950bd9dff8a86a.scope. Feb 9 18:53:45.294109 kernel: kauditd_printk_skb: 277 callbacks suppressed Feb 9 18:53:45.294224 kernel: audit: type=1400 audit(1707504825.290:732): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.294252 kernel: audit: type=1400 audit(1707504825.290:733): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.298108 kernel: audit: type=1400 audit(1707504825.290:734): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.298157 kernel: audit: type=1400 audit(1707504825.290:735): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.300074 kernel: audit: type=1400 audit(1707504825.290:736): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.302021 kernel: audit: type=1400 audit(1707504825.290:737): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.303967 kernel: audit: type=1400 audit(1707504825.290:738): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.307868 kernel: audit: type=1400 audit(1707504825.290:739): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.307908 kernel: audit: type=1400 audit(1707504825.290:740): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.290000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.291000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.311827 kernel: audit: type=1400 audit(1707504825.291:741): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit: BPF prog-id=96 op=LOAD Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001bdc48 a2=10 a3=1c items=0 ppid=2616 pid=2779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.293000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839666666626661653466323637396161653834356236313563356436 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001bd6b0 a2=3c a3=c items=0 ppid=2616 pid=2779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.293000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839666666626661653466323637396161653834356236313563356436 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.293000 audit: BPF prog-id=97 op=LOAD Feb 9 18:53:45.293000 audit[2779]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bd9d8 a2=78 a3=c000386150 items=0 ppid=2616 pid=2779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.293000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839666666626661653466323637396161653834356236313563356436 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.295000 audit: BPF prog-id=98 op=LOAD Feb 9 18:53:45.295000 audit[2779]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c0001bd770 a2=78 a3=c000386198 items=0 ppid=2616 pid=2779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.295000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839666666626661653466323637396161653834356236313563356436 Feb 9 18:53:45.297000 audit: BPF prog-id=98 op=UNLOAD Feb 9 18:53:45.297000 audit: BPF prog-id=97 op=UNLOAD Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { perfmon } for pid=2779 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit[2779]: AVC avc: denied { bpf } for pid=2779 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.297000 audit: BPF prog-id=99 op=LOAD Feb 9 18:53:45.297000 audit[2779]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bdc30 a2=78 a3=c0003865a8 items=0 ppid=2616 pid=2779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.297000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839666666626661653466323637396161653834356236313563356436 Feb 9 18:53:45.314883 env[1114]: time="2024-02-09T18:53:45.314809689Z" level=info msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" Feb 9 18:53:45.314980 env[1114]: time="2024-02-09T18:53:45.314899300Z" level=info msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" Feb 9 18:53:45.416772 env[1114]: time="2024-02-09T18:53:45.416702271Z" level=info msg="StartContainer for \"89fffbfae4f2679aae845b615c5d6f237ca5a3c7476087b80b950bd9dff8a86a\" returns successfully" Feb 9 18:53:45.419925 kubelet[1425]: E0209 18:53:45.419901 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:45.492522 kubelet[1425]: I0209 18:53:45.492487 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/coredns-5d78c9869d-bj4bn" podStartSLOduration=40.238149464 podCreationTimestamp="2024-02-09 18:53:03 +0000 UTC" firstStartedPulling="2024-02-09 18:53:42.964098982 +0000 UTC m=+33.015354478" lastFinishedPulling="2024-02-09 18:53:45.21840137 +0000 UTC m=+35.269656866" observedRunningTime="2024-02-09 18:53:45.492432556 +0000 UTC m=+35.543688042" watchObservedRunningTime="2024-02-09 18:53:45.492451852 +0000 UTC m=+35.543707348" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.424 [INFO][2838] k8s.go 578: Cleaning up netns ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.424 [INFO][2838] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" iface="eth0" netns="/var/run/netns/cni-68bb71a3-a176-930f-8878-235981286d20" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.424 [INFO][2838] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" iface="eth0" netns="/var/run/netns/cni-68bb71a3-a176-930f-8878-235981286d20" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.425 [INFO][2838] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" iface="eth0" netns="/var/run/netns/cni-68bb71a3-a176-930f-8878-235981286d20" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.425 [INFO][2838] k8s.go 585: Releasing IP address(es) ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.425 [INFO][2838] utils.go 188: Calico CNI releasing IP address ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.441 [INFO][2860] ipam_plugin.go 415: Releasing address using handleID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.441 [INFO][2860] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.441 [INFO][2860] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.492 [WARNING][2860] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.492 [INFO][2860] ipam_plugin.go 443: Releasing address using workloadID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.506 [INFO][2860] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:45.508448 env[1114]: 2024-02-09 18:53:45.507 [INFO][2838] k8s.go 591: Teardown processing complete. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:53:45.509973 systemd[1]: run-netns-cni\x2d68bb71a3\x2da176\x2d930f\x2d8878\x2d235981286d20.mount: Deactivated successfully. Feb 9 18:53:45.510523 env[1114]: time="2024-02-09T18:53:45.510475494Z" level=info msg="TearDown network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" successfully" Feb 9 18:53:45.510523 env[1114]: time="2024-02-09T18:53:45.510510901Z" level=info msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" returns successfully" Feb 9 18:53:45.510817 kubelet[1425]: E0209 18:53:45.510799 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:45.511193 env[1114]: time="2024-02-09T18:53:45.511161019Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-9hnnn,Uid:8bdd30f4-3584-4b9d-8e85-a162c42f3645,Namespace:kube-system,Attempt:1,}" Feb 9 18:53:45.510000 audit[2875]: NETFILTER_CFG table=filter:75 family=2 entries=14 op=nft_register_rule pid=2875 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:45.510000 audit[2875]: SYSCALL arch=c000003e syscall=46 success=yes exit=4956 a0=3 a1=7fffeb6a7910 a2=0 a3=7fffeb6a78fc items=0 ppid=1587 pid=2875 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.510000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:45.516000 audit[2875]: NETFILTER_CFG table=nat:76 family=2 entries=14 op=nft_register_rule pid=2875 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:45.516000 audit[2875]: SYSCALL arch=c000003e syscall=46 success=yes exit=3300 a0=3 a1=7fffeb6a7910 a2=0 a3=31030 items=0 ppid=1587 pid=2875 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.516000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.466 [INFO][2848] k8s.go 578: Cleaning up netns ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.466 [INFO][2848] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" iface="eth0" netns="/var/run/netns/cni-8c606e67-8ba7-d802-ac2b-0a711f8703e7" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.466 [INFO][2848] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" iface="eth0" netns="/var/run/netns/cni-8c606e67-8ba7-d802-ac2b-0a711f8703e7" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.466 [INFO][2848] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" iface="eth0" netns="/var/run/netns/cni-8c606e67-8ba7-d802-ac2b-0a711f8703e7" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.467 [INFO][2848] k8s.go 585: Releasing IP address(es) ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.467 [INFO][2848] utils.go 188: Calico CNI releasing IP address ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.483 [INFO][2867] ipam_plugin.go 415: Releasing address using handleID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.483 [INFO][2867] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.506 [INFO][2867] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.513 [WARNING][2867] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.514 [INFO][2867] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.515 [INFO][2867] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:45.517904 env[1114]: 2024-02-09 18:53:45.516 [INFO][2848] k8s.go 591: Teardown processing complete. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:53:45.518236 env[1114]: time="2024-02-09T18:53:45.517919438Z" level=info msg="TearDown network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" successfully" Feb 9 18:53:45.518236 env[1114]: time="2024-02-09T18:53:45.517966207Z" level=info msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" returns successfully" Feb 9 18:53:45.519412 systemd[1]: run-netns-cni\x2d8c606e67\x2d8ba7\x2dd802\x2dac2b\x2d0a711f8703e7.mount: Deactivated successfully. Feb 9 18:53:45.520108 env[1114]: time="2024-02-09T18:53:45.520067899Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-bttqd,Uid:a765b875-85ce-4a6f-b4f9-f1e991181e28,Namespace:calico-system,Attempt:1,}" Feb 9 18:53:45.616730 systemd-networkd[1017]: cali81a251b265c: Link UP Feb 9 18:53:45.619362 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:53:45.619416 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali81a251b265c: link becomes ready Feb 9 18:53:45.619221 systemd-networkd[1017]: cali81a251b265c: Gained carrier Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.557 [INFO][2876] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0 coredns-5d78c9869d- kube-system 8bdd30f4-3584-4b9d-8e85-a162c42f3645 843 0 2024-02-09 18:53:03 +0000 UTC map[k8s-app:kube-dns pod-template-hash:5d78c9869d projectcalico.org/namespace:kube-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:coredns] map[] [] [] []} {k8s 10.0.0.69 coredns-5d78c9869d-9hnnn eth0 coredns [] [] [kns.kube-system ksa.kube-system.coredns] cali81a251b265c [{dns UDP 53 0 } {dns-tcp TCP 53 0 } {metrics TCP 9153 0 }] []}} ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.557 [INFO][2876] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.583 [INFO][2903] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" HandleID="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.592 [INFO][2903] ipam_plugin.go 268: Auto assigning IP ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" HandleID="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000227fe0), Attrs:map[string]string{"namespace":"kube-system", "node":"10.0.0.69", "pod":"coredns-5d78c9869d-9hnnn", "timestamp":"2024-02-09 18:53:45.583688694 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.592 [INFO][2903] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.592 [INFO][2903] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.592 [INFO][2903] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.593 [INFO][2903] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.599 [INFO][2903] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.602 [INFO][2903] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.603 [INFO][2903] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.604 [INFO][2903] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.604 [INFO][2903] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.608 [INFO][2903] ipam.go 1682: Creating new handle: k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.610 [INFO][2903] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.613 [INFO][2903] ipam.go 1216: Successfully claimed IPs: [192.168.121.3/26] block=192.168.121.0/26 handle="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.613 [INFO][2903] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.3/26] handle="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" host="10.0.0.69" Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.613 [INFO][2903] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:45.627012 env[1114]: 2024-02-09 18:53:45.613 [INFO][2903] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.3/26] IPv6=[] ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" HandleID="k8s-pod-network.cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.615 [INFO][2876] k8s.go 385: Populated endpoint ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"8bdd30f4-3584-4b9d-8e85-a162c42f3645", ResourceVersion:"843", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"coredns-5d78c9869d-9hnnn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali81a251b265c", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.615 [INFO][2876] k8s.go 386: Calico CNI using IPs: [192.168.121.3/32] ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.615 [INFO][2876] dataplane_linux.go 68: Setting the host side veth name to cali81a251b265c ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.619 [INFO][2876] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.619 [INFO][2876] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"8bdd30f4-3584-4b9d-8e85-a162c42f3645", ResourceVersion:"843", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f", Pod:"coredns-5d78c9869d-9hnnn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali81a251b265c", MAC:"4a:fc:9f:81:d2:2f", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:45.628469 env[1114]: 2024-02-09 18:53:45.624 [INFO][2876] k8s.go 491: Wrote updated endpoint to datastore ContainerID="cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f" Namespace="kube-system" Pod="coredns-5d78c9869d-9hnnn" WorkloadEndpoint="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:53:45.639000 audit[2936]: NETFILTER_CFG table=filter:77 family=2 entries=34 op=nft_register_chain pid=2936 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:45.639000 audit[2936]: SYSCALL arch=c000003e syscall=46 success=yes exit=17900 a0=3 a1=7fff0b406bc0 a2=0 a3=7fff0b406bac items=0 ppid=2336 pid=2936 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.639000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:45.642275 env[1114]: time="2024-02-09T18:53:45.642218567Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:45.642359 env[1114]: time="2024-02-09T18:53:45.642301664Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:45.642359 env[1114]: time="2024-02-09T18:53:45.642331742Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:45.642582 env[1114]: time="2024-02-09T18:53:45.642542223Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f pid=2943 runtime=io.containerd.runc.v2 Feb 9 18:53:45.650401 systemd-networkd[1017]: cali85cffc6fcbb: Link UP Feb 9 18:53:45.652527 systemd-networkd[1017]: cali85cffc6fcbb: Gained carrier Feb 9 18:53:45.652785 systemd[1]: Started cri-containerd-cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f.scope. Feb 9 18:53:45.653087 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali85cffc6fcbb: link becomes ready Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.567 [INFO][2888] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-csi--node--driver--bttqd-eth0 csi-node-driver- calico-system a765b875-85ce-4a6f-b4f9-f1e991181e28 845 0 2024-02-09 18:53:11 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.69 csi-node-driver-bttqd eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali85cffc6fcbb [] []}} ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.567 [INFO][2888] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.589 [INFO][2909] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" HandleID="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.600 [INFO][2909] ipam_plugin.go 268: Auto assigning IP ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" HandleID="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000051a30), Attrs:map[string]string{"namespace":"calico-system", "node":"10.0.0.69", "pod":"csi-node-driver-bttqd", "timestamp":"2024-02-09 18:53:45.589119476 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.600 [INFO][2909] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.613 [INFO][2909] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.613 [INFO][2909] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.615 [INFO][2909] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.619 [INFO][2909] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.630 [INFO][2909] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.633 [INFO][2909] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.635 [INFO][2909] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.635 [INFO][2909] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.638 [INFO][2909] ipam.go 1682: Creating new handle: k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2 Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.642 [INFO][2909] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.645 [INFO][2909] ipam.go 1216: Successfully claimed IPs: [192.168.121.4/26] block=192.168.121.0/26 handle="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.645 [INFO][2909] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.4/26] handle="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" host="10.0.0.69" Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.645 [INFO][2909] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:45.666006 env[1114]: 2024-02-09 18:53:45.645 [INFO][2909] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.4/26] IPv6=[] ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" HandleID="k8s-pod-network.3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.665000 audit: BPF prog-id=100 op=LOAD Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.647 [INFO][2888] k8s.go 385: Populated endpoint ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-csi--node--driver--bttqd-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a765b875-85ce-4a6f-b4f9-f1e991181e28", ResourceVersion:"845", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"csi-node-driver-bttqd", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali85cffc6fcbb", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.647 [INFO][2888] k8s.go 386: Calico CNI using IPs: [192.168.121.4/32] ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.647 [INFO][2888] dataplane_linux.go 68: Setting the host side veth name to cali85cffc6fcbb ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.656 [INFO][2888] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.656 [INFO][2888] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-csi--node--driver--bttqd-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a765b875-85ce-4a6f-b4f9-f1e991181e28", ResourceVersion:"845", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2", Pod:"csi-node-driver-bttqd", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali85cffc6fcbb", MAC:"16:7a:02:7a:0b:cf", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:45.666985 env[1114]: 2024-02-09 18:53:45.664 [INFO][2888] k8s.go 491: Wrote updated endpoint to datastore ContainerID="3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2" Namespace="calico-system" Pod="csi-node-driver-bttqd" WorkloadEndpoint="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2943 pid=2953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.668000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6364336636623063626132346566326333383063383065616666346634 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=2943 pid=2953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.668000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6364336636623063626132346566326333383063383065616666346634 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.668000 audit: BPF prog-id=101 op=LOAD Feb 9 18:53:45.668000 audit[2953]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c000388340 items=0 ppid=2943 pid=2953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.668000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6364336636623063626132346566326333383063383065616666346634 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit: BPF prog-id=102 op=LOAD Feb 9 18:53:45.669000 audit[2953]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c000388388 items=0 ppid=2943 pid=2953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6364336636623063626132346566326333383063383065616666346634 Feb 9 18:53:45.669000 audit: BPF prog-id=102 op=UNLOAD Feb 9 18:53:45.669000 audit: BPF prog-id=101 op=UNLOAD Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { perfmon } for pid=2953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit[2953]: AVC avc: denied { bpf } for pid=2953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.669000 audit: BPF prog-id=103 op=LOAD Feb 9 18:53:45.669000 audit[2953]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000388798 items=0 ppid=2943 pid=2953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6364336636623063626132346566326333383063383065616666346634 Feb 9 18:53:45.671373 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:45.674000 audit[2984]: NETFILTER_CFG table=filter:78 family=2 entries=48 op=nft_register_chain pid=2984 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:45.674000 audit[2984]: SYSCALL arch=c000003e syscall=46 success=yes exit=23548 a0=3 a1=7ffdc5e28540 a2=0 a3=7ffdc5e2852c items=0 ppid=2336 pid=2984 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.674000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:45.680257 env[1114]: time="2024-02-09T18:53:45.680186585Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:45.680257 env[1114]: time="2024-02-09T18:53:45.680224928Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:45.680257 env[1114]: time="2024-02-09T18:53:45.680237721Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:45.680481 env[1114]: time="2024-02-09T18:53:45.680427173Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2 pid=2992 runtime=io.containerd.runc.v2 Feb 9 18:53:45.694112 systemd[1]: Started cri-containerd-3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2.scope. Feb 9 18:53:45.699531 env[1114]: time="2024-02-09T18:53:45.699498328Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:coredns-5d78c9869d-9hnnn,Uid:8bdd30f4-3584-4b9d-8e85-a162c42f3645,Namespace:kube-system,Attempt:1,} returns sandbox id \"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f\"" Feb 9 18:53:45.700030 kubelet[1425]: E0209 18:53:45.700001 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:45.701781 env[1114]: time="2024-02-09T18:53:45.701753271Z" level=info msg="CreateContainer within sandbox \"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f\" for container &ContainerMetadata{Name:coredns,Attempt:0,}" Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit: BPF prog-id=104 op=LOAD Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2992 pid=3002 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.704000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361306163393132313465376431346465383261663837616662373062 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=2992 pid=3002 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.704000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361306163393132313465376431346465383261663837616662373062 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit: BPF prog-id=105 op=LOAD Feb 9 18:53:45.704000 audit[3002]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0003346f0 items=0 ppid=2992 pid=3002 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.704000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361306163393132313465376431346465383261663837616662373062 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.704000 audit: BPF prog-id=106 op=LOAD Feb 9 18:53:45.704000 audit[3002]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c000334738 items=0 ppid=2992 pid=3002 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.704000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361306163393132313465376431346465383261663837616662373062 Feb 9 18:53:45.705000 audit: BPF prog-id=106 op=UNLOAD Feb 9 18:53:45.705000 audit: BPF prog-id=105 op=UNLOAD Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { perfmon } for pid=3002 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit[3002]: AVC avc: denied { bpf } for pid=3002 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:45.705000 audit: BPF prog-id=107 op=LOAD Feb 9 18:53:45.705000 audit[3002]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c000334b48 items=0 ppid=2992 pid=3002 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:45.705000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361306163393132313465376431346465383261663837616662373062 Feb 9 18:53:45.706891 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:45.717865 env[1114]: time="2024-02-09T18:53:45.716933779Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-bttqd,Uid:a765b875-85ce-4a6f-b4f9-f1e991181e28,Namespace:calico-system,Attempt:1,} returns sandbox id \"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2\"" Feb 9 18:53:46.031873 env[1114]: time="2024-02-09T18:53:46.031691411Z" level=info msg="CreateContainer within sandbox \"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f\" for &ContainerMetadata{Name:coredns,Attempt:0,} returns container id \"0c929bf906e8cf6fe34f137f0f6ceac43d83d786b88ebd5ef85b4f01c57a734c\"" Feb 9 18:53:46.032737 env[1114]: time="2024-02-09T18:53:46.032677266Z" level=info msg="StartContainer for \"0c929bf906e8cf6fe34f137f0f6ceac43d83d786b88ebd5ef85b4f01c57a734c\"" Feb 9 18:53:46.046234 systemd[1]: Started cri-containerd-0c929bf906e8cf6fe34f137f0f6ceac43d83d786b88ebd5ef85b4f01c57a734c.scope. Feb 9 18:53:46.055000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.055000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit: BPF prog-id=108 op=LOAD Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2943 pid=3043 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063393239626639303665386366366665333466313337663066366365 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=2943 pid=3043 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063393239626639303665386366366665333466313337663066366365 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit: BPF prog-id=109 op=LOAD Feb 9 18:53:46.056000 audit[3043]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c000321610 items=0 ppid=2943 pid=3043 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063393239626639303665386366366665333466313337663066366365 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit: BPF prog-id=110 op=LOAD Feb 9 18:53:46.056000 audit[3043]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c000321658 items=0 ppid=2943 pid=3043 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063393239626639303665386366366665333466313337663066366365 Feb 9 18:53:46.056000 audit: BPF prog-id=110 op=UNLOAD Feb 9 18:53:46.056000 audit: BPF prog-id=109 op=UNLOAD Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { perfmon } for pid=3043 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit[3043]: AVC avc: denied { bpf } for pid=3043 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:46.056000 audit: BPF prog-id=111 op=LOAD Feb 9 18:53:46.056000 audit[3043]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000321a68 items=0 ppid=2943 pid=3043 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063393239626639303665386366366665333466313337663066366365 Feb 9 18:53:46.093497 env[1114]: time="2024-02-09T18:53:46.093440120Z" level=info msg="StartContainer for \"0c929bf906e8cf6fe34f137f0f6ceac43d83d786b88ebd5ef85b4f01c57a734c\" returns successfully" Feb 9 18:53:46.261987 kubelet[1425]: E0209 18:53:46.261922 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:46.422587 kubelet[1425]: E0209 18:53:46.422548 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:46.425204 kubelet[1425]: E0209 18:53:46.425182 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:46.441988 kubelet[1425]: I0209 18:53:46.441958 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/coredns-5d78c9869d-9hnnn" podStartSLOduration=43.441907941 podCreationTimestamp="2024-02-09 18:53:03 +0000 UTC" firstStartedPulling="0001-01-01 00:00:00 +0000 UTC" lastFinishedPulling="0001-01-01 00:00:00 +0000 UTC" observedRunningTime="2024-02-09 18:53:46.441774126 +0000 UTC m=+36.493029622" watchObservedRunningTime="2024-02-09 18:53:46.441907941 +0000 UTC m=+36.493163437" Feb 9 18:53:46.482000 audit[3075]: NETFILTER_CFG table=filter:79 family=2 entries=14 op=nft_register_rule pid=3075 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:46.482000 audit[3075]: SYSCALL arch=c000003e syscall=46 success=yes exit=4956 a0=3 a1=7fff88785d00 a2=0 a3=7fff88785cec items=0 ppid=1587 pid=3075 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.482000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:46.483000 audit[3075]: NETFILTER_CFG table=nat:80 family=2 entries=14 op=nft_register_rule pid=3075 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:46.483000 audit[3075]: SYSCALL arch=c000003e syscall=46 success=yes exit=3300 a0=3 a1=7fff88785d00 a2=0 a3=31030 items=0 ppid=1587 pid=3075 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.483000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:46.632000 audit[3077]: NETFILTER_CFG table=filter:81 family=2 entries=11 op=nft_register_rule pid=3077 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:46.632000 audit[3077]: SYSCALL arch=c000003e syscall=46 success=yes exit=2844 a0=3 a1=7ffe1e25a850 a2=0 a3=7ffe1e25a83c items=0 ppid=1587 pid=3077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.632000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:46.634000 audit[3077]: NETFILTER_CFG table=nat:82 family=2 entries=35 op=nft_register_chain pid=3077 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:46.634000 audit[3077]: SYSCALL arch=c000003e syscall=46 success=yes exit=13788 a0=3 a1=7ffe1e25a850 a2=0 a3=7ffe1e25a83c items=0 ppid=1587 pid=3077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:46.634000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:47.030099 systemd-networkd[1017]: cali81a251b265c: Gained IPv6LL Feb 9 18:53:47.262883 kubelet[1425]: E0209 18:53:47.262829 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:47.430524 kubelet[1425]: E0209 18:53:47.430493 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:47.431174 kubelet[1425]: E0209 18:53:47.430676 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:47.605119 systemd-networkd[1017]: cali85cffc6fcbb: Gained IPv6LL Feb 9 18:53:47.657000 audit[3088]: NETFILTER_CFG table=filter:83 family=2 entries=8 op=nft_register_rule pid=3088 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:47.657000 audit[3088]: SYSCALL arch=c000003e syscall=46 success=yes exit=2844 a0=3 a1=7ffc1006fff0 a2=0 a3=7ffc1006ffdc items=0 ppid=1587 pid=3088 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:47.657000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:47.661000 audit[3088]: NETFILTER_CFG table=nat:84 family=2 entries=56 op=nft_register_chain pid=3088 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:47.661000 audit[3088]: SYSCALL arch=c000003e syscall=46 success=yes exit=19452 a0=3 a1=7ffc1006fff0 a2=0 a3=7ffc1006ffdc items=0 ppid=1587 pid=3088 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:47.661000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:47.894958 kubelet[1425]: E0209 18:53:47.894917 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:48.263548 kubelet[1425]: E0209 18:53:48.263426 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:48.432000 kubelet[1425]: E0209 18:53:48.431976 1425 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 18:53:48.740472 env[1114]: time="2024-02-09T18:53:48.740420732Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/kube-controllers:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:48.742109 env[1114]: time="2024-02-09T18:53:48.742079542Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4e87edec0297dadd6f3bb25b2f540fd40e2abed9fff582c97ff4cd751d3f9803,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:48.746519 env[1114]: time="2024-02-09T18:53:48.746491310Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/kube-controllers:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:48.747526 env[1114]: time="2024-02-09T18:53:48.747490548Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/kube-controllers:v3.27.0\" returns image reference \"sha256:4e87edec0297dadd6f3bb25b2f540fd40e2abed9fff582c97ff4cd751d3f9803\"" Feb 9 18:53:48.748137 env[1114]: time="2024-02-09T18:53:48.748010967Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 9 18:53:48.748532 env[1114]: time="2024-02-09T18:53:48.748493412Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/kube-controllers@sha256:e264ab1fb2f1ae90dd1d84e226d11d2eb4350e74ac27de4c65f29f5aadba5bb1,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:48.757997 env[1114]: time="2024-02-09T18:53:48.757966813Z" level=info msg="CreateContainer within sandbox \"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61\" for container &ContainerMetadata{Name:calico-kube-controllers,Attempt:0,}" Feb 9 18:53:48.770553 env[1114]: time="2024-02-09T18:53:48.770503571Z" level=info msg="CreateContainer within sandbox \"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61\" for &ContainerMetadata{Name:calico-kube-controllers,Attempt:0,} returns container id \"89bbf39d9c496377fd838e06d1e3b59c176147e82c47f2ae52c57f7f0d6b0844\"" Feb 9 18:53:48.770997 env[1114]: time="2024-02-09T18:53:48.770967722Z" level=info msg="StartContainer for \"89bbf39d9c496377fd838e06d1e3b59c176147e82c47f2ae52c57f7f0d6b0844\"" Feb 9 18:53:48.784815 systemd[1]: Started cri-containerd-89bbf39d9c496377fd838e06d1e3b59c176147e82c47f2ae52c57f7f0d6b0844.scope. Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit: BPF prog-id=112 op=LOAD Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2731 pid=3120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:48.800000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839626266333964396334393633373766643833386530366431653362 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=2731 pid=3120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:48.800000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839626266333964396334393633373766643833386530366431653362 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.800000 audit: BPF prog-id=113 op=LOAD Feb 9 18:53:48.800000 audit[3120]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c000305440 items=0 ppid=2731 pid=3120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:48.800000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839626266333964396334393633373766643833386530366431653362 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit: BPF prog-id=114 op=LOAD Feb 9 18:53:48.801000 audit[3120]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c000305488 items=0 ppid=2731 pid=3120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:48.801000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839626266333964396334393633373766643833386530366431653362 Feb 9 18:53:48.801000 audit: BPF prog-id=114 op=UNLOAD Feb 9 18:53:48.801000 audit: BPF prog-id=113 op=UNLOAD Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { perfmon } for pid=3120 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit[3120]: AVC avc: denied { bpf } for pid=3120 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:48.801000 audit: BPF prog-id=115 op=LOAD Feb 9 18:53:48.801000 audit[3120]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000305898 items=0 ppid=2731 pid=3120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:48.801000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839626266333964396334393633373766643833386530366431653362 Feb 9 18:53:49.016281 env[1114]: time="2024-02-09T18:53:49.016122131Z" level=info msg="StartContainer for \"89bbf39d9c496377fd838e06d1e3b59c176147e82c47f2ae52c57f7f0d6b0844\" returns successfully" Feb 9 18:53:49.263970 kubelet[1425]: E0209 18:53:49.263895 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:49.315185 env[1114]: time="2024-02-09T18:53:49.315066761Z" level=info msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.347 [INFO][3166] k8s.go 578: Cleaning up netns ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.347 [INFO][3166] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" iface="eth0" netns="/var/run/netns/cni-be23209e-33e7-aa7b-b9bd-c0d4ed63f4bd" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.348 [INFO][3166] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" iface="eth0" netns="/var/run/netns/cni-be23209e-33e7-aa7b-b9bd-c0d4ed63f4bd" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.348 [INFO][3166] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" iface="eth0" netns="/var/run/netns/cni-be23209e-33e7-aa7b-b9bd-c0d4ed63f4bd" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.348 [INFO][3166] k8s.go 585: Releasing IP address(es) ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.348 [INFO][3166] utils.go 188: Calico CNI releasing IP address ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.366 [INFO][3174] ipam_plugin.go 415: Releasing address using handleID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.366 [INFO][3174] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.366 [INFO][3174] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.373 [WARNING][3174] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.373 [INFO][3174] ipam_plugin.go 443: Releasing address using workloadID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.374 [INFO][3174] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:49.377157 env[1114]: 2024-02-09 18:53:49.375 [INFO][3166] k8s.go 591: Teardown processing complete. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:53:49.377761 env[1114]: time="2024-02-09T18:53:49.377306865Z" level=info msg="TearDown network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" successfully" Feb 9 18:53:49.377761 env[1114]: time="2024-02-09T18:53:49.377347793Z" level=info msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" returns successfully" Feb 9 18:53:49.377925 env[1114]: time="2024-02-09T18:53:49.377902675Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-r9c9x,Uid:efd881dd-6673-4970-92aa-65fcb7f11c44,Namespace:default,Attempt:1,}" Feb 9 18:53:49.378863 systemd[1]: run-netns-cni\x2dbe23209e\x2d33e7\x2daa7b\x2db9bd\x2dc0d4ed63f4bd.mount: Deactivated successfully. Feb 9 18:53:49.446197 kubelet[1425]: I0209 18:53:49.446160 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-kube-controllers-c95b8d4f9-q7bdx" podStartSLOduration=33.252821819 podCreationTimestamp="2024-02-09 18:53:11 +0000 UTC" firstStartedPulling="2024-02-09 18:53:43.554486785 +0000 UTC m=+33.605742281" lastFinishedPulling="2024-02-09 18:53:48.74779157 +0000 UTC m=+38.799047066" observedRunningTime="2024-02-09 18:53:49.445639971 +0000 UTC m=+39.496895457" watchObservedRunningTime="2024-02-09 18:53:49.446126604 +0000 UTC m=+39.497382100" Feb 9 18:53:49.546896 systemd-networkd[1017]: calif2442b58c9a: Link UP Feb 9 18:53:49.548089 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:53:49.548166 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calif2442b58c9a: link becomes ready Feb 9 18:53:49.548435 systemd-networkd[1017]: calif2442b58c9a: Gained carrier Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.494 [INFO][3209] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0 nginx-deployment-845c78c8b9- default efd881dd-6673-4970-92aa-65fcb7f11c44 912 0 2024-02-09 18:53:34 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.69 nginx-deployment-845c78c8b9-r9c9x eth0 default [] [] [kns.default ksa.default.default] calif2442b58c9a [] []}} ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.495 [INFO][3209] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.515 [INFO][3217] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" HandleID="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.524 [INFO][3217] ipam_plugin.go 268: Auto assigning IP ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" HandleID="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000297a30), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.69", "pod":"nginx-deployment-845c78c8b9-r9c9x", "timestamp":"2024-02-09 18:53:49.515195455 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.524 [INFO][3217] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.524 [INFO][3217] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.524 [INFO][3217] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.525 [INFO][3217] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.528 [INFO][3217] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.531 [INFO][3217] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.532 [INFO][3217] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.534 [INFO][3217] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.534 [INFO][3217] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.535 [INFO][3217] ipam.go 1682: Creating new handle: k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6 Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.537 [INFO][3217] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.543 [INFO][3217] ipam.go 1216: Successfully claimed IPs: [192.168.121.5/26] block=192.168.121.0/26 handle="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.543 [INFO][3217] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.5/26] handle="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" host="10.0.0.69" Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.543 [INFO][3217] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:49.557702 env[1114]: 2024-02-09 18:53:49.543 [INFO][3217] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.5/26] IPv6=[] ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" HandleID="k8s-pod-network.187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.545 [INFO][3209] k8s.go 385: Populated endpoint ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"efd881dd-6673-4970-92aa-65fcb7f11c44", ResourceVersion:"912", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-r9c9x", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif2442b58c9a", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.545 [INFO][3209] k8s.go 386: Calico CNI using IPs: [192.168.121.5/32] ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.545 [INFO][3209] dataplane_linux.go 68: Setting the host side veth name to calif2442b58c9a ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.549 [INFO][3209] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.549 [INFO][3209] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"efd881dd-6673-4970-92aa-65fcb7f11c44", ResourceVersion:"912", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6", Pod:"nginx-deployment-845c78c8b9-r9c9x", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif2442b58c9a", MAC:"9e:61:cc:8a:19:cc", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:49.558321 env[1114]: 2024-02-09 18:53:49.554 [INFO][3209] k8s.go 491: Wrote updated endpoint to datastore ContainerID="187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6" Namespace="default" Pod="nginx-deployment-845c78c8b9-r9c9x" WorkloadEndpoint="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:53:49.565000 audit[3240]: NETFILTER_CFG table=filter:85 family=2 entries=48 op=nft_register_chain pid=3240 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:49.565000 audit[3240]: SYSCALL arch=c000003e syscall=46 success=yes exit=23424 a0=3 a1=7fffe9de0960 a2=0 a3=7fffe9de094c items=0 ppid=2336 pid=3240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.565000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:49.569984 env[1114]: time="2024-02-09T18:53:49.569912583Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:49.569984 env[1114]: time="2024-02-09T18:53:49.569958591Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:49.570142 env[1114]: time="2024-02-09T18:53:49.569968660Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:49.570383 env[1114]: time="2024-02-09T18:53:49.570338441Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6 pid=3248 runtime=io.containerd.runc.v2 Feb 9 18:53:49.584260 systemd[1]: Started cri-containerd-187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6.scope. Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.593000 audit: BPF prog-id=116 op=LOAD Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001c5c48 a2=10 a3=1c items=0 ppid=3248 pid=3258 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.594000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3138376638363838383834346531663561353336636539313433346463 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001c56b0 a2=3c a3=c items=0 ppid=3248 pid=3258 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.594000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3138376638363838383834346531663561353336636539313433346463 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit: BPF prog-id=117 op=LOAD Feb 9 18:53:49.594000 audit[3258]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001c59d8 a2=78 a3=c000268230 items=0 ppid=3248 pid=3258 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.594000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3138376638363838383834346531663561353336636539313433346463 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit: BPF prog-id=118 op=LOAD Feb 9 18:53:49.594000 audit[3258]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c0001c5770 a2=78 a3=c000268278 items=0 ppid=3248 pid=3258 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.594000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3138376638363838383834346531663561353336636539313433346463 Feb 9 18:53:49.594000 audit: BPF prog-id=118 op=UNLOAD Feb 9 18:53:49.594000 audit: BPF prog-id=117 op=UNLOAD Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { perfmon } for pid=3258 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit[3258]: AVC avc: denied { bpf } for pid=3258 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:49.594000 audit: BPF prog-id=119 op=LOAD Feb 9 18:53:49.594000 audit[3258]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001c5c30 a2=78 a3=c000268688 items=0 ppid=3248 pid=3258 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:49.594000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3138376638363838383834346531663561353336636539313433346463 Feb 9 18:53:49.595835 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:49.623393 env[1114]: time="2024-02-09T18:53:49.623343701Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-r9c9x,Uid:efd881dd-6673-4970-92aa-65fcb7f11c44,Namespace:default,Attempt:1,} returns sandbox id \"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6\"" Feb 9 18:53:50.177949 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3329602996.mount: Deactivated successfully. Feb 9 18:53:50.242580 kubelet[1425]: E0209 18:53:50.242532 1425 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:50.264795 kubelet[1425]: E0209 18:53:50.264762 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:50.563599 env[1114]: time="2024-02-09T18:53:50.563484540Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:50.565277 env[1114]: time="2024-02-09T18:53:50.565249778Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:91c1c91da7602f16686c149419195b486669f3a1828fd320cf332fdc6a25297d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:50.566917 env[1114]: time="2024-02-09T18:53:50.566890929Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:50.568667 env[1114]: time="2024-02-09T18:53:50.568620098Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:50.570353 env[1114]: time="2024-02-09T18:53:50.570308029Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:91c1c91da7602f16686c149419195b486669f3a1828fd320cf332fdc6a25297d\"" Feb 9 18:53:50.571154 env[1114]: time="2024-02-09T18:53:50.571129516Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 18:53:50.571852 env[1114]: time="2024-02-09T18:53:50.571817381Z" level=info msg="CreateContainer within sandbox \"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 9 18:53:50.583478 env[1114]: time="2024-02-09T18:53:50.583438546Z" level=info msg="CreateContainer within sandbox \"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"e72a576f9139f9b35b4d93360c654b07066a4f32539d2c646d029e53015d7b68\"" Feb 9 18:53:50.583877 env[1114]: time="2024-02-09T18:53:50.583856288Z" level=info msg="StartContainer for \"e72a576f9139f9b35b4d93360c654b07066a4f32539d2c646d029e53015d7b68\"" Feb 9 18:53:50.597457 systemd[1]: Started cri-containerd-e72a576f9139f9b35b4d93360c654b07066a4f32539d2c646d029e53015d7b68.scope. Feb 9 18:53:50.611961 kernel: kauditd_printk_skb: 365 callbacks suppressed Feb 9 18:53:50.612082 kernel: audit: type=1400 audit(1707504830.607:851): avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.612105 kernel: audit: type=1300 audit(1707504830.607:851): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001bd6b0 a2=3c a3=8 items=0 ppid=2992 pid=3290 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001bd6b0 a2=3c a3=8 items=0 ppid=2992 pid=3290 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:50.607000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6537326135373666393133396639623335623464393333363063363534 Feb 9 18:53:50.616197 kernel: audit: type=1327 audit(1707504830.607:851): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6537326135373666393133396639623335623464393333363063363534 Feb 9 18:53:50.616264 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.620366 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.620404 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.625579 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.625627 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.630156 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.630223 kernel: audit: type=1400 audit(1707504830.607:852): avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.607000 audit: BPF prog-id=120 op=LOAD Feb 9 18:53:50.607000 audit[3290]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bd9d8 a2=78 a3=c0000efc70 items=0 ppid=2992 pid=3290 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:50.607000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6537326135373666393133396639623335623464393333363063363534 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.610000 audit: BPF prog-id=121 op=LOAD Feb 9 18:53:50.610000 audit[3290]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c0001bd770 a2=78 a3=c0000efcb8 items=0 ppid=2992 pid=3290 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:50.610000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6537326135373666393133396639623335623464393333363063363534 Feb 9 18:53:50.613000 audit: BPF prog-id=121 op=UNLOAD Feb 9 18:53:50.613000 audit: BPF prog-id=120 op=UNLOAD Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { perfmon } for pid=3290 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit[3290]: AVC avc: denied { bpf } for pid=3290 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:50.613000 audit: BPF prog-id=122 op=LOAD Feb 9 18:53:50.613000 audit[3290]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bdc30 a2=78 a3=c0000efd48 items=0 ppid=2992 pid=3290 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:50.613000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6537326135373666393133396639623335623464393333363063363534 Feb 9 18:53:50.633586 update_engine[1106]: I0209 18:53:50.633044 1106 update_attempter.cc:509] Updating boot flags... Feb 9 18:53:50.643684 env[1114]: time="2024-02-09T18:53:50.643642681Z" level=info msg="StartContainer for \"e72a576f9139f9b35b4d93360c654b07066a4f32539d2c646d029e53015d7b68\" returns successfully" Feb 9 18:53:50.741226 systemd-networkd[1017]: calif2442b58c9a: Gained IPv6LL Feb 9 18:53:51.265108 kubelet[1425]: E0209 18:53:51.265063 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:52.265401 kubelet[1425]: E0209 18:53:52.265360 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:53.265500 kubelet[1425]: E0209 18:53:53.265445 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:54.265957 kubelet[1425]: E0209 18:53:54.265897 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:54.540707 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2026260926.mount: Deactivated successfully. Feb 9 18:53:55.266386 kubelet[1425]: E0209 18:53:55.266332 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:55.344252 env[1114]: time="2024-02-09T18:53:55.344202532Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:55.345832 env[1114]: time="2024-02-09T18:53:55.345805352Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:55.347266 env[1114]: time="2024-02-09T18:53:55.347230356Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:55.348711 env[1114]: time="2024-02-09T18:53:55.348679315Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:55.349377 env[1114]: time="2024-02-09T18:53:55.349330436Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a\"" Feb 9 18:53:55.350434 env[1114]: time="2024-02-09T18:53:55.350401460Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 9 18:53:55.350980 env[1114]: time="2024-02-09T18:53:55.350951701Z" level=info msg="CreateContainer within sandbox \"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 9 18:53:55.362018 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3661417182.mount: Deactivated successfully. Feb 9 18:53:55.363425 env[1114]: time="2024-02-09T18:53:55.363380945Z" level=info msg="CreateContainer within sandbox \"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"2a36914f39e8d8081cd5762f0a4531ebb730862d967ee52ec3f6d9b023ebca6b\"" Feb 9 18:53:55.363883 env[1114]: time="2024-02-09T18:53:55.363842007Z" level=info msg="StartContainer for \"2a36914f39e8d8081cd5762f0a4531ebb730862d967ee52ec3f6d9b023ebca6b\"" Feb 9 18:53:55.377418 systemd[1]: Started cri-containerd-2a36914f39e8d8081cd5762f0a4531ebb730862d967ee52ec3f6d9b023ebca6b.scope. Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.385000 audit: BPF prog-id=123 op=LOAD Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014fc48 a2=10 a3=1c items=0 ppid=3248 pid=3342 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:55.386000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3261333639313466333965386438303831636435373632663061343533 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00014f6b0 a2=3c a3=8 items=0 ppid=3248 pid=3342 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:55.386000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3261333639313466333965386438303831636435373632663061343533 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.386000 audit: BPF prog-id=124 op=LOAD Feb 9 18:53:55.386000 audit[3342]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014f9d8 a2=78 a3=c000304b20 items=0 ppid=3248 pid=3342 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:55.386000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3261333639313466333965386438303831636435373632663061343533 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.387000 audit: BPF prog-id=125 op=LOAD Feb 9 18:53:55.387000 audit[3342]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00014f770 a2=78 a3=c000304b68 items=0 ppid=3248 pid=3342 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:55.387000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3261333639313466333965386438303831636435373632663061343533 Feb 9 18:53:55.387000 audit: BPF prog-id=125 op=UNLOAD Feb 9 18:53:55.387000 audit: BPF prog-id=124 op=UNLOAD Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { perfmon } for pid=3342 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit[3342]: AVC avc: denied { bpf } for pid=3342 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:55.388000 audit: BPF prog-id=126 op=LOAD Feb 9 18:53:55.388000 audit[3342]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014fc30 a2=78 a3=c000304f78 items=0 ppid=3248 pid=3342 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:55.388000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3261333639313466333965386438303831636435373632663061343533 Feb 9 18:53:55.402657 env[1114]: time="2024-02-09T18:53:55.402545909Z" level=info msg="StartContainer for \"2a36914f39e8d8081cd5762f0a4531ebb730862d967ee52ec3f6d9b023ebca6b\" returns successfully" Feb 9 18:53:55.454371 kubelet[1425]: I0209 18:53:55.454327 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-r9c9x" podStartSLOduration=15.729241017 podCreationTimestamp="2024-02-09 18:53:34 +0000 UTC" firstStartedPulling="2024-02-09 18:53:49.624606617 +0000 UTC m=+39.675862113" lastFinishedPulling="2024-02-09 18:53:55.349649709 +0000 UTC m=+45.400905206" observedRunningTime="2024-02-09 18:53:55.454142743 +0000 UTC m=+45.505398239" watchObservedRunningTime="2024-02-09 18:53:55.45428411 +0000 UTC m=+45.505539616" Feb 9 18:53:56.267255 kubelet[1425]: E0209 18:53:56.267212 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:57.217000 audit[3392]: NETFILTER_CFG table=filter:86 family=2 entries=20 op=nft_register_rule pid=3392 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.219090 kernel: kauditd_printk_skb: 90 callbacks suppressed Feb 9 18:53:57.219146 kernel: audit: type=1325 audit(1707504837.217:875): table=filter:86 family=2 entries=20 op=nft_register_rule pid=3392 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.217000 audit[3392]: SYSCALL arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffc2b428150 a2=0 a3=7ffc2b42813c items=0 ppid=1587 pid=3392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.225112 kernel: audit: type=1300 audit(1707504837.217:875): arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7ffc2b428150 a2=0 a3=7ffc2b42813c items=0 ppid=1587 pid=3392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.225157 kernel: audit: type=1327 audit(1707504837.217:875): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.217000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.217000 audit[3392]: NETFILTER_CFG table=nat:87 family=2 entries=20 op=nft_register_rule pid=3392 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.217000 audit[3392]: SYSCALL arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7ffc2b428150 a2=0 a3=31030 items=0 ppid=1587 pid=3392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.239505 kernel: audit: type=1325 audit(1707504837.217:876): table=nat:87 family=2 entries=20 op=nft_register_rule pid=3392 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.239560 kernel: audit: type=1300 audit(1707504837.217:876): arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7ffc2b428150 a2=0 a3=31030 items=0 ppid=1587 pid=3392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.239582 kernel: audit: type=1327 audit(1707504837.217:876): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.217000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.239000 audit[3394]: NETFILTER_CFG table=filter:88 family=2 entries=32 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.239000 audit[3394]: SYSCALL arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7fff3c843930 a2=0 a3=7fff3c84391c items=0 ppid=1587 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.255803 kernel: audit: type=1325 audit(1707504837.239:877): table=filter:88 family=2 entries=32 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.255842 kernel: audit: type=1300 audit(1707504837.239:877): arch=c000003e syscall=46 success=yes exit=11292 a0=3 a1=7fff3c843930 a2=0 a3=7fff3c84391c items=0 ppid=1587 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.255861 kernel: audit: type=1327 audit(1707504837.239:877): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.239000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.250000 audit[3394]: NETFILTER_CFG table=nat:89 family=2 entries=20 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.250000 audit[3394]: SYSCALL arch=c000003e syscall=46 success=yes exit=5484 a0=3 a1=7fff3c843930 a2=0 a3=31030 items=0 ppid=1587 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.250000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:53:57.264953 kernel: audit: type=1325 audit(1707504837.250:878): table=nat:89 family=2 entries=20 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:53:57.268150 kubelet[1425]: E0209 18:53:57.268125 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:57.658013 kubelet[1425]: I0209 18:53:57.657974 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:53:57.665602 systemd[1]: Created slice kubepods-besteffort-podea24e25f_fa3d_4355_999b_f5ac15b1838a.slice. Feb 9 18:53:57.848758 kubelet[1425]: I0209 18:53:57.848710 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-xhm5c\" (UniqueName: \"kubernetes.io/projected/ea24e25f-fa3d-4355-999b-f5ac15b1838a-kube-api-access-xhm5c\") pod \"nfs-server-provisioner-0\" (UID: \"ea24e25f-fa3d-4355-999b-f5ac15b1838a\") " pod="default/nfs-server-provisioner-0" Feb 9 18:53:57.848758 kubelet[1425]: I0209 18:53:57.848773 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/ea24e25f-fa3d-4355-999b-f5ac15b1838a-data\") pod \"nfs-server-provisioner-0\" (UID: \"ea24e25f-fa3d-4355-999b-f5ac15b1838a\") " pod="default/nfs-server-provisioner-0" Feb 9 18:53:57.881203 env[1114]: time="2024-02-09T18:53:57.881149714Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:57.883607 env[1114]: time="2024-02-09T18:53:57.883551700Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:d36ef67f7b24c4facd86d0bc06b0cd907431a822dee695eb06b86a905bff85d4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:57.885465 env[1114]: time="2024-02-09T18:53:57.885427924Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:57.887167 env[1114]: time="2024-02-09T18:53:57.887139817Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:53:57.887687 env[1114]: time="2024-02-09T18:53:57.887656032Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:d36ef67f7b24c4facd86d0bc06b0cd907431a822dee695eb06b86a905bff85d4\"" Feb 9 18:53:57.889371 env[1114]: time="2024-02-09T18:53:57.889347315Z" level=info msg="CreateContainer within sandbox \"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 9 18:53:57.902801 env[1114]: time="2024-02-09T18:53:57.902746789Z" level=info msg="CreateContainer within sandbox \"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"613d9b87ee255e7f7855424003931703071c238562af236ffa7136f9acbd1e69\"" Feb 9 18:53:57.903275 env[1114]: time="2024-02-09T18:53:57.903244780Z" level=info msg="StartContainer for \"613d9b87ee255e7f7855424003931703071c238562af236ffa7136f9acbd1e69\"" Feb 9 18:53:57.920449 systemd[1]: Started cri-containerd-613d9b87ee255e7f7855424003931703071c238562af236ffa7136f9acbd1e69.scope. Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00013f6b0 a2=3c a3=8 items=0 ppid=2992 pid=3402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.929000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3631336439623837656532353565376637383535343234303033393331 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit: BPF prog-id=127 op=LOAD Feb 9 18:53:57.929000 audit[3402]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00013f9d8 a2=78 a3=c0001af0e0 items=0 ppid=2992 pid=3402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.929000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3631336439623837656532353565376637383535343234303033393331 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.929000 audit: BPF prog-id=128 op=LOAD Feb 9 18:53:57.929000 audit[3402]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00013f770 a2=78 a3=c0001af128 items=0 ppid=2992 pid=3402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.929000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3631336439623837656532353565376637383535343234303033393331 Feb 9 18:53:57.930000 audit: BPF prog-id=128 op=UNLOAD Feb 9 18:53:57.930000 audit: BPF prog-id=127 op=UNLOAD Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { perfmon } for pid=3402 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit[3402]: AVC avc: denied { bpf } for pid=3402 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:57.930000 audit: BPF prog-id=129 op=LOAD Feb 9 18:53:57.930000 audit[3402]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00013fc30 a2=78 a3=c0001af1b8 items=0 ppid=2992 pid=3402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:57.930000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3631336439623837656532353565376637383535343234303033393331 Feb 9 18:53:57.946040 env[1114]: time="2024-02-09T18:53:57.945979693Z" level=info msg="StartContainer for \"613d9b87ee255e7f7855424003931703071c238562af236ffa7136f9acbd1e69\" returns successfully" Feb 9 18:53:57.968030 env[1114]: time="2024-02-09T18:53:57.967984227Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:ea24e25f-fa3d-4355-999b-f5ac15b1838a,Namespace:default,Attempt:0,}" Feb 9 18:53:58.063088 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:53:58.063208 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 9 18:53:58.063196 systemd-networkd[1017]: cali60e51b789ff: Link UP Feb 9 18:53:58.063324 systemd-networkd[1017]: cali60e51b789ff: Gained carrier Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.006 [INFO][3433] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default ea24e25f-fa3d-4355-999b-f5ac15b1838a 982 0 2024-02-09 18:53:57 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 10.0.0.69 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.006 [INFO][3433] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.027 [INFO][3447] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" HandleID="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Workload="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.038 [INFO][3447] ipam_plugin.go 268: Auto assigning IP ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" HandleID="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Workload="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000050520), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.69", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-09 18:53:58.027350605 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.038 [INFO][3447] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.038 [INFO][3447] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.038 [INFO][3447] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.040 [INFO][3447] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.044 [INFO][3447] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.047 [INFO][3447] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.048 [INFO][3447] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.050 [INFO][3447] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.051 [INFO][3447] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.052 [INFO][3447] ipam.go 1682: Creating new handle: k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.054 [INFO][3447] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.058 [INFO][3447] ipam.go 1216: Successfully claimed IPs: [192.168.121.6/26] block=192.168.121.0/26 handle="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.058 [INFO][3447] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.6/26] handle="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" host="10.0.0.69" Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.058 [INFO][3447] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:53:58.070926 env[1114]: 2024-02-09 18:53:58.058 [INFO][3447] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.6/26] IPv6=[] ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" HandleID="k8s-pod-network.56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Workload="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.071470 env[1114]: 2024-02-09 18:53:58.060 [INFO][3433] k8s.go 385: Populated endpoint ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"ea24e25f-fa3d-4355-999b-f5ac15b1838a", ResourceVersion:"982", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 57, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.121.6/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:58.071470 env[1114]: 2024-02-09 18:53:58.060 [INFO][3433] k8s.go 386: Calico CNI using IPs: [192.168.121.6/32] ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.071470 env[1114]: 2024-02-09 18:53:58.060 [INFO][3433] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.071470 env[1114]: 2024-02-09 18:53:58.063 [INFO][3433] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.071674 env[1114]: 2024-02-09 18:53:58.064 [INFO][3433] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"ea24e25f-fa3d-4355-999b-f5ac15b1838a", ResourceVersion:"982", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 57, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.121.6/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"1e:08:62:61:8b:cd", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:53:58.071674 env[1114]: 2024-02-09 18:53:58.069 [INFO][3433] k8s.go 491: Wrote updated endpoint to datastore ContainerID="56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.69-k8s-nfs--server--provisioner--0-eth0" Feb 9 18:53:58.083184 env[1114]: time="2024-02-09T18:53:58.083126579Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:53:58.083318 env[1114]: time="2024-02-09T18:53:58.083163188Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:53:58.083318 env[1114]: time="2024-02-09T18:53:58.083184338Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:53:58.083557 env[1114]: time="2024-02-09T18:53:58.083482570Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b pid=3477 runtime=io.containerd.runc.v2 Feb 9 18:53:58.083000 audit[3483]: NETFILTER_CFG table=filter:90 family=2 entries=52 op=nft_register_chain pid=3483 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:53:58.083000 audit[3483]: SYSCALL arch=c000003e syscall=46 success=yes exit=24712 a0=3 a1=7ffc24df0800 a2=0 a3=7ffc24df07ec items=0 ppid=2336 pid=3483 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.083000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:53:58.093549 systemd[1]: Started cri-containerd-56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b.scope. Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit: BPF prog-id=130 op=LOAD Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3477 pid=3489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536623161623433333233333261636638376631376535646130356138 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=3477 pid=3489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536623161623433333233333261636638376631376535646130356138 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit: BPF prog-id=131 op=LOAD Feb 9 18:53:58.104000 audit[3489]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0002aa510 items=0 ppid=3477 pid=3489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536623161623433333233333261636638376631376535646130356138 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.104000 audit: BPF prog-id=132 op=LOAD Feb 9 18:53:58.104000 audit[3489]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0002aa558 items=0 ppid=3477 pid=3489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536623161623433333233333261636638376631376535646130356138 Feb 9 18:53:58.105000 audit: BPF prog-id=132 op=UNLOAD Feb 9 18:53:58.105000 audit: BPF prog-id=131 op=UNLOAD Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { perfmon } for pid=3489 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit[3489]: AVC avc: denied { bpf } for pid=3489 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:53:58.105000 audit: BPF prog-id=133 op=LOAD Feb 9 18:53:58.105000 audit[3489]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0002aa968 items=0 ppid=3477 pid=3489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:53:58.105000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536623161623433333233333261636638376631376535646130356138 Feb 9 18:53:58.106593 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:53:58.126840 env[1114]: time="2024-02-09T18:53:58.126790750Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:ea24e25f-fa3d-4355-999b-f5ac15b1838a,Namespace:default,Attempt:0,} returns sandbox id \"56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b\"" Feb 9 18:53:58.128179 env[1114]: time="2024-02-09T18:53:58.128142472Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 9 18:53:58.269182 kubelet[1425]: E0209 18:53:58.269082 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:53:58.307531 kubelet[1425]: I0209 18:53:58.307508 1425 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 9 18:53:58.307677 kubelet[1425]: I0209 18:53:58.307665 1425 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 9 18:53:58.464434 kubelet[1425]: I0209 18:53:58.464403 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-bttqd" podStartSLOduration=35.294480834 podCreationTimestamp="2024-02-09 18:53:11 +0000 UTC" firstStartedPulling="2024-02-09 18:53:45.717988376 +0000 UTC m=+35.769243862" lastFinishedPulling="2024-02-09 18:53:57.887878381 +0000 UTC m=+47.939133878" observedRunningTime="2024-02-09 18:53:58.464364508 +0000 UTC m=+48.515620024" watchObservedRunningTime="2024-02-09 18:53:58.46437085 +0000 UTC m=+48.515626346" Feb 9 18:53:59.253134 systemd-networkd[1017]: cali60e51b789ff: Gained IPv6LL Feb 9 18:53:59.269543 kubelet[1425]: E0209 18:53:59.269512 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:00.270501 kubelet[1425]: E0209 18:54:00.270439 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:00.863351 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1699448601.mount: Deactivated successfully. Feb 9 18:54:01.271406 kubelet[1425]: E0209 18:54:01.271351 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:02.271919 kubelet[1425]: E0209 18:54:02.271865 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:02.950790 env[1114]: time="2024-02-09T18:54:02.950719305Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:02.954631 env[1114]: time="2024-02-09T18:54:02.954588217Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:02.956349 env[1114]: time="2024-02-09T18:54:02.956317446Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:02.958164 env[1114]: time="2024-02-09T18:54:02.958141344Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:02.958702 env[1114]: time="2024-02-09T18:54:02.958672585Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4\"" Feb 9 18:54:02.960327 env[1114]: time="2024-02-09T18:54:02.960290745Z" level=info msg="CreateContainer within sandbox \"56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 9 18:54:02.969583 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount482451320.mount: Deactivated successfully. Feb 9 18:54:02.972070 env[1114]: time="2024-02-09T18:54:02.972032555Z" level=info msg="CreateContainer within sandbox \"56b1ab4332332acf87f17e5da05a85ad98f4875aecd116b74d4a9ea04672de3b\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"35d51be151767e37d1ebef3f9ae947f6f9a0edad475db9660648e4f065c801e0\"" Feb 9 18:54:02.972489 env[1114]: time="2024-02-09T18:54:02.972457837Z" level=info msg="StartContainer for \"35d51be151767e37d1ebef3f9ae947f6f9a0edad475db9660648e4f065c801e0\"" Feb 9 18:54:02.986971 systemd[1]: Started cri-containerd-35d51be151767e37d1ebef3f9ae947f6f9a0edad475db9660648e4f065c801e0.scope. Feb 9 18:54:02.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998728 kernel: kauditd_printk_skb: 105 callbacks suppressed Feb 9 18:54:02.998780 kernel: audit: type=1400 audit(1707504842.994:904): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998804 kernel: audit: type=1400 audit(1707504842.994:905): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002822 kernel: audit: type=1400 audit(1707504842.994:906): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002864 kernel: audit: type=1400 audit(1707504842.995:907): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006718 kernel: audit: type=1400 audit(1707504842.995:908): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006760 kernel: audit: type=1400 audit(1707504842.995:909): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.010710 kernel: audit: type=1400 audit(1707504842.995:910): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.010733 kernel: audit: type=1400 audit(1707504842.995:911): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.014656 kernel: audit: type=1400 audit(1707504842.995:912): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.014702 kernel: audit: type=1400 audit(1707504842.995:913): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.995000 audit: BPF prog-id=134 op=LOAD Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00019fc48 a2=10 a3=1c items=0 ppid=3477 pid=3524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:02.998000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3335643531626531353137363765333764316562656633663961653934 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00019f6b0 a2=3c a3=8 items=0 ppid=3477 pid=3524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:02.998000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3335643531626531353137363765333764316562656633663961653934 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:02.998000 audit: BPF prog-id=135 op=LOAD Feb 9 18:54:02.998000 audit[3524]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00019f9d8 a2=78 a3=c00023d110 items=0 ppid=3477 pid=3524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:02.998000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3335643531626531353137363765333764316562656633663961653934 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.002000 audit: BPF prog-id=136 op=LOAD Feb 9 18:54:03.002000 audit[3524]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00019f770 a2=78 a3=c00023d158 items=0 ppid=3477 pid=3524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:03.002000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3335643531626531353137363765333764316562656633663961653934 Feb 9 18:54:03.006000 audit: BPF prog-id=136 op=UNLOAD Feb 9 18:54:03.006000 audit: BPF prog-id=135 op=UNLOAD Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { perfmon } for pid=3524 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit[3524]: AVC avc: denied { bpf } for pid=3524 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:03.006000 audit: BPF prog-id=137 op=LOAD Feb 9 18:54:03.006000 audit[3524]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00019fc30 a2=78 a3=c00023d568 items=0 ppid=3477 pid=3524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:03.006000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3335643531626531353137363765333764316562656633663961653934 Feb 9 18:54:03.028304 env[1114]: time="2024-02-09T18:54:03.028272586Z" level=info msg="StartContainer for \"35d51be151767e37d1ebef3f9ae947f6f9a0edad475db9660648e4f065c801e0\" returns successfully" Feb 9 18:54:03.065000 audit[3554]: AVC avc: denied { search } for pid=3554 comm="rpcbind" name="crypto" dev="proc" ino=23336 scontext=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 18:54:03.065000 audit[3554]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7fc4801380c0 a2=0 a3=0 items=0 ppid=3534 pid=3554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 key=(null) Feb 9 18:54:03.065000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 9 18:54:03.095000 audit[3561]: AVC avc: denied { search } for pid=3561 comm="dbus-daemon" name="crypto" dev="proc" ino=23336 scontext=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 18:54:03.095000 audit[3561]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f9508d300c0 a2=0 a3=0 items=0 ppid=3534 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 key=(null) Feb 9 18:54:03.095000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 18:54:03.098000 audit[3562]: AVC avc: denied { watch } for pid=3562 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=538339 scontext=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c238,c321 tclass=dir permissive=0 Feb 9 18:54:03.098000 audit[3562]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=6 a1=5580e7ef1d30 a2=2c8 a3=7ffdc5900f5c items=0 ppid=3534 pid=3562 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 key=(null) Feb 9 18:54:03.098000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 18:54:03.101000 audit[3563]: AVC avc: denied { read } for pid=3563 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=25065 scontext=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 9 18:54:03.101000 audit[3563]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7feab24a3320 a1=80000 a2=d a3=7ffefbd1a780 items=0 ppid=3534 pid=3563 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 key=(null) Feb 9 18:54:03.101000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 18:54:03.101000 audit[3563]: AVC avc: denied { search } for pid=3563 comm="ganesha.nfsd" name="crypto" dev="proc" ino=23336 scontext=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 18:54:03.101000 audit[3563]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7feab19f70c0 a2=0 a3=0 items=0 ppid=3534 pid=3563 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c238,c321 key=(null) Feb 9 18:54:03.101000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 18:54:03.272108 kubelet[1425]: E0209 18:54:03.272001 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:03.474263 kubelet[1425]: I0209 18:54:03.474204 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=1.643127807 podCreationTimestamp="2024-02-09 18:53:57 +0000 UTC" firstStartedPulling="2024-02-09 18:53:58.127893843 +0000 UTC m=+48.179149329" lastFinishedPulling="2024-02-09 18:54:02.958919591 +0000 UTC m=+53.010175087" observedRunningTime="2024-02-09 18:54:03.474122347 +0000 UTC m=+53.525377833" watchObservedRunningTime="2024-02-09 18:54:03.474153565 +0000 UTC m=+53.525409061" Feb 9 18:54:03.482000 audit[3582]: NETFILTER_CFG table=filter:91 family=2 entries=20 op=nft_register_rule pid=3582 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:03.482000 audit[3582]: SYSCALL arch=c000003e syscall=46 success=yes exit=2844 a0=3 a1=7fffa37aff50 a2=0 a3=7fffa37aff3c items=0 ppid=1587 pid=3582 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:03.482000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:03.484000 audit[3582]: NETFILTER_CFG table=nat:92 family=2 entries=104 op=nft_register_chain pid=3582 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:03.484000 audit[3582]: SYSCALL arch=c000003e syscall=46 success=yes exit=47436 a0=3 a1=7fffa37aff50 a2=0 a3=7fffa37aff3c items=0 ppid=1587 pid=3582 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:03.484000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:04.272331 kubelet[1425]: E0209 18:54:04.272288 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:05.273437 kubelet[1425]: E0209 18:54:05.273359 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:06.274233 kubelet[1425]: E0209 18:54:06.274191 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:06.381000 audit[3585]: NETFILTER_CFG table=filter:93 family=2 entries=9 op=nft_register_rule pid=3585 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:06.381000 audit[3585]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffe4406c430 a2=0 a3=7ffe4406c41c items=0 ppid=1587 pid=3585 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.381000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:06.382000 audit[3585]: NETFILTER_CFG table=nat:94 family=2 entries=44 op=nft_register_rule pid=3585 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:06.382000 audit[3585]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffe4406c430 a2=0 a3=7ffe4406c41c items=0 ppid=1587 pid=3585 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.382000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:06.412000 audit[3587]: NETFILTER_CFG table=filter:95 family=2 entries=10 op=nft_register_rule pid=3587 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:06.412000 audit[3587]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffca8a67da0 a2=0 a3=7ffca8a67d8c items=0 ppid=1587 pid=3587 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.412000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:06.414000 audit[3587]: NETFILTER_CFG table=nat:96 family=2 entries=44 op=nft_register_rule pid=3587 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:06.414000 audit[3587]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffca8a67da0 a2=0 a3=7ffca8a67d8c items=0 ppid=1587 pid=3587 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.414000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:06.497773 kubelet[1425]: I0209 18:54:06.497737 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:54:06.502704 systemd[1]: Created slice kubepods-besteffort-pod7a9b1d71_fdfd_4073_b033_a29bf782f9b7.slice. Feb 9 18:54:06.687856 kubelet[1425]: I0209 18:54:06.687820 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/7a9b1d71-fdfd-4073-b033-a29bf782f9b7-calico-apiserver-certs\") pod \"calico-apiserver-759d5dcb99-d6zqf\" (UID: \"7a9b1d71-fdfd-4073-b033-a29bf782f9b7\") " pod="calico-apiserver/calico-apiserver-759d5dcb99-d6zqf" Feb 9 18:54:06.688020 kubelet[1425]: I0209 18:54:06.687873 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-z482m\" (UniqueName: \"kubernetes.io/projected/7a9b1d71-fdfd-4073-b033-a29bf782f9b7-kube-api-access-z482m\") pod \"calico-apiserver-759d5dcb99-d6zqf\" (UID: \"7a9b1d71-fdfd-4073-b033-a29bf782f9b7\") " pod="calico-apiserver/calico-apiserver-759d5dcb99-d6zqf" Feb 9 18:54:06.805117 env[1114]: time="2024-02-09T18:54:06.805067716Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-759d5dcb99-d6zqf,Uid:7a9b1d71-fdfd-4073-b033-a29bf782f9b7,Namespace:calico-apiserver,Attempt:0,}" Feb 9 18:54:06.923645 systemd-networkd[1017]: cali0a2dc6954ab: Link UP Feb 9 18:54:06.926155 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:54:06.926219 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali0a2dc6954ab: link becomes ready Feb 9 18:54:06.926044 systemd-networkd[1017]: cali0a2dc6954ab: Gained carrier Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.872 [INFO][3591] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0 calico-apiserver-759d5dcb99- calico-apiserver 7a9b1d71-fdfd-4073-b033-a29bf782f9b7 1068 0 2024-02-09 18:54:06 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:759d5dcb99 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 10.0.0.69 calico-apiserver-759d5dcb99-d6zqf eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali0a2dc6954ab [] []}} ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.872 [INFO][3591] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.892 [INFO][3604] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" HandleID="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Workload="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.903 [INFO][3604] ipam_plugin.go 268: Auto assigning IP ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" HandleID="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Workload="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc00058faa0), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"10.0.0.69", "pod":"calico-apiserver-759d5dcb99-d6zqf", "timestamp":"2024-02-09 18:54:06.892462709 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.903 [INFO][3604] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.903 [INFO][3604] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.903 [INFO][3604] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.904 [INFO][3604] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.907 [INFO][3604] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.910 [INFO][3604] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.911 [INFO][3604] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.913 [INFO][3604] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.913 [INFO][3604] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.914 [INFO][3604] ipam.go 1682: Creating new handle: k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5 Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.916 [INFO][3604] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.920 [INFO][3604] ipam.go 1216: Successfully claimed IPs: [192.168.121.7/26] block=192.168.121.0/26 handle="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.920 [INFO][3604] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.7/26] handle="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" host="10.0.0.69" Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.920 [INFO][3604] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:06.936532 env[1114]: 2024-02-09 18:54:06.920 [INFO][3604] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.7/26] IPv6=[] ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" HandleID="k8s-pod-network.15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Workload="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.922 [INFO][3591] k8s.go 385: Populated endpoint ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0", GenerateName:"calico-apiserver-759d5dcb99-", Namespace:"calico-apiserver", SelfLink:"", UID:"7a9b1d71-fdfd-4073-b033-a29bf782f9b7", ResourceVersion:"1068", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 54, 6, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"759d5dcb99", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"calico-apiserver-759d5dcb99-d6zqf", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.121.7/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali0a2dc6954ab", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.922 [INFO][3591] k8s.go 386: Calico CNI using IPs: [192.168.121.7/32] ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.922 [INFO][3591] dataplane_linux.go 68: Setting the host side veth name to cali0a2dc6954ab ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.926 [INFO][3591] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.926 [INFO][3591] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0", GenerateName:"calico-apiserver-759d5dcb99-", Namespace:"calico-apiserver", SelfLink:"", UID:"7a9b1d71-fdfd-4073-b033-a29bf782f9b7", ResourceVersion:"1068", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 54, 6, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"759d5dcb99", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5", Pod:"calico-apiserver-759d5dcb99-d6zqf", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.121.7/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali0a2dc6954ab", MAC:"72:44:02:d7:24:57", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:06.937135 env[1114]: 2024-02-09 18:54:06.935 [INFO][3591] k8s.go 491: Wrote updated endpoint to datastore ContainerID="15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5" Namespace="calico-apiserver" Pod="calico-apiserver-759d5dcb99-d6zqf" WorkloadEndpoint="10.0.0.69-k8s-calico--apiserver--759d5dcb99--d6zqf-eth0" Feb 9 18:54:06.948138 env[1114]: time="2024-02-09T18:54:06.947291556Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:54:06.948138 env[1114]: time="2024-02-09T18:54:06.947330460Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:54:06.948138 env[1114]: time="2024-02-09T18:54:06.947357961Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:54:06.948138 env[1114]: time="2024-02-09T18:54:06.947506300Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5 pid=3637 runtime=io.containerd.runc.v2 Feb 9 18:54:06.953000 audit[3646]: NETFILTER_CFG table=filter:97 family=2 entries=59 op=nft_register_chain pid=3646 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:54:06.953000 audit[3646]: SYSCALL arch=c000003e syscall=46 success=yes exit=29260 a0=3 a1=7ffdef0ea040 a2=0 a3=7ffdef0ea02c items=0 ppid=2336 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.953000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:54:06.962066 systemd[1]: Started cri-containerd-15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5.scope. Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.970000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit: BPF prog-id=138 op=LOAD Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000149c48 a2=10 a3=1c items=0 ppid=3637 pid=3645 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.971000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135626131656332666336633365623865346462623133666638623264 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001496b0 a2=3c a3=c items=0 ppid=3637 pid=3645 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.971000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135626131656332666336633365623865346462623133666638623264 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit: BPF prog-id=139 op=LOAD Feb 9 18:54:06.971000 audit[3645]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001499d8 a2=78 a3=c000024ba0 items=0 ppid=3637 pid=3645 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.971000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135626131656332666336633365623865346462623133666638623264 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit: BPF prog-id=140 op=LOAD Feb 9 18:54:06.971000 audit[3645]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000149770 a2=78 a3=c000024be8 items=0 ppid=3637 pid=3645 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.971000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135626131656332666336633365623865346462623133666638623264 Feb 9 18:54:06.971000 audit: BPF prog-id=140 op=UNLOAD Feb 9 18:54:06.971000 audit: BPF prog-id=139 op=UNLOAD Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { perfmon } for pid=3645 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit[3645]: AVC avc: denied { bpf } for pid=3645 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:06.971000 audit: BPF prog-id=141 op=LOAD Feb 9 18:54:06.971000 audit[3645]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000149c30 a2=78 a3=c000024ff8 items=0 ppid=3637 pid=3645 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:06.971000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135626131656332666336633365623865346462623133666638623264 Feb 9 18:54:06.973421 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:54:07.001722 env[1114]: time="2024-02-09T18:54:07.001682558Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-759d5dcb99-d6zqf,Uid:7a9b1d71-fdfd-4073-b033-a29bf782f9b7,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5\"" Feb 9 18:54:07.003376 env[1114]: time="2024-02-09T18:54:07.003351229Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 9 18:54:07.275092 kubelet[1425]: E0209 18:54:07.274978 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:08.276145 kubelet[1425]: E0209 18:54:08.276094 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:08.597269 systemd-networkd[1017]: cali0a2dc6954ab: Gained IPv6LL Feb 9 18:54:09.277211 kubelet[1425]: E0209 18:54:09.277173 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:10.242357 kubelet[1425]: E0209 18:54:10.242291 1425 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:10.393004 kubelet[1425]: E0209 18:54:10.277869 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:10.393560 env[1114]: time="2024-02-09T18:54:10.247269071Z" level=info msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.364 [WARNING][3708] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-csi--node--driver--bttqd-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a765b875-85ce-4a6f-b4f9-f1e991181e28", ResourceVersion:"999", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2", Pod:"csi-node-driver-bttqd", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali85cffc6fcbb", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.364 [INFO][3708] k8s.go 578: Cleaning up netns ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.364 [INFO][3708] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" iface="eth0" netns="" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.364 [INFO][3708] k8s.go 585: Releasing IP address(es) ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.364 [INFO][3708] utils.go 188: Calico CNI releasing IP address ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.380 [INFO][3721] ipam_plugin.go 415: Releasing address using handleID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.380 [INFO][3721] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.380 [INFO][3721] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.387 [WARNING][3721] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.387 [INFO][3721] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.388 [INFO][3721] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.393560 env[1114]: 2024-02-09 18:54:10.389 [INFO][3708] k8s.go 591: Teardown processing complete. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.393560 env[1114]: time="2024-02-09T18:54:10.390785299Z" level=info msg="TearDown network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" successfully" Feb 9 18:54:10.393560 env[1114]: time="2024-02-09T18:54:10.390818151Z" level=info msg="StopPodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" returns successfully" Feb 9 18:54:10.393560 env[1114]: time="2024-02-09T18:54:10.391403862Z" level=info msg="RemovePodSandbox for \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" Feb 9 18:54:10.393560 env[1114]: time="2024-02-09T18:54:10.391448265Z" level=info msg="Forcibly stopping sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\"" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.440 [WARNING][3743] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-csi--node--driver--bttqd-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a765b875-85ce-4a6f-b4f9-f1e991181e28", ResourceVersion:"999", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"3a0ac91214e7d14de82af87afb70b0453e0fa581d41f5afc7f29d0e91d2093c2", Pod:"csi-node-driver-bttqd", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali85cffc6fcbb", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.440 [INFO][3743] k8s.go 578: Cleaning up netns ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.440 [INFO][3743] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" iface="eth0" netns="" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.440 [INFO][3743] k8s.go 585: Releasing IP address(es) ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.440 [INFO][3743] utils.go 188: Calico CNI releasing IP address ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.456 [INFO][3751] ipam_plugin.go 415: Releasing address using handleID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.456 [INFO][3751] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.456 [INFO][3751] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.463 [WARNING][3751] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.463 [INFO][3751] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" HandleID="k8s-pod-network.c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Workload="10.0.0.69-k8s-csi--node--driver--bttqd-eth0" Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.465 [INFO][3751] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.467783 env[1114]: 2024-02-09 18:54:10.466 [INFO][3743] k8s.go 591: Teardown processing complete. ContainerID="c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d" Feb 9 18:54:10.468337 env[1114]: time="2024-02-09T18:54:10.467828753Z" level=info msg="TearDown network for sandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" successfully" Feb 9 18:54:10.487536 env[1114]: time="2024-02-09T18:54:10.487499079Z" level=info msg="RemovePodSandbox \"c197a6124422c5b248f55a830cbaf92f9cf8d430db0007c7ad837759923fd43d\" returns successfully" Feb 9 18:54:10.487997 env[1114]: time="2024-02-09T18:54:10.487960276Z" level=info msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" Feb 9 18:54:10.521862 env[1114]: time="2024-02-09T18:54:10.521671211Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:10.524075 env[1114]: time="2024-02-09T18:54:10.524027082Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:848c5b919e8d33dbad8c8c64aa6aec07c29cfe6e4f6312ceafc1641ea929f91a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:10.526374 env[1114]: time="2024-02-09T18:54:10.526326356Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:10.528091 env[1114]: time="2024-02-09T18:54:10.528063193Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:848c5b919e8d33dbad8c8c64aa6aec07c29cfe6e4f6312ceafc1641ea929f91a\"" Feb 9 18:54:10.528668 env[1114]: time="2024-02-09T18:54:10.528643063Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:10.530189 env[1114]: time="2024-02-09T18:54:10.530168171Z" level=info msg="CreateContainer within sandbox \"15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 9 18:54:10.539194 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount838449035.mount: Deactivated successfully. Feb 9 18:54:10.539784 env[1114]: time="2024-02-09T18:54:10.539445390Z" level=info msg="CreateContainer within sandbox \"15ba1ec2fc6c3eb8e4dbb13ff8b2d7d0aa7cc04ce829ccc7c73a086f49c449c5\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"aaf77ebc27cae39a69c1112536546bdd748dedce8c0899e32c1b065ca2d8063b\"" Feb 9 18:54:10.539953 env[1114]: time="2024-02-09T18:54:10.539921446Z" level=info msg="StartContainer for \"aaf77ebc27cae39a69c1112536546bdd748dedce8c0899e32c1b065ca2d8063b\"" Feb 9 18:54:10.559569 systemd[1]: run-containerd-runc-k8s.io-aaf77ebc27cae39a69c1112536546bdd748dedce8c0899e32c1b065ca2d8063b-runc.PvUtcw.mount: Deactivated successfully. Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.522 [WARNING][3775] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"5d206ff4-88e2-4a5a-8c29-97be17101ef2", ResourceVersion:"871", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246", Pod:"coredns-5d78c9869d-bj4bn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali63d00add529", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.522 [INFO][3775] k8s.go 578: Cleaning up netns ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.522 [INFO][3775] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" iface="eth0" netns="" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.522 [INFO][3775] k8s.go 585: Releasing IP address(es) ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.522 [INFO][3775] utils.go 188: Calico CNI releasing IP address ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.545 [INFO][3782] ipam_plugin.go 415: Releasing address using handleID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.545 [INFO][3782] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.545 [INFO][3782] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.553 [WARNING][3782] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.553 [INFO][3782] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.556 [INFO][3782] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.560252 env[1114]: 2024-02-09 18:54:10.558 [INFO][3775] k8s.go 591: Teardown processing complete. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.560707 env[1114]: time="2024-02-09T18:54:10.560300505Z" level=info msg="TearDown network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" successfully" Feb 9 18:54:10.560707 env[1114]: time="2024-02-09T18:54:10.560345520Z" level=info msg="StopPodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" returns successfully" Feb 9 18:54:10.560830 env[1114]: time="2024-02-09T18:54:10.560796598Z" level=info msg="RemovePodSandbox for \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" Feb 9 18:54:10.560878 env[1114]: time="2024-02-09T18:54:10.560835161Z" level=info msg="Forcibly stopping sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\"" Feb 9 18:54:10.561270 systemd[1]: Started cri-containerd-aaf77ebc27cae39a69c1112536546bdd748dedce8c0899e32c1b065ca2d8063b.scope. Feb 9 18:54:10.573506 kernel: kauditd_printk_skb: 140 callbacks suppressed Feb 9 18:54:10.573605 kernel: audit: type=1400 audit(1707504850.569:952): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573631 kernel: audit: type=1400 audit(1707504850.569:953): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.575386 kernel: audit: type=1400 audit(1707504850.569:954): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.579243 kernel: audit: type=1400 audit(1707504850.569:955): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.579286 kernel: audit: type=1400 audit(1707504850.569:956): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.583207 kernel: audit: type=1400 audit(1707504850.569:957): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.583252 kernel: audit: type=1400 audit(1707504850.569:958): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.587296 kernel: audit: type=1400 audit(1707504850.569:959): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.587598 kernel: audit: type=1400 audit(1707504850.569:960): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.569000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.590968 kernel: audit: type=1400 audit(1707504850.572:961): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.572000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.572000 audit: BPF prog-id=142 op=LOAD Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3637 pid=3797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.573000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161663737656263323763616533396136396331313132353336353436 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=3637 pid=3797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.573000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161663737656263323763616533396136396331313132353336353436 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.573000 audit: BPF prog-id=143 op=LOAD Feb 9 18:54:10.573000 audit[3797]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0003050c0 items=0 ppid=3637 pid=3797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.573000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161663737656263323763616533396136396331313132353336353436 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.576000 audit: BPF prog-id=144 op=LOAD Feb 9 18:54:10.576000 audit[3797]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c000305108 items=0 ppid=3637 pid=3797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.576000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161663737656263323763616533396136396331313132353336353436 Feb 9 18:54:10.580000 audit: BPF prog-id=144 op=UNLOAD Feb 9 18:54:10.580000 audit: BPF prog-id=143 op=UNLOAD Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { perfmon } for pid=3797 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit[3797]: AVC avc: denied { bpf } for pid=3797 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:10.580000 audit: BPF prog-id=145 op=LOAD Feb 9 18:54:10.580000 audit[3797]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000305518 items=0 ppid=3637 pid=3797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.580000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161663737656263323763616533396136396331313132353336353436 Feb 9 18:54:10.626062 env[1114]: time="2024-02-09T18:54:10.626011365Z" level=info msg="StartContainer for \"aaf77ebc27cae39a69c1112536546bdd748dedce8c0899e32c1b065ca2d8063b\" returns successfully" Feb 9 18:54:10.625000 audit[3856]: NETFILTER_CFG table=filter:98 family=2 entries=10 op=nft_register_rule pid=3856 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:10.625000 audit[3856]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffc9e71f280 a2=0 a3=7ffc9e71f26c items=0 ppid=1587 pid=3856 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.625000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:10.626000 audit[3856]: NETFILTER_CFG table=nat:99 family=2 entries=44 op=nft_register_rule pid=3856 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:10.626000 audit[3856]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffc9e71f280 a2=0 a3=7ffc9e71f26c items=0 ppid=1587 pid=3856 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:10.626000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.594 [WARNING][3830] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"5d206ff4-88e2-4a5a-8c29-97be17101ef2", ResourceVersion:"871", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"14eb919adc6c3057374197df01abe980b49fe1f3388d647c26fdbd10500dc246", Pod:"coredns-5d78c9869d-bj4bn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali63d00add529", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.594 [INFO][3830] k8s.go 578: Cleaning up netns ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.594 [INFO][3830] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" iface="eth0" netns="" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.594 [INFO][3830] k8s.go 585: Releasing IP address(es) ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.594 [INFO][3830] utils.go 188: Calico CNI releasing IP address ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.623 [INFO][3838] ipam_plugin.go 415: Releasing address using handleID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.623 [INFO][3838] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.623 [INFO][3838] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.633 [WARNING][3838] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.633 [INFO][3838] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" HandleID="k8s-pod-network.2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Workload="10.0.0.69-k8s-coredns--5d78c9869d--bj4bn-eth0" Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.635 [INFO][3838] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.637868 env[1114]: 2024-02-09 18:54:10.636 [INFO][3830] k8s.go 591: Teardown processing complete. ContainerID="2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30" Feb 9 18:54:10.638367 env[1114]: time="2024-02-09T18:54:10.637894165Z" level=info msg="TearDown network for sandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" successfully" Feb 9 18:54:10.641387 env[1114]: time="2024-02-09T18:54:10.641353250Z" level=info msg="RemovePodSandbox \"2459517cdf513c146aa85b6e470ffd59288fd67fe9d3f193eab8b6670c4cce30\" returns successfully" Feb 9 18:54:10.641887 env[1114]: time="2024-02-09T18:54:10.641857549Z" level=info msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.674 [WARNING][3873] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"efd881dd-6673-4970-92aa-65fcb7f11c44", ResourceVersion:"953", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6", Pod:"nginx-deployment-845c78c8b9-r9c9x", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif2442b58c9a", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.674 [INFO][3873] k8s.go 578: Cleaning up netns ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.674 [INFO][3873] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" iface="eth0" netns="" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.674 [INFO][3873] k8s.go 585: Releasing IP address(es) ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.674 [INFO][3873] utils.go 188: Calico CNI releasing IP address ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.691 [INFO][3883] ipam_plugin.go 415: Releasing address using handleID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.691 [INFO][3883] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.691 [INFO][3883] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.701 [WARNING][3883] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.701 [INFO][3883] ipam_plugin.go 443: Releasing address using workloadID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.702 [INFO][3883] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.704717 env[1114]: 2024-02-09 18:54:10.703 [INFO][3873] k8s.go 591: Teardown processing complete. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.705338 env[1114]: time="2024-02-09T18:54:10.704740069Z" level=info msg="TearDown network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" successfully" Feb 9 18:54:10.705338 env[1114]: time="2024-02-09T18:54:10.704769584Z" level=info msg="StopPodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" returns successfully" Feb 9 18:54:10.705338 env[1114]: time="2024-02-09T18:54:10.705288139Z" level=info msg="RemovePodSandbox for \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" Feb 9 18:54:10.705436 env[1114]: time="2024-02-09T18:54:10.705331382Z" level=info msg="Forcibly stopping sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\"" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.737 [WARNING][3906] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"efd881dd-6673-4970-92aa-65fcb7f11c44", ResourceVersion:"953", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"187f86888844e1f5a536ce91434dcd78f0cc369c794aadb84bf50eb2f4dacce6", Pod:"nginx-deployment-845c78c8b9-r9c9x", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif2442b58c9a", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.737 [INFO][3906] k8s.go 578: Cleaning up netns ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.737 [INFO][3906] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" iface="eth0" netns="" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.737 [INFO][3906] k8s.go 585: Releasing IP address(es) ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.737 [INFO][3906] utils.go 188: Calico CNI releasing IP address ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.754 [INFO][3913] ipam_plugin.go 415: Releasing address using handleID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.754 [INFO][3913] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.754 [INFO][3913] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.760 [WARNING][3913] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.760 [INFO][3913] ipam_plugin.go 443: Releasing address using workloadID ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" HandleID="k8s-pod-network.fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Workload="10.0.0.69-k8s-nginx--deployment--845c78c8b9--r9c9x-eth0" Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.761 [INFO][3913] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.764128 env[1114]: 2024-02-09 18:54:10.762 [INFO][3906] k8s.go 591: Teardown processing complete. ContainerID="fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6" Feb 9 18:54:10.764624 env[1114]: time="2024-02-09T18:54:10.764155648Z" level=info msg="TearDown network for sandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" successfully" Feb 9 18:54:10.766858 env[1114]: time="2024-02-09T18:54:10.766824518Z" level=info msg="RemovePodSandbox \"fc9ec68defb05213530a1584906b2ab57c6894d7e3dc80a784198fc6252183b6\" returns successfully" Feb 9 18:54:10.767392 env[1114]: time="2024-02-09T18:54:10.767344226Z" level=info msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.801 [WARNING][3937] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0", GenerateName:"calico-kube-controllers-c95b8d4f9-", Namespace:"calico-system", SelfLink:"", UID:"a308cf6a-d3ba-4950-80a1-026a4d0bc74f", ResourceVersion:"916", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"calico-kube-controllers", "k8s-app":"calico-kube-controllers", "pod-template-hash":"c95b8d4f9", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-kube-controllers"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61", Pod:"calico-kube-controllers-c95b8d4f9-q7bdx", Endpoint:"eth0", ServiceAccountName:"calico-kube-controllers", IPNetworks:[]string{"192.168.121.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.calico-kube-controllers"}, InterfaceName:"cali5698d04cd2d", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.802 [INFO][3937] k8s.go 578: Cleaning up netns ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.802 [INFO][3937] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" iface="eth0" netns="" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.802 [INFO][3937] k8s.go 585: Releasing IP address(es) ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.802 [INFO][3937] utils.go 188: Calico CNI releasing IP address ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.821 [INFO][3944] ipam_plugin.go 415: Releasing address using handleID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.822 [INFO][3944] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.822 [INFO][3944] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.829 [WARNING][3944] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.829 [INFO][3944] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.830 [INFO][3944] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.834131 env[1114]: 2024-02-09 18:54:10.831 [INFO][3937] k8s.go 591: Teardown processing complete. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.834801 env[1114]: time="2024-02-09T18:54:10.834749091Z" level=info msg="TearDown network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" successfully" Feb 9 18:54:10.834908 env[1114]: time="2024-02-09T18:54:10.834869789Z" level=info msg="StopPodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" returns successfully" Feb 9 18:54:10.835597 env[1114]: time="2024-02-09T18:54:10.835573652Z" level=info msg="RemovePodSandbox for \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" Feb 9 18:54:10.835658 env[1114]: time="2024-02-09T18:54:10.835603919Z" level=info msg="Forcibly stopping sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\"" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.868 [WARNING][3966] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0", GenerateName:"calico-kube-controllers-c95b8d4f9-", Namespace:"calico-system", SelfLink:"", UID:"a308cf6a-d3ba-4950-80a1-026a4d0bc74f", ResourceVersion:"916", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 11, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"calico-kube-controllers", "k8s-app":"calico-kube-controllers", "pod-template-hash":"c95b8d4f9", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-kube-controllers"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"5b43f9cdfa6c7f0e78e27915fe4f5b5696d778b045981f95301995f12bfd6d61", Pod:"calico-kube-controllers-c95b8d4f9-q7bdx", Endpoint:"eth0", ServiceAccountName:"calico-kube-controllers", IPNetworks:[]string{"192.168.121.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.calico-kube-controllers"}, InterfaceName:"cali5698d04cd2d", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.868 [INFO][3966] k8s.go 578: Cleaning up netns ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.868 [INFO][3966] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" iface="eth0" netns="" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.868 [INFO][3966] k8s.go 585: Releasing IP address(es) ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.868 [INFO][3966] utils.go 188: Calico CNI releasing IP address ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.884 [INFO][3974] ipam_plugin.go 415: Releasing address using handleID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.884 [INFO][3974] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.884 [INFO][3974] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.892 [WARNING][3974] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.892 [INFO][3974] ipam_plugin.go 443: Releasing address using workloadID ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" HandleID="k8s-pod-network.96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Workload="10.0.0.69-k8s-calico--kube--controllers--c95b8d4f9--q7bdx-eth0" Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.893 [INFO][3974] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.895543 env[1114]: 2024-02-09 18:54:10.894 [INFO][3966] k8s.go 591: Teardown processing complete. ContainerID="96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02" Feb 9 18:54:10.896049 env[1114]: time="2024-02-09T18:54:10.895572139Z" level=info msg="TearDown network for sandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" successfully" Feb 9 18:54:10.898334 env[1114]: time="2024-02-09T18:54:10.898277466Z" level=info msg="RemovePodSandbox \"96d069858b179ee09d1299bedd03d1651056861cf13de0386575dad9e8728f02\" returns successfully" Feb 9 18:54:10.898849 env[1114]: time="2024-02-09T18:54:10.898824165Z" level=info msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.931 [WARNING][3996] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"8bdd30f4-3584-4b9d-8e85-a162c42f3645", ResourceVersion:"878", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f", Pod:"coredns-5d78c9869d-9hnnn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali81a251b265c", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.931 [INFO][3996] k8s.go 578: Cleaning up netns ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.931 [INFO][3996] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" iface="eth0" netns="" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.931 [INFO][3996] k8s.go 585: Releasing IP address(es) ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.931 [INFO][3996] utils.go 188: Calico CNI releasing IP address ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.952 [INFO][4003] ipam_plugin.go 415: Releasing address using handleID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.952 [INFO][4003] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.952 [INFO][4003] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.957 [WARNING][4003] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.958 [INFO][4003] ipam_plugin.go 443: Releasing address using workloadID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.959 [INFO][4003] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:10.961305 env[1114]: 2024-02-09 18:54:10.960 [INFO][3996] k8s.go 591: Teardown processing complete. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:10.961899 env[1114]: time="2024-02-09T18:54:10.961347560Z" level=info msg="TearDown network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" successfully" Feb 9 18:54:10.961899 env[1114]: time="2024-02-09T18:54:10.961381193Z" level=info msg="StopPodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" returns successfully" Feb 9 18:54:10.961899 env[1114]: time="2024-02-09T18:54:10.961868460Z" level=info msg="RemovePodSandbox for \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" Feb 9 18:54:10.962028 env[1114]: time="2024-02-09T18:54:10.961904107Z" level=info msg="Forcibly stopping sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\"" Feb 9 18:54:10.997000 audit[3810]: AVC avc: denied { watch } for pid=3810 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_18_54_06.2965939612/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c236,c784 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c236,c784 tclass=file permissive=0 Feb 9 18:54:10.997000 audit[3810]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=8 a1=c000a2b720 a2=fc6 a3=0 items=0 ppid=3637 pid=3810 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c236,c784 key=(null) Feb 9 18:54:10.997000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.006 [WARNING][4025] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0", GenerateName:"coredns-5d78c9869d-", Namespace:"kube-system", SelfLink:"", UID:"8bdd30f4-3584-4b9d-8e85-a162c42f3645", ResourceVersion:"878", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 3, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"k8s-app":"kube-dns", "pod-template-hash":"5d78c9869d", "projectcalico.org/namespace":"kube-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"coredns"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"cd3f6b0cba24ef2c380c80eaff4f466c692e6cfa430ef4d5945928f5158f642f", Pod:"coredns-5d78c9869d-9hnnn", Endpoint:"eth0", ServiceAccountName:"coredns", IPNetworks:[]string{"192.168.121.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.kube-system", "ksa.kube-system.coredns"}, InterfaceName:"cali81a251b265c", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"dns", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"dns-tcp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x35, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"metrics", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x23c1, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.006 [INFO][4025] k8s.go 578: Cleaning up netns ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.006 [INFO][4025] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" iface="eth0" netns="" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.006 [INFO][4025] k8s.go 585: Releasing IP address(es) ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.006 [INFO][4025] utils.go 188: Calico CNI releasing IP address ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.022 [INFO][4035] ipam_plugin.go 415: Releasing address using handleID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.022 [INFO][4035] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.022 [INFO][4035] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.028 [WARNING][4035] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.028 [INFO][4035] ipam_plugin.go 443: Releasing address using workloadID ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" HandleID="k8s-pod-network.23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Workload="10.0.0.69-k8s-coredns--5d78c9869d--9hnnn-eth0" Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.029 [INFO][4035] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:11.031934 env[1114]: 2024-02-09 18:54:11.030 [INFO][4025] k8s.go 591: Teardown processing complete. ContainerID="23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3" Feb 9 18:54:11.032409 env[1114]: time="2024-02-09T18:54:11.031962342Z" level=info msg="TearDown network for sandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" successfully" Feb 9 18:54:11.034561 env[1114]: time="2024-02-09T18:54:11.034542674Z" level=info msg="RemovePodSandbox \"23e184278e98e2a5abe9aba578df073d08832dd3bd1c47279272ffd4b52e2bf3\" returns successfully" Feb 9 18:54:11.278700 kubelet[1425]: E0209 18:54:11.278641 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:11.492440 kubelet[1425]: I0209 18:54:11.492384 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-759d5dcb99-d6zqf" podStartSLOduration=1.966697344 podCreationTimestamp="2024-02-09 18:54:06 +0000 UTC" firstStartedPulling="2024-02-09 18:54:07.002805331 +0000 UTC m=+57.054060827" lastFinishedPulling="2024-02-09 18:54:10.528450831 +0000 UTC m=+60.579706328" observedRunningTime="2024-02-09 18:54:11.491900622 +0000 UTC m=+61.543156118" watchObservedRunningTime="2024-02-09 18:54:11.492342845 +0000 UTC m=+61.543598361" Feb 9 18:54:11.502000 audit[4045]: NETFILTER_CFG table=filter:100 family=2 entries=10 op=nft_register_rule pid=4045 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:11.502000 audit[4045]: SYSCALL arch=c000003e syscall=46 success=yes exit=3548 a0=3 a1=7ffcb88fe4c0 a2=0 a3=7ffcb88fe4ac items=0 ppid=1587 pid=4045 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:11.502000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:11.503000 audit[4045]: NETFILTER_CFG table=nat:101 family=2 entries=44 op=nft_register_rule pid=4045 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 18:54:11.503000 audit[4045]: SYSCALL arch=c000003e syscall=46 success=yes exit=14220 a0=3 a1=7ffcb88fe4c0 a2=0 a3=7ffcb88fe4ac items=0 ppid=1587 pid=4045 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:11.503000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 18:54:12.278829 kubelet[1425]: E0209 18:54:12.278765 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:13.036708 kubelet[1425]: I0209 18:54:13.036666 1425 topology_manager.go:212] "Topology Admit Handler" Feb 9 18:54:13.041076 systemd[1]: Created slice kubepods-besteffort-pod88c76976_3a57_4406_8793_160ce03cda74.slice. Feb 9 18:54:13.219378 kubelet[1425]: I0209 18:54:13.219327 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-06c5b99d-1f18-4729-9497-2966e266c62c\" (UniqueName: \"kubernetes.io/nfs/88c76976-3a57-4406-8793-160ce03cda74-pvc-06c5b99d-1f18-4729-9497-2966e266c62c\") pod \"test-pod-1\" (UID: \"88c76976-3a57-4406-8793-160ce03cda74\") " pod="default/test-pod-1" Feb 9 18:54:13.219378 kubelet[1425]: I0209 18:54:13.219375 1425 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-kwggp\" (UniqueName: \"kubernetes.io/projected/88c76976-3a57-4406-8793-160ce03cda74-kube-api-access-kwggp\") pod \"test-pod-1\" (UID: \"88c76976-3a57-4406-8793-160ce03cda74\") " pod="default/test-pod-1" Feb 9 18:54:13.279768 kubelet[1425]: E0209 18:54:13.279692 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:13.331000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.331000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.334319 kernel: Failed to create system directory netfs Feb 9 18:54:13.334413 kernel: Failed to create system directory netfs Feb 9 18:54:13.334436 kernel: Failed to create system directory netfs Feb 9 18:54:13.331000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.331000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.335361 kernel: Failed to create system directory netfs Feb 9 18:54:13.331000 audit[4052]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=556d032605e0 a1=153bc a2=556d020552b0 a3=5 items=0 ppid=9 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.331000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.343198 kernel: Failed to create system directory fscache Feb 9 18:54:13.343262 kernel: Failed to create system directory fscache Feb 9 18:54:13.343287 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.344307 kernel: Failed to create system directory fscache Feb 9 18:54:13.344344 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.345379 kernel: Failed to create system directory fscache Feb 9 18:54:13.345415 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.346440 kernel: Failed to create system directory fscache Feb 9 18:54:13.346468 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.348022 kernel: Failed to create system directory fscache Feb 9 18:54:13.348052 kernel: Failed to create system directory fscache Feb 9 18:54:13.348073 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.349173 kernel: Failed to create system directory fscache Feb 9 18:54:13.349212 kernel: Failed to create system directory fscache Feb 9 18:54:13.339000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.339000 audit[4052]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=556d034759c0 a1=4c0fc a2=556d020552b0 a3=5 items=0 ppid=9 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.339000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 18:54:13.351958 kernel: FS-Cache: Loaded Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.377152 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.377198 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.377213 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.378169 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.378195 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.379176 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.379203 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.380194 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.380214 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.381229 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.381260 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.382275 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.382293 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.383322 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.383343 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.384378 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.384425 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.385456 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.385493 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.387051 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.387089 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.387111 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.388115 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.388154 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.389181 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.389220 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.390239 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.390278 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.391302 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.391330 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.392366 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.392397 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.393458 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.393487 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.395148 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.395185 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.395222 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.396169 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.396198 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.397206 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.397235 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.398256 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.398293 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.399373 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.399409 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.400379 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.400408 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.401399 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.401426 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.402425 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.402453 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.403993 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.404024 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.404046 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.405025 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.405054 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.406085 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.406116 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.407114 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.407143 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.408136 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.408166 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.409162 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.409191 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.410192 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.410232 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.411222 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.411270 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.412297 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.412357 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.413343 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.413375 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.414396 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.414435 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.415420 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.415458 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.416449 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.416485 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.418063 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.418101 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.418122 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.419134 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.419172 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.420170 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.420211 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.421200 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.421230 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.422222 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.422260 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.423340 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.423423 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.424390 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.424419 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.425414 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.425443 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.426460 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.426509 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.428027 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.428065 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.428086 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.429082 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.429121 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.430109 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.430138 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.431180 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.431211 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.432312 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.432354 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.433329 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.433361 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.434354 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.434393 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.435393 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.435432 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.436438 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.436469 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.438040 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.438073 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.438104 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.439079 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.439108 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.440103 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.440132 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.441132 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.441161 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.366000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.442186 kernel: Failed to create system directory sunrpc Feb 9 18:54:13.450179 kernel: RPC: Registered named UNIX socket transport module. Feb 9 18:54:13.450296 kernel: RPC: Registered udp transport module. Feb 9 18:54:13.450335 kernel: RPC: Registered tcp transport module. Feb 9 18:54:13.451270 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 9 18:54:13.366000 audit[4052]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=556d034c1ad0 a1=1588c4 a2=556d020552b0 a3=5 items=6 ppid=9 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.366000 audit: CWD cwd="/" Feb 9 18:54:13.366000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PATH item=1 name=(null) inode=26952 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PATH item=2 name=(null) inode=26952 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PATH item=3 name=(null) inode=26953 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PATH item=4 name=(null) inode=26952 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PATH item=5 name=(null) inode=26954 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 18:54:13.366000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.476967 kernel: Failed to create system directory nfs Feb 9 18:54:13.477008 kernel: Failed to create system directory nfs Feb 9 18:54:13.477029 kernel: Failed to create system directory nfs Feb 9 18:54:13.477048 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.478398 kernel: Failed to create system directory nfs Feb 9 18:54:13.478424 kernel: Failed to create system directory nfs Feb 9 18:54:13.478455 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.479367 kernel: Failed to create system directory nfs Feb 9 18:54:13.479400 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.480317 kernel: Failed to create system directory nfs Feb 9 18:54:13.480355 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.481266 kernel: Failed to create system directory nfs Feb 9 18:54:13.481304 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.482214 kernel: Failed to create system directory nfs Feb 9 18:54:13.482243 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.483196 kernel: Failed to create system directory nfs Feb 9 18:54:13.483227 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.484153 kernel: Failed to create system directory nfs Feb 9 18:54:13.484187 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.485110 kernel: Failed to create system directory nfs Feb 9 18:54:13.485141 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.486077 kernel: Failed to create system directory nfs Feb 9 18:54:13.486110 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.487037 kernel: Failed to create system directory nfs Feb 9 18:54:13.487076 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.487977 kernel: Failed to create system directory nfs Feb 9 18:54:13.488011 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.489065 kernel: Failed to create system directory nfs Feb 9 18:54:13.489097 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.490160 kernel: Failed to create system directory nfs Feb 9 18:54:13.490194 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.491376 kernel: Failed to create system directory nfs Feb 9 18:54:13.491439 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.493098 kernel: Failed to create system directory nfs Feb 9 18:54:13.493152 kernel: Failed to create system directory nfs Feb 9 18:54:13.493172 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.494136 kernel: Failed to create system directory nfs Feb 9 18:54:13.494161 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.495117 kernel: Failed to create system directory nfs Feb 9 18:54:13.495142 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.496159 kernel: Failed to create system directory nfs Feb 9 18:54:13.496188 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.497202 kernel: Failed to create system directory nfs Feb 9 18:54:13.497258 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.498187 kernel: Failed to create system directory nfs Feb 9 18:54:13.498219 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.499209 kernel: Failed to create system directory nfs Feb 9 18:54:13.499239 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.500272 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.500967 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.502242 kernel: Failed to create system directory nfs Feb 9 18:54:13.502292 kernel: Failed to create system directory nfs Feb 9 18:54:13.502313 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.503340 kernel: Failed to create system directory nfs Feb 9 18:54:13.503378 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.504417 kernel: Failed to create system directory nfs Feb 9 18:54:13.504448 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.505404 kernel: Failed to create system directory nfs Feb 9 18:54:13.505433 kernel: Failed to create system directory nfs Feb 9 18:54:13.469000 audit[4052]: AVC avc: denied { confidentiality } for pid=4052 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.469000 audit[4052]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=556d03664680 a1=e29dc a2=556d020552b0 a3=5 items=0 ppid=9 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.469000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 18:54:13.518960 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.551120 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.551181 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.551203 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.552131 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.552174 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.553164 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.553210 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.554172 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.554202 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.555171 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.555200 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.556178 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.556207 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.557173 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.557210 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.558171 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.558200 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.559165 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.559201 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.560174 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.560204 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.561175 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.561211 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.562180 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.562209 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.563220 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.563266 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.564227 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.564263 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.565227 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.565265 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.566231 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.566269 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.567233 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.567271 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.568238 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.568281 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.569256 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.569285 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.570293 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.570336 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.571309 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.571337 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.572312 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.572349 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.573357 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.573387 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.574383 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.574412 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.575400 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.575438 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.576434 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.576464 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.577427 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.577454 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.578417 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.578448 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.579381 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.579409 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.580369 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.580400 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.581338 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.581358 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.582307 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.582325 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.583288 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.583305 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.584261 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.584289 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.586992 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.587059 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.588319 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.588385 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.592273 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.592342 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.592370 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.593621 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.593652 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.595068 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.595088 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.596087 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.596104 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.597084 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.597102 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.598041 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.598064 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.599002 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.599020 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.599964 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.599986 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.601397 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.601415 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.601434 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.540000 audit[4057]: AVC avc: denied { confidentiality } for pid=4057 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.602375 kernel: Failed to create system directory nfs4 Feb 9 18:54:13.743137 kernel: NFS: Registering the id_resolver key type Feb 9 18:54:13.743383 kernel: Key type id_resolver registered Feb 9 18:54:13.743431 kernel: Key type id_legacy registered Feb 9 18:54:13.540000 audit[4057]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7fac075ef010 a1=1d3cc4 a2=5614faf132b0 a3=5 items=0 ppid=9 pid=4057 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.540000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.752325 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.752350 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.752364 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.753377 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.753403 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.754391 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.754412 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.755394 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.755418 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.756409 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.756425 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.757427 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.757476 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.758422 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.758441 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.759418 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.759435 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.760421 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.760443 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.761431 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.761447 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.762951 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.762982 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.762995 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.763974 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.763996 kernel: Failed to create system directory rpcgss Feb 9 18:54:13.748000 audit[4059]: AVC avc: denied { confidentiality } for pid=4059 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 18:54:13.748000 audit[4059]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7fa2a2987010 a1=4f524 a2=558865a1b2b0 a3=5 items=0 ppid=9 pid=4059 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.748000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 9 18:54:13.777485 nfsidmap[4068]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'localdomain' Feb 9 18:54:13.781126 nfsidmap[4071]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'localdomain' Feb 9 18:54:13.792000 audit[1174]: AVC avc: denied { watch_reads } for pid=1174 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.792000 audit[1174]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=563194601b60 a2=10 a3=2d4a08603203fa0f items=0 ppid=1 pid=1174 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.792000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 18:54:13.792000 audit[1174]: AVC avc: denied { watch_reads } for pid=1174 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.792000 audit[1174]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=563194601b60 a2=10 a3=2d4a08603203fa0f items=0 ppid=1 pid=1174 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.792000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 18:54:13.792000 audit[1174]: AVC avc: denied { watch_reads } for pid=1174 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.792000 audit[1174]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=563194601b60 a2=10 a3=2d4a08603203fa0f items=0 ppid=1 pid=1174 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:13.792000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 18:54:13.792000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.792000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.792000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2993 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 18:54:13.943443 env[1114]: time="2024-02-09T18:54:13.943395465Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:88c76976-3a57-4406-8793-160ce03cda74,Namespace:default,Attempt:0,}" Feb 9 18:54:14.280377 kubelet[1425]: E0209 18:54:14.280272 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:14.299378 systemd-networkd[1017]: cali5ec59c6bf6e: Link UP Feb 9 18:54:14.300912 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 18:54:14.301018 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 9 18:54:14.301209 systemd-networkd[1017]: cali5ec59c6bf6e: Gained carrier Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.247 [INFO][4075] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.69-k8s-test--pod--1-eth0 default 88c76976-3a57-4406-8793-160ce03cda74 1122 0 2024-02-09 18:53:57 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.69 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.247 [INFO][4075] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.268 [INFO][4088] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" HandleID="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Workload="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.277 [INFO][4088] ipam_plugin.go 268: Auto assigning IP ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" HandleID="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Workload="10.0.0.69-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000341810), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.69", "pod":"test-pod-1", "timestamp":"2024-02-09 18:54:14.268592056 +0000 UTC"}, Hostname:"10.0.0.69", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.277 [INFO][4088] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.277 [INFO][4088] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.277 [INFO][4088] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.69' Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.279 [INFO][4088] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.281 [INFO][4088] ipam.go 372: Looking up existing affinities for host host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.284 [INFO][4088] ipam.go 489: Trying affinity for 192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.286 [INFO][4088] ipam.go 155: Attempting to load block cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.288 [INFO][4088] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.121.0/26 host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.288 [INFO][4088] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.121.0/26 handle="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.289 [INFO][4088] ipam.go 1682: Creating new handle: k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7 Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.291 [INFO][4088] ipam.go 1203: Writing block in order to claim IPs block=192.168.121.0/26 handle="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.296 [INFO][4088] ipam.go 1216: Successfully claimed IPs: [192.168.121.8/26] block=192.168.121.0/26 handle="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.296 [INFO][4088] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.121.8/26] handle="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" host="10.0.0.69" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.296 [INFO][4088] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.296 [INFO][4088] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.121.8/26] IPv6=[] ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" HandleID="k8s-pod-network.4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Workload="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.297 [INFO][4075] k8s.go 385: Populated endpoint ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"88c76976-3a57-4406-8793-160ce03cda74", ResourceVersion:"1122", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 57, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.8/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:14.308969 env[1114]: 2024-02-09 18:54:14.297 [INFO][4075] k8s.go 386: Calico CNI using IPs: [192.168.121.8/32] ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.309780 env[1114]: 2024-02-09 18:54:14.297 [INFO][4075] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.309780 env[1114]: 2024-02-09 18:54:14.300 [INFO][4075] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.309780 env[1114]: 2024-02-09 18:54:14.301 [INFO][4075] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.69-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"88c76976-3a57-4406-8793-160ce03cda74", ResourceVersion:"1122", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 18, 53, 57, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.69", ContainerID:"4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.121.8/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"d6:d1:a5:1c:9d:a2", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 18:54:14.309780 env[1114]: 2024-02-09 18:54:14.305 [INFO][4075] k8s.go 491: Wrote updated endpoint to datastore ContainerID="4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.69-k8s-test--pod--1-eth0" Feb 9 18:54:14.316000 audit[4109]: NETFILTER_CFG table=filter:102 family=2 entries=52 op=nft_register_chain pid=4109 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 18:54:14.316000 audit[4109]: SYSCALL arch=c000003e syscall=46 success=yes exit=24276 a0=3 a1=7ffdcf9b68e0 a2=0 a3=7ffdcf9b68cc items=0 ppid=2336 pid=4109 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.316000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 18:54:14.652776 env[1114]: time="2024-02-09T18:54:14.652689473Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 18:54:14.652776 env[1114]: time="2024-02-09T18:54:14.652739718Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 18:54:14.652776 env[1114]: time="2024-02-09T18:54:14.652751780Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 18:54:14.653022 env[1114]: time="2024-02-09T18:54:14.652950223Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7 pid=4117 runtime=io.containerd.runc.v2 Feb 9 18:54:14.668840 systemd[1]: Started cri-containerd-4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7.scope. Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.676000 audit: BPF prog-id=146 op=LOAD Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014dc48 a2=10 a3=1c items=0 ppid=4117 pid=4127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466363639613131333335653737353533323165323537326564323338 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=c items=0 ppid=4117 pid=4127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466363639613131333335653737353533323165323537326564323338 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit: BPF prog-id=147 op=LOAD Feb 9 18:54:14.677000 audit[4127]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014d9d8 a2=78 a3=c0000249d0 items=0 ppid=4117 pid=4127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466363639613131333335653737353533323165323537326564323338 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit: BPF prog-id=148 op=LOAD Feb 9 18:54:14.677000 audit[4127]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00014d770 a2=78 a3=c000024a18 items=0 ppid=4117 pid=4127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466363639613131333335653737353533323165323537326564323338 Feb 9 18:54:14.677000 audit: BPF prog-id=148 op=UNLOAD Feb 9 18:54:14.677000 audit: BPF prog-id=147 op=UNLOAD Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { perfmon } for pid=4127 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit[4127]: AVC avc: denied { bpf } for pid=4127 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:14.677000 audit: BPF prog-id=149 op=LOAD Feb 9 18:54:14.677000 audit[4127]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014dc30 a2=78 a3=c000024e28 items=0 ppid=4117 pid=4127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:14.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466363639613131333335653737353533323165323537326564323338 Feb 9 18:54:14.679152 systemd-resolved[1061]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 18:54:14.700805 env[1114]: time="2024-02-09T18:54:14.700746626Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:88c76976-3a57-4406-8793-160ce03cda74,Namespace:default,Attempt:0,} returns sandbox id \"4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7\"" Feb 9 18:54:14.702614 env[1114]: time="2024-02-09T18:54:14.702581084Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 18:54:15.129265 env[1114]: time="2024-02-09T18:54:15.129201898Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:15.130912 env[1114]: time="2024-02-09T18:54:15.130864553Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:15.132766 env[1114]: time="2024-02-09T18:54:15.132684403Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:15.136786 env[1114]: time="2024-02-09T18:54:15.136758248Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 18:54:15.137537 env[1114]: time="2024-02-09T18:54:15.137509470Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:3a8963c304a2f89d2bfa055e07403bae348b293c891b8ea01f7136642eaa277a\"" Feb 9 18:54:15.139393 env[1114]: time="2024-02-09T18:54:15.139358935Z" level=info msg="CreateContainer within sandbox \"4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 9 18:54:15.149441 env[1114]: time="2024-02-09T18:54:15.149387883Z" level=info msg="CreateContainer within sandbox \"4f669a11335e7755321e2572ed238a50e90cc6188c4f4f0d9b39e99a29c5acb7\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"2dd7f0d4263108af6857cdda4311024e6bef5af1d91277f0f41a3ec78484d385\"" Feb 9 18:54:15.150025 env[1114]: time="2024-02-09T18:54:15.150002988Z" level=info msg="StartContainer for \"2dd7f0d4263108af6857cdda4311024e6bef5af1d91277f0f41a3ec78484d385\"" Feb 9 18:54:15.165976 systemd[1]: Started cri-containerd-2dd7f0d4263108af6857cdda4311024e6bef5af1d91277f0f41a3ec78484d385.scope. Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.177000 audit: BPF prog-id=150 op=LOAD Feb 9 18:54:15.178000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.178000 audit[4157]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=4117 pid=4157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:15.178000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264643766306434323633313038616636383537636464613433313130 Feb 9 18:54:15.178000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.178000 audit[4157]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=4117 pid=4157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:15.178000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264643766306434323633313038616636383537636464613433313130 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit: BPF prog-id=151 op=LOAD Feb 9 18:54:15.179000 audit[4157]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0003d20a0 items=0 ppid=4117 pid=4157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:15.179000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264643766306434323633313038616636383537636464613433313130 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.179000 audit: BPF prog-id=152 op=LOAD Feb 9 18:54:15.179000 audit[4157]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0003d20e8 items=0 ppid=4117 pid=4157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:15.179000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264643766306434323633313038616636383537636464613433313130 Feb 9 18:54:15.180000 audit: BPF prog-id=152 op=UNLOAD Feb 9 18:54:15.180000 audit: BPF prog-id=151 op=UNLOAD Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { perfmon } for pid=4157 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit[4157]: AVC avc: denied { bpf } for pid=4157 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 18:54:15.180000 audit: BPF prog-id=153 op=LOAD Feb 9 18:54:15.180000 audit[4157]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0003d24f8 items=0 ppid=4117 pid=4157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 18:54:15.180000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264643766306434323633313038616636383537636464613433313130 Feb 9 18:54:15.195924 env[1114]: time="2024-02-09T18:54:15.195880582Z" level=info msg="StartContainer for \"2dd7f0d4263108af6857cdda4311024e6bef5af1d91277f0f41a3ec78484d385\" returns successfully" Feb 9 18:54:15.280894 kubelet[1425]: E0209 18:54:15.280826 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:15.506004 kubelet[1425]: I0209 18:54:15.504797 1425 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=18.069119718 podCreationTimestamp="2024-02-09 18:53:57 +0000 UTC" firstStartedPulling="2024-02-09 18:54:14.702085743 +0000 UTC m=+64.753341239" lastFinishedPulling="2024-02-09 18:54:15.137728421 +0000 UTC m=+65.188983917" observedRunningTime="2024-02-09 18:54:15.504587006 +0000 UTC m=+65.555842502" watchObservedRunningTime="2024-02-09 18:54:15.504762396 +0000 UTC m=+65.556017952" Feb 9 18:54:15.701147 systemd-networkd[1017]: cali5ec59c6bf6e: Gained IPv6LL Feb 9 18:54:16.281488 kubelet[1425]: E0209 18:54:16.281433 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:17.281718 kubelet[1425]: E0209 18:54:17.281671 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:18.282119 kubelet[1425]: E0209 18:54:18.282079 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:19.282768 kubelet[1425]: E0209 18:54:19.282738 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 18:54:20.283295 kubelet[1425]: E0209 18:54:20.283251 1425 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"